{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,8]],"date-time":"2026-07-08T02:54:37Z","timestamp":1783479277971,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":62,"publisher":"ACM","funder":[{"name":"National Nature Science Foundation of China","award":["62425114, 62121002, U23B2028, 62232006, 62472395"],"award-info":[{"award-number":["62425114, 62121002, U23B2028, 62232006, 62472395"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,10,27]]},"DOI":"10.1145\/3746027.3755587","type":"proceedings-article","created":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T07:30:51Z","timestamp":1761377451000},"page":"621-630","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["Proactive Deepfake Detection via Self-Verifiable Semantic Watermarking"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0005-0724-1602","authenticated-orcid":false,"given":"Peiqi","family":"Jiang","sequence":"first","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-7309-1417","authenticated-orcid":false,"given":"Bohan","family":"Lei","sequence":"additional","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-8341-8529","authenticated-orcid":false,"given":"Yuhao","family":"Sun","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6403-761X","authenticated-orcid":false,"given":"Lingyun","family":"Yu","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1543-6889","authenticated-orcid":false,"given":"Zhineng","family":"Chen","sequence":"additional","affiliation":[{"name":"Fudan University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0163-9434","authenticated-orcid":false,"given":"Hongtao","family":"Xie","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0066-3448","authenticated-orcid":false,"given":"Yongdong","family":"Zhang","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China, Hefei, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2025,10,27]]},"reference":[{"key":"e_1_3_2_2_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCVW.2019.00152"},{"key":"e_1_3_2_2_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01495"},{"key":"e_1_3_2_2_3_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.02367"},{"key":"e_1_3_2_2_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/FG57933.2023.10042744"},{"key":"e_1_3_2_2_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413630"},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00916"},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00821"},{"key":"e_1_3_2_2_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIT.1977.1055666"},{"key":"e_1_3_2_2_9_1","volume-title":"Diffusionshield: A watermark for copyright protection against generative diffusion models. arXiv preprint arXiv:2306.04642","author":"Cui Yingqian","year":"2023","unstructured":"Yingqian Cui, Jie Ren, Han Xu, Pengfei He, Hui Liu, Lichao Sun, Yue Xing, and Jiliang Tang. 2023. Diffusionshield: A watermark for copyright protection against generative diffusion models. arXiv preprint arXiv:2306.04642 (2023)."},{"key":"e_1_3_2_2_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/tpami.2021.3087709"},{"key":"e_1_3_2_2_11_1","volume-title":"Diffusion models beat gans on image synthesis. Advances in neural information processing systems","author":"Dhariwal Prafulla","year":"2021","unstructured":"Prafulla Dhariwal and Alexander Nichol. 2021. Diffusion models beat gans on image synthesis. Advances in neural information processing systems, Vol. 34 (2021), 8780-8794."},{"key":"e_1_3_2_2_12_1","volume-title":"The deepfake detection challenge (dfdc) dataset. arXiv preprint arXiv:2006.07397","author":"Dolhansky Brian","year":"2020","unstructured":"Brian Dolhansky, Joanna Bitton, Ben Pflaum, Jikuo Lu, Russ Howes, Menglin Wang, and Cristian Canton Ferrer. 2020. The deepfake detection challenge (dfdc) dataset. arXiv preprint arXiv:2006.07397 (2020)."},{"key":"e_1_3_2_2_13_1","doi-asserted-by":"crossref","unstructured":"Shichao Dong Jin Wang Renhe Ji Jiajun Liang Haoqiang Fan and Zheng Ge. 2023. Implicit Identity Leakage: The Stumbling Block to Improving Deepfake Detection Generalization. arXiv:2210.14457 [cs.CV]","DOI":"10.1109\/CVPR52729.2023.00389"},{"key":"e_1_3_2_2_14_1","doi-asserted-by":"crossref","unstructured":"Xiaoyi Dong Jianmin Bao Dongdong Chen Ting Zhang Weiming Zhang Nenghai Yu Dong Chen Fang Wen and Baining Guo. 2022. Protecting Celebrities from DeepFake with Identity Consistency Transformer. arXiv:2203.01318 [cs.CV]","DOI":"10.1109\/CVPR52688.2022.00925"},{"key":"e_1_3_2_2_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/TMM.2024.3453066"},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP43922.2022.9746058"},{"key":"e_1_3_2_2_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00341"},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/3422622"},{"key":"e_1_3_2_2_19_1","unstructured":"Yinan He Bei Gan Siyu Chen Yichun Zhou Guojun Yin Luchuan Song Lu Sheng Jing Shao and Ziwei Liu. 2021. ForgeryNet: A Versatile Benchmark for Comprehensive Forgery Analysis. arXiv:2103.05630 [cs.CV]"},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i1.19982"},{"key":"e_1_3_2_2_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIM.2023.3285981"},{"key":"e_1_3_2_2_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475324"},{"key":"e_1_3_2_2_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3417266"},{"key":"e_1_3_2_2_24_1","volume-title":"Progressive growing of gans for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196","author":"Karras Tero","year":"2017","unstructured":"Tero Karras, Timo Aila, Samuli Laine, and Jaakko Lehtinen. 2017. Progressive growing of gans for improved quality, stability, and variation. arXiv preprint arXiv:1710.10196 (2017)."},{"key":"e_1_3_2_2_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00453"},{"key":"e_1_3_2_2_26_1","volume-title":"Diffface: Diffusion-based face swapping with facial guidance. arXiv preprint arXiv:2212.13344","author":"Kim Kihong","year":"2022","unstructured":"Kihong Kim, Yunho Kim, Seokju Cho, Junyoung Seo, Jisu Nam, Kychul Lee, Seungryong Kim, and KwangHee Lee. 2022. Diffface: Diffusion-based face swapping with facial guidance. arXiv preprint arXiv:2212.13344 (2022)."},{"key":"e_1_3_2_2_27_1","volume-title":"Faceshifter: Towards high fidelity and occlusion aware face swapping. arXiv","author":"Li L","year":"2019","unstructured":"L Li, J Bao, H Yang, D Chen, and F Wen. 2019. Faceshifter: Towards high fidelity and occlusion aware face swapping. arXiv 2019. arXiv preprint arXiv:1912.13457 (2019)."},{"key":"e_1_3_2_2_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00505"},{"key":"e_1_3_2_2_29_1","first-page":"7213","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Li Zheng","year":"2023","unstructured":"Zheng Li, Ning Yu, Ahmed Salem, Michael Backes, Mario Fritz, and Yang Zhang. 2023. &#123;UnGANable&#125;: Defending Against &#123;GAN-based&#125; Face Manipulation. In 32nd USENIX Security Symposium (USENIX Security 23). 7213-7230."},{"key":"e_1_3_2_2_30_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i4.28147"},{"key":"e_1_3_2_2_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2022.3189545"},{"key":"e_1_3_2_2_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.00829"},{"key":"e_1_3_2_2_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01605"},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/3503161.3547950"},{"key":"e_1_3_2_2_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/3503161.3547950"},{"key":"e_1_3_2_2_36_1","volume-title":"Pseudo noise sequences for engineers. Electronics & communication engineering journal","author":"Mutagi RN","year":"1996","unstructured":"RN Mutagi. 1996. Pseudo noise sequences for engineers. Electronics & communication engineering journal, Vol. 8, 2 (1996), 79-87."},{"key":"e_1_3_2_2_37_1","volume-title":"FaceSigns: semi-fragile neural watermarks for media authentication and countering deepfakes. arXiv preprint arXiv:2204.01960","author":"Neekhara Paarth","year":"2022","unstructured":"Paarth Neekhara, Shehzeen Hussain, Xinqiao Zhang, Ke Huang, Julian McAuley, and Farinaz Koushanfar. 2022. FaceSigns: semi-fragile neural watermarks for media authentication and countering deepfakes. arXiv preprint arXiv:2204.01960 (2022)."},{"key":"e_1_3_2_2_38_1","first-page":"86","volume-title":"UK","author":"Qian Yuyang","year":"2020","unstructured":"Yuyang Qian, Guojun Yin, Lu Sheng, Zixuan Chen, and Jing Shao. 2020. Thinking in frequency: Face forgery detection by mining frequency-aware clues. In Computer Vision-ECCV 2020: 16th European Conference, Glasgow, UK, August 23-28, 2020, Proceedings, Part XII. Springer, 86-103."},{"key":"e_1_3_2_2_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00009"},{"key":"e_1_3_2_2_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01816"},{"key":"e_1_3_2_2_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3306346.3323035"},{"key":"e_1_3_2_2_42_1","doi-asserted-by":"publisher","DOI":"10.1145\/2929464.2929475"},{"key":"e_1_3_2_2_43_1","volume-title":"SimAC: A Simple Anti-Customization Method against Text-to-Image Synthesis of Diffusion Models. arXiv preprint arXiv:2312.07865","author":"Wang Feifei","year":"2023","unstructured":"Feifei Wang, Zhentao Tan, Tianyi Wei, Yue Wu, and Qidong Huang. 2023b. SimAC: A Simple Anti-Customization Method against Text-to-Image Synthesis of Diffusion Models. arXiv preprint arXiv:2312.07865 (2023)."},{"key":"e_1_3_2_2_44_1","volume-title":"Anti-forgery: Towards a stealthy and robust deepfake disruption attack via adversarial perceptual-aware perturbations. arXiv preprint arXiv:2206.00477","author":"Wang Run","year":"2022","unstructured":"Run Wang, Ziheng Huang, Zhikai Chen, Li Liu, Jing Chen, and Lina Wang. 2022a. Anti-forgery: Towards a stealthy and robust deepfake disruption attack via adversarial perceptual-aware perturbations. arXiv preprint arXiv:2206.00477 (2022)."},{"key":"e_1_3_2_2_45_1","volume-title":"Deeptag: Robust image tagging for deepfake provenance. arXiv preprint arXiv:2009.09869","author":"Wang Run","year":"2020","unstructured":"Run Wang, Felix Juefei-Xu, Qing Guo, Yihao Huang, Lei Ma, Yang Liu, and Lina Wang. 2020. Deeptag: Robust image tagging for deepfake provenance. arXiv preprint arXiv:2009.09869, Vol. 3 (2020)."},{"key":"e_1_3_2_2_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475518"},{"key":"e_1_3_2_2_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/3588574"},{"key":"e_1_3_2_2_48_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i12.26701"},{"key":"e_1_3_2_2_49_1","unstructured":"Tianyi Wang Mengxiao Huang Harry Cheng Bin Ma and Yinglong Wang. 2024a. Robust Identity Perceptual Watermark Against Deepfake Face Swapping."},{"key":"e_1_3_2_2_50_1","doi-asserted-by":"publisher","DOI":"10.1145\/3664647.3680869"},{"key":"e_1_3_2_2_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/3699710"},{"key":"e_1_3_2_2_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01109"},{"key":"e_1_3_2_2_53_1","doi-asserted-by":"crossref","unstructured":"Tengfei Wang Yong Zhang Yanbo Fan Jue Wang and Qifeng Chen. 2022c. High-Fidelity GAN Inversion for Image Attribute Editing. arXiv:2109.06590 [cs.CV]","DOI":"10.1109\/CVPR52688.2022.01109"},{"key":"e_1_3_2_2_54_1","volume-title":"SepMark: Deep Separable Watermarking for Unified Source Tracing and Deepfake Detection. arXiv preprint arXiv:2305.06321","author":"Wu Xiaoshuai","year":"2023","unstructured":"Xiaoshuai Wu, Xin Liao, and Bo Ou. 2023. SepMark: Deep Separable Watermarking for Unified Source Tracing and Deepfake Detection. arXiv preprint arXiv:2305.06321 (2023)."},{"key":"e_1_3_2_2_55_1","unstructured":"Quanwei Yang Jiazhi Guan Kaisiyuan Wang Lingyun Yu Wenqing Chu Hang Zhou ZhiQiang Feng Haocheng Feng Errui Ding Jingdong Wang and Hongtao Xie. 2024. ShowMaker: Creating High-Fidelity 2D Human Video via Fine-Grained Diffusion Modeling. In NeurIPS."},{"key":"e_1_3_2_2_56_1","first-page":"1128","article-title":"REMOT: A Region-to-Whole Framework for Realistic Human Motion Transfer","author":"Yang Quanwei","year":"2022","unstructured":"Quanwei Yang, Xinchen Liu, Wu Liu, Hongtao Xie, Xiaoyan Gu, Lingyun Yu, and Yongdong Zhang. 2022. REMOT: A Region-to-Whole Framework for Realistic Human Motion Transfer. In ACM Multimedia. ACM, 1128-1137.","journal-title":"ACM Multimedia. ACM"},{"key":"e_1_3_2_2_57_1","volume-title":"Faceguard: Proactive deepfake detection. arXiv preprint arXiv:2109.05673","author":"Yang Yuankun","year":"2021","unstructured":"Yuankun Yang, Chenyue Liang, Hongyu He, Xiaoyu Cao, and Neil Zhenqiang Gong. 2021. Faceguard: Proactive deepfake detection. arXiv preprint arXiv:2109.05673 (2021)."},{"key":"e_1_3_2_2_58_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"e_1_3_2_2_59_1","doi-asserted-by":"publisher","DOI":"10.1109\/WACV56688.2023.00458"},{"key":"e_1_3_2_2_60_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00572"},{"key":"e_1_3_2_2_61_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"e_1_3_2_2_62_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-20065-6_23"}],"event":{"name":"MM '25: The 33rd ACM International Conference on Multimedia","location":"Dublin Ireland","acronym":"MM '25","sponsor":["SIGMM ACM Special Interest Group on Multimedia"]},"container-title":["Proceedings of the 33rd ACM International Conference on Multimedia"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3746027.3755587","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,12,9]],"date-time":"2025-12-09T20:03:50Z","timestamp":1765310630000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3746027.3755587"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,27]]},"references-count":62,"alternative-id":["10.1145\/3746027.3755587","10.1145\/3746027"],"URL":"https:\/\/doi.org\/10.1145\/3746027.3755587","relation":{},"subject":[],"published":{"date-parts":[[2025,10,27]]},"assertion":[{"value":"2025-10-27","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}