{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,9]],"date-time":"2026-05-09T03:51:02Z","timestamp":1778298662045,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":66,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,10,26]],"date-time":"2023-10-26T00:00:00Z","timestamp":1698278400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Key Research and Development program of Anhui Province","award":["2022k07020008"],"award-info":[{"award-number":["2022k07020008"]}]},{"name":"Natural Science Foundation of China","award":["U20B2047, 62072421, 62002334, 62102386, 62121002"],"award-info":[{"award-number":["U20B2047, 62072421, 62002334, 62102386, 62121002"]}]},{"name":"Ant Group through CCF-Ant Innovative Research Program","award":["CCF-AFSG RF20210025"],"award-info":[{"award-number":["CCF-AFSG RF20210025"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,10,26]]},"DOI":"10.1145\/3581783.3613752","type":"proceedings-article","created":{"date-parts":[[2023,10,27]],"date-time":"2023-10-27T07:27:40Z","timestamp":1698391660000},"page":"7075-7084","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["BiFPro: A Bidirectional Facial-data Protection Framework against DeepFake"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-9294-9624","authenticated-orcid":false,"given":"Honggu","family":"Liu","sequence":"first","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5025-4805","authenticated-orcid":false,"given":"Xiaodan","family":"Li","sequence":"additional","affiliation":[{"name":"Alibaba Group, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4703-4641","authenticated-orcid":false,"given":"Wenbo","family":"Zhou","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9635-9859","authenticated-orcid":false,"given":"Han","family":"Fang","sequence":"additional","affiliation":[{"name":"National University of Singapore, Singapore, Singapore"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0406-0222","authenticated-orcid":false,"given":"Paolo","family":"Bestagini","sequence":"additional","affiliation":[{"name":"Politecnico di Milano, Milan, Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5576-6108","authenticated-orcid":false,"given":"Weiming","family":"Zhang","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9027-3421","authenticated-orcid":false,"given":"Yuefeng","family":"Chen","sequence":"additional","affiliation":[{"name":"Alibaba Group, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1990-9869","authenticated-orcid":false,"given":"Stefano","family":"Tubaro","sequence":"additional","affiliation":[{"name":"Politecnico di Milano, Milan, Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4417-9316","authenticated-orcid":false,"given":"Nenghai","family":"Yu","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6885-1341","authenticated-orcid":false,"given":"Yuan","family":"He","sequence":"additional","affiliation":[{"name":"Alibaba Group, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2093-2839","authenticated-orcid":false,"given":"Hui","family":"Xue","sequence":"additional","affiliation":[{"name":"Alibaba Group, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,10,27]]},"reference":[{"key":"e_1_3_2_2_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS.2018.8630761"},{"key":"e_1_3_2_2_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS49906.2020.9360904"},{"key":"e_1_3_2_2_3_1","volume-title":"CVPR workshops","volume":"1","author":"Agarwal Shruti","year":"2019","unstructured":"Shruti Agarwal, Hany Farid, Yuming Gu, Mingming He, Koki Nagano, and Hao Li. 2019. Protecting World Leaders Against Deep Fakes.. In CVPR workshops, Vol. 1."},{"key":"e_1_3_2_2_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00702"},{"key":"e_1_3_2_2_5_1","doi-asserted-by":"publisher","DOI":"10.3390\/info11020110"},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.1996.560426"},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413630"},{"key":"e_1_3_2_2_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.195"},{"key":"e_1_3_2_2_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/83.650120"},{"key":"e_1_3_2_2_10_1","unstructured":"DeepFakes. 2017. DeepFakes Github. http:\/\/github.com\/deepfakes\/faceswap. Accessed 2021-08--25."},{"key":"e_1_3_2_2_11_1","volume-title":"Speech driven talking face generation from a single image and an emotion condition","author":"Eskimez Sefik Emre","year":"2021","unstructured":"Sefik Emre Eskimez, You Zhang, and Zhiyao Duan. 2021. Speech driven talking face generation from a single image and an emotion condition. IEEE Transactions on Multimedia (2021)."},{"key":"e_1_3_2_2_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2020.3009349"},{"key":"e_1_3_2_2_13_1","volume-title":"Encoded Feature Enhancement in Watermarking Network for Distortion in Real Scenes","author":"Fang Han","year":"2022","unstructured":"Han Fang, Zhaoyang Jia, Hang Zhou, Zehua Ma, and Weiming Zhang. 2022. Encoded Feature Enhancement in Watermarking Network for Distortion in Real Scenes. IEEE Transactions on Multimedia (2022)."},{"key":"e_1_3_2_2_14_1","unstructured":"Ian Goodfellow Jean Pouget-Abadie Mehdi Mirza Bing Xu David Warde-Farley Sherjil Ozair Aaron Courville and Yoshua Bengio. 2014. Generative adversarial nets. In Advances in neural information processing systems. 2672--2680."},{"key":"e_1_3_2_2_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00500"},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_3_2_2_17_1","volume-title":"Proceedings. The 2009 International Symposium on Web Information Systems and Applications (WISA","author":"Jiansheng Mei","year":"2009","unstructured":"Mei Jiansheng, Li Sukang, and Tan Xiaomei. 2009. A digital watermarking algorithm based on DCT and DWT. In Proceedings. The 2009 International Symposium on Web Information Systems and Applications (WISA 2009). Citeseer, 104."},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-46475-6_43"},{"key":"e_1_3_2_2_19_1","volume-title":"Progressive growing of gans for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196","author":"Karras Tero","year":"2017","unstructured":"Tero Karras, Timo Aila, Samuli Laine, and Jaakko Lehtinen. 2017. Progressive growing of gans for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196 (2017)."},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00453"},{"key":"e_1_3_2_2_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00813"},{"key":"e_1_3_2_2_22_1","volume-title":"Digital watermarking","author":"Katzenbeisser S","year":"2000","unstructured":"S Katzenbeisser and FAP Petitcolas. 2000. Digital watermarking. Artech House, London, Vol. 2 (2000)."},{"key":"e_1_3_2_2_23_1","volume-title":"Adam: A method for stochastic optimization. arXiv preprint arXiv:1412.6980","author":"Kingma Diederik P","year":"2014","unstructured":"Diederik P Kingma and Jimmy Ba. 2014. Adam: A method for stochastic optimization. arXiv preprint arXiv:1412.6980 (2014)."},{"key":"e_1_3_2_2_24_1","volume-title":"Auto-encoding variational bayes. arXiv preprint arXiv:1312.6114","author":"Kingma Diederik P","year":"2013","unstructured":"Diederik P Kingma and Max Welling. 2013. Auto-encoding variational bayes. arXiv preprint arXiv:1312.6114 (2013)."},{"key":"e_1_3_2_2_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.397"},{"key":"e_1_3_2_2_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/IWBF49977.2020.9107962"},{"key":"e_1_3_2_2_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00639"},{"key":"e_1_3_2_2_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00512"},{"key":"e_1_3_2_2_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00505"},{"key":"e_1_3_2_2_30_1","volume-title":"Exposing deepfake videos by detecting face warping artifacts. arXiv preprint arXiv:1811.00656","author":"Li Yuezun","year":"2018","unstructured":"Yuezun Li and Siwei Lyu. 2018. Exposing deepfake videos by detecting face warping artifacts. arXiv preprint arXiv:1811.00656 (2018)."},{"key":"e_1_3_2_2_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00327"},{"key":"e_1_3_2_2_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00083"},{"key":"e_1_3_2_2_33_1","volume-title":"Coupled generative adversarial networks. Advances in neural information processing systems","author":"Liu Ming-Yu","year":"2016","unstructured":"Ming-Yu Liu and Oncel Tuzel. 2016. Coupled generative adversarial networks. Advances in neural information processing systems, Vol. 29 (2016), 469--477."},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"publisher","DOI":"10.1049\/el:20030589"},{"key":"e_1_3_2_2_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01605"},{"key":"e_1_3_2_2_36_1","volume-title":"Improved spread spectrum: A new modulation technique for robust watermarking","author":"Malvar Henrique S","year":"2003","unstructured":"Henrique S Malvar and Dinei AF Flor\u00eancio. 2003. Improved spread spectrum: A new modulation technique for robust watermarking. IEEE transactions on signal processing, Vol. 51, 4 (2003), 898--905."},{"key":"e_1_3_2_2_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58571-6_39"},{"key":"e_1_3_2_2_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/WACVW.2019.00020"},{"key":"e_1_3_2_2_39_1","volume-title":"Asian Conference on Computer Vision. Springer, 117--132","author":"Natsume Ryota","year":"2018","unstructured":"Ryota Natsume, Tatsuya Yatagawa, and Shigeo Morishima. 2018a. Fsnet: An identity-aware generative model for image-based face swapping. In Asian Conference on Computer Vision. Springer, 117--132."},{"key":"e_1_3_2_2_40_1","volume-title":"Rsgan: face swapping and editing using face and hair representation in latent spaces. arXiv preprint arXiv:1804.03447","author":"Natsume Ryota","year":"2018","unstructured":"Ryota Natsume, Tatsuya Yatagawa, and Shigeo Morishima. 2018b. Rsgan: face swapping and editing using face and hair representation in latent spaces. arXiv preprint arXiv:1804.03447 (2018)."},{"key":"e_1_3_2_2_41_1","volume-title":"Self-supervised Face Image Manipulation by Conditioning GAN on Face Decomposition","author":"Ngo Minh","year":"2021","unstructured":"Minh Ngo, Sezer Karaoglu, and Theo Gevers. 2021. Self-supervised Face Image Manipulation by Conditioning GAN on Face Decomposition. IEEE Transactions on Multimedia (2021)."},{"key":"e_1_3_2_2_42_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00728"},{"key":"e_1_3_2_2_43_1","volume-title":"Luis RP, Jian Jiang, et al.","author":"Perov Ivan","year":"2020","unstructured":"Ivan Perov, Daiheng Gao, Nikolay Chervoniy, Kunlin Liu, Sugasa Marangonda, Chris Um\u00e9, Mr Dpfks, Carl Shift Facenheim, Luis RP, Jian Jiang, et al. 2020. Deepfacelab: A simple, flexible and extensible face swapping framework. arXiv preprint arXiv:2005.05535 (2020)."},{"key":"e_1_3_2_2_44_1","volume-title":"Digital watermarking: algorithms and applications","author":"Podilchuk Christine I","year":"2001","unstructured":"Christine I Podilchuk and Edward J Delp. 2001. Digital watermarking: algorithms and applications. IEEE signal processing Magazine, Vol. 18, 4 (2001), 33--46."},{"key":"e_1_3_2_2_45_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58610-2_6"},{"key":"e_1_3_2_2_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00009"},{"key":"e_1_3_2_2_47_1","first-page":"7137","article-title":"First order motion model for image animation","volume":"32","author":"Siarohin Aliaksandr","year":"2019","unstructured":"Aliaksandr Siarohin, St\u00e9phane Lathuili\u00e8re, Sergey Tulyakov, Elisa Ricci, and Nicu Sebe. 2019. First order motion model for image animation. Advances in Neural Information Processing Systems, Vol. 32 (2019), 7137--7147.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_2_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00219"},{"key":"e_1_3_2_2_49_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2014.2322497"},{"key":"e_1_3_2_2_50_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.1994.413536"},{"key":"e_1_3_2_2_51_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01468"},{"key":"e_1_3_2_2_52_1","volume-title":"M2TR: Multi-modal Multi-scale Transformers for Deepfake Detection. arXiv preprint arXiv:2104.09770","author":"Wang Junke","year":"2021","unstructured":"Junke Wang, Zuxuan Wu, Jingjing Chen, and Yu-Gang Jiang. 2021b. M2TR: Multi-modal Multi-scale Transformers for Deepfake Detection. arXiv preprint arXiv:2104.09770 (2021)."},{"key":"e_1_3_2_2_53_1","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475518"},{"key":"e_1_3_2_2_54_1","volume-title":"Image quality assessment: from error visibility to structural similarity","author":"Wang Zhou","year":"2004","unstructured":"Zhou Wang, Alan C Bovik, Hamid R Sheikh, and Eero P Simoncelli. 2004. Image quality assessment: from error visibility to structural similarity. IEEE transactions on image processing, Vol. 13, 4 (2004), 600--612."},{"key":"e_1_3_2_2_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00161"},{"key":"e_1_3_2_2_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.1996.560423"},{"key":"e_1_3_2_2_57_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2019.8683164"},{"key":"e_1_3_2_2_58_1","volume-title":"FaceGuard: Proactive Deepfake Detection. arXiv preprint arXiv:2109.05673","author":"Yang Yuankun","year":"2021","unstructured":"Yuankun Yang, Chenyue Liang, Hongyu He, Xiaoyu Cao, and Neil Zhenqiang Gong. 2021. FaceGuard: Proactive Deepfake Detection. arXiv preprint arXiv:2109.05673 (2021)."},{"key":"e_1_3_2_2_59_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01418"},{"key":"e_1_3_2_2_60_1","first-page":"10223","article-title":"Udh: Universal deep hiding for steganography, watermarking, and light field messaging","volume":"33","author":"Zhang Chaoning","year":"2020","unstructured":"Chaoning Zhang, Philipp Benz, Adil Karjauv, Geng Sun, and In So Kweon. 2020. Udh: Universal deep hiding for steganography, watermarking, and light field messaging. Advances in Neural Information Processing Systems, Vol. 33 (2020), 10223--10234.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_2_61_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"e_1_3_2_2_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00222"},{"key":"e_1_3_2_2_63_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01477"},{"key":"e_1_3_2_2_64_1","volume-title":"Towards Multi-domain Face Synthesis via Domain-Invariant Representations and Multi-level Feature Parts","author":"Zhou Dawei","year":"2021","unstructured":"Dawei Zhou, Nannan Wang, Chunlei Peng, Yi Yu, Xi Yang, and Xinbo Gao. 2021. Towards Multi-domain Face Synthesis via Domain-Invariant Representations and Multi-level Feature Parts. IEEE Transactions on Multimedia (2021)."},{"key":"e_1_3_2_2_65_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"e_1_3_2_2_66_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00295"}],"event":{"name":"MM '23: The 31st ACM International Conference on Multimedia","location":"Ottawa ON Canada","acronym":"MM '23","sponsor":["SIGMM ACM Special Interest Group on Multimedia"]},"container-title":["Proceedings of the 31st ACM International Conference on Multimedia"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3581783.3613752","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3581783.3613752","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T00:04:18Z","timestamp":1755821058000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3581783.3613752"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,10,26]]},"references-count":66,"alternative-id":["10.1145\/3581783.3613752","10.1145\/3581783"],"URL":"https:\/\/doi.org\/10.1145\/3581783.3613752","relation":{},"subject":[],"published":{"date-parts":[[2023,10,26]]},"assertion":[{"value":"2023-10-27","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}