{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T08:53:56Z","timestamp":1781600036140,"version":"3.54.5"},"publisher-location":"New York, NY, USA","reference-count":38,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T00:00:00Z","timestamp":1781568000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,6,17]]},"DOI":"10.1145\/3785353.3815091","type":"proceedings-article","created":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T08:11:30Z","timestamp":1781597490000},"page":"253-262","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Neutralizing Proactive Defense using Diffusion-based Upsampling"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0003-1923-3250","authenticated-orcid":false,"given":"Giuseppe","family":"Daidone","sequence":"first","affiliation":[{"name":"Department of Computer Science, Sapienza University of Rome, Rome, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-4182-5477","authenticated-orcid":false,"given":"Filippo","family":"Bartolucci","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, Alma Mater Studiorum - Universit\u00e0 di Bologna, Bologna, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-3083-2961","authenticated-orcid":false,"given":"Maria Rosaria","family":"Briglia","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sapienza University of Rome, Rome, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-2248-2090","authenticated-orcid":false,"given":"Mujtaba Hussain","family":"Mirza","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sapienza University of Rome, Rome, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0785-9972","authenticated-orcid":false,"given":"Giuseppe","family":"Lisanti","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, Alma Mater Studiorum - Universit\u00e0 di Bologna, Bologna, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0444-7646","authenticated-orcid":false,"given":"Iacopo","family":"Masi","sequence":"additional","affiliation":[{"name":"Department of Computer Science, Sapienza University of Rome, Rome, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6,16]]},"reference":[{"key":"e_1_3_3_1_2_2","first-page":"16196","volume-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision (ICCV)","author":"Arabi Kasra","year":"2025","unstructured":"Kasra Arabi, R.\u00a0Teal Witter, Chinmay Hegde, and Niv Cohen. 2025. SEAL: Semantic Aware Image Watermarking. In Proceedings of the IEEE\/CVF International Conference on Computer Vision (ICCV). 16196\u201316205."},{"key":"e_1_3_3_1_3_2","unstructured":"Toluwani Aremu Noor Hussein Munachiso Nwadike Samuele Poppi Jie Zhang Karthik Nandakumar Neil Gong and Nils Lukas. 2025. Mitigating Watermark Forgery in Generative Models via Randomized Key Selection. arxiv:https:\/\/arXiv.org\/abs\/2507.07871\u00a0[cs.CR] https:\/\/arxiv.org\/abs\/2507.07871"},{"key":"e_1_3_3_1_4_2","first-page":"15386","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Asnani Vishal","year":"2022","unstructured":"Vishal Asnani, Xi Yin, Tal Hassner, Sijia Liu, and Xiaoming Liu. 2022. Proactive Image Manipulation Detection. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). 15386\u201315395."},{"key":"e_1_3_3_1_5_2","first-page":"12343","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Asnani Vishal","year":"2023","unstructured":"Vishal Asnani, Xi Yin, Tal Hassner, and Xiaoming Liu. 2023. Malp: Manipulation localization using a proactive scheme. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). 12343\u201312352."},{"key":"e_1_3_3_1_6_2","unstructured":"Vishal Asnani Xi Yin and Xiaoming Liu. 2024. Proactive Schemes: A Survey of Adversarial Attacks for Social Good. arxiv:https:\/\/arXiv.org\/abs\/2409.16491\u00a0[cs.CV] https:\/\/arxiv.org\/abs\/2409.16491"},{"key":"e_1_3_3_1_7_2","doi-asserted-by":"publisher","unstructured":"Filippo Bartolucci Iacopo Masi and Giuseppe Lisanti. 2025. Perturb Attend Detect and Localize (PADL): Robust Proactive Image Defense. IEEE Access 13 (2025) 81755\u201381768. 10.1109\/ACCESS.2025.3565824","DOI":"10.1109\/ACCESS.2025.3565824"},{"key":"e_1_3_3_1_8_2","doi-asserted-by":"publisher","unstructured":"Jingyi Deng Chenhao Lin Zhengyu Zhao Shuai Liu Zhe Peng Qian Wang and Chao Shen. 2025. A Survey of Defenses Against AI-Generated Visual Media: Detection Disruption and Authentication. ACM Comput. Surv. 58 5 Article 123 (Nov. 2025) 35\u00a0pages. 10.1145\/3770916","DOI":"10.1145\/3770916"},{"key":"e_1_3_3_1_9_2","volume-title":"NeurIPS","author":"Goodfellow Ian\u00a0J","year":"2014","unstructured":"Ian\u00a0J Goodfellow, Jean Pouget-Abadie, Mehdi Mirza, Bing Xu, David Warde-Farley, Sherjil Ozair, Aaron Courville, and Yoshua Bengio. 2014. Generative adversarial nets. In NeurIPS."},{"key":"e_1_3_3_1_10_2","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Guo Xiao","year":"2023","unstructured":"Xiao Guo, Xiaohong Liu, Zhiyuan Ren, Steven Grosz, Iacopo Masi, and Xiaoming Liu. 2023. Hierarchical fine-grained image forgery detection and localization. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_3_1_11_2","volume-title":"The Fourteenth International Conference on Learning Representations","author":"Hu Xiaoxiao","year":"2026","unstructured":"Xiaoxiao Hu, Jiaqi Jin, Sheng Li, Wanli Peng, Xinpeng Zhang, and Zhenxing Qian. 2026. Spherical Watermark: Encryption-Free, Lossless Watermarking for Diffusion Models. In The Fourteenth International Conference on Learning Representations."},{"key":"e_1_3_3_1_12_2","volume-title":"The Thirteenth International Conference on Learning Representations (ICLR)","author":"H\u00f6nig Robert","year":"2025","unstructured":"Robert H\u00f6nig, Javier Rando, Nicholas Carlini, and Florian Tram\u00e8r. 2025. Adversarial Perturbations Cannot Reliably Protect Artists From Generative AI. In The Thirteenth International Conference on Learning Representations (ICLR)."},{"key":"e_1_3_3_1_13_2","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Karras Tero","year":"2019","unstructured":"Tero Karras, Samuli Laine, and Timo Aila. 2019. A Style-Based Generator Architecture for Generative Adversarial Networks. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_3_1_14_2","unstructured":"Pavel Korshunov and S\u00e9bastien Marcel. 2018. Deepfakes: a new threat to face recognition? assessment and detection. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1812.08685 (2018)."},{"key":"e_1_3_3_1_15_2","doi-asserted-by":"publisher","unstructured":"Yihao Liu Jinhe Huang Yanjie Li Dong Wang and Bin Xiao. 2024. Generative AI model privacy: a survey. Artificial Intelligence Review 58 1 (04 Dec 2024) 33. 10.1007\/s10462-024-11024-6","DOI":"10.1007\/s10462-024-11024-6"},{"key":"e_1_3_3_1_16_2","volume-title":"Proceedings of the IEEE International Conference on Computer Vision (ICCV)","author":"Liu Ziwei","year":"2015","unstructured":"Ziwei Liu, Ping Luo, Xiaogang Wang, and Xiaoou Tang. 2015. Deep Learning Face Attributes in the Wild. In Proceedings of the IEEE International Conference on Computer Vision (ICCV)."},{"key":"e_1_3_3_1_17_2","first-page":"24462","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Lo Ling","year":"2024","unstructured":"Ling Lo, Cheng\u00a0Yu Yeo, Hong-Han Shuai, and Wen-Huang Cheng. 2024. Distraction is All You Need: Memory-Efficient Image Immunization against Diffusion-Based Image Editing. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). 24462\u201324471. 10.1109\/CVPR52733.2024.02309"},{"key":"e_1_3_3_1_18_2","volume-title":"The Thirteenth International Conference on Learning Representations (ICLR)","author":"Longpre Shayne","year":"2025","unstructured":"Shayne Longpre, Nikhil Singh, Manuel Cherep, Kushagra Tiwary, Joanna Materzynska, William Brannon, Robert Mahari, Naana Obeng-Marnu, Manan Dey, Mohammed Hamdy, Nayan Saxena, Ahmad\u00a0Mustafa Anis, Emad\u00a0A. Alghamdi, Vu\u00a0Minh Chien, Da Yin, Kun Qian, Yizhi LI, Minnie Liang, An Dinh, Shrestha Mohanty, Deividas Mataciunas, Tobin South, Jianguo Zhang, Ariel\u00a0N. Lee, Campbell\u00a0S. Lund, Christopher Klamm, Damien Sileo, Diganta Misra, Enrico Shippole, Kevin Klyman, Lester James\u00a0Validad Miranda, Niklas Muennighoff, Seonghyeon Ye, Seungone Kim, Vipul Gupta, Vivek Sharma, Xuhui Zhou, Caiming Xiong, Luis Villa, Stella Biderman, Alex Pentland, Sara Hooker, and Jad Kabbara. 2025. Bridging the Data Provenance Gap Across Text, Speech, and Video. In The Thirteenth International Conference on Learning Representations (ICLR). https:\/\/openreview.net\/forum?id=G5DziesYxL"},{"key":"e_1_3_3_1_19_2","unstructured":"Aqib Mahfuz Georgia Channing Mark van\u00a0der Wilk Philip Torr Fabio Pizzati and Christian\u00a0Schroeder de Witt. 2025. PSyDUCK: Training-Free Steganography for Latent Diffusion. arxiv:https:\/\/arXiv.org\/abs\/2501.19172\u00a0[cs.LG] https:\/\/arxiv.org\/abs\/2501.19172"},{"key":"e_1_3_3_1_20_2","doi-asserted-by":"crossref","unstructured":"Aamir Mustafa Salman\u00a0H Khan Munawar Hayat Jianbing Shen and Ling Shao. 2019. Image super-resolution as a defense against adversarial attacks. IEEE Transactions on Image Processing 29 (2019) 1711\u20131724.","DOI":"10.1109\/TIP.2019.2940533"},{"key":"e_1_3_3_1_21_2","volume-title":"The Fourteenth International Conference on Learning Representations (ICLR)","author":"Ozden Tarik\u00a0Can","year":"2026","unstructured":"Tarik\u00a0Can Ozden, Ozgur Kara, Oguzhan Akcin, Kerem Zaman, Shashank Srivastava, Sandeep\u00a0P Chinchali, and James\u00a0M Rehg. 2026. DiffVax: Optimization-Free Image Immunization Against Diffusion-Based Editing. In The Fourteenth International Conference on Learning Representations (ICLR)."},{"key":"e_1_3_3_1_22_2","series-title":"Proceedings of Machine Learning Research","first-page":"8748","volume-title":"Proceedings of the 38th International Conference on Machine Learning","volume":"139","author":"Radford Alec","year":"2021","unstructured":"Alec Radford, Jong\u00a0Wook Kim, Chris Hallacy, Aditya Ramesh, Gabriel Goh, Sandhini Agarwal, Girish Sastry, Amanda Askell, Pamela Mishkin, Jack Clark, Gretchen Krueger, and Ilya Sutskever. 2021. Learning Transferable Visual Models From Natural Language Supervision. In Proceedings of the 38th International Conference on Machine Learning(Proceedings of Machine Learning Research, Vol.\u00a0139), Marina Meila and Tong Zhang (Eds.). PMLR, 8748\u20138763. https:\/\/proceedings.mlr.press\/v139\/radford21a.html"},{"key":"e_1_3_3_1_23_2","doi-asserted-by":"crossref","first-page":"102","DOI":"10.1007\/978-3-319-46475-6_7","volume-title":"Computer Vision \u2013 ECCV 2016","author":"Richter Stephan\u00a0R.","year":"2016","unstructured":"Stephan\u00a0R. Richter, Vibhav Vineet, Stefan Roth, and Vladlen Koltun. 2016. Playing for Data: Ground Truth from Computer Games. In Computer Vision \u2013 ECCV 2016, Bastian Leibe, Jiri Matas, Nicu Sebe, and Max Welling (Eds.). Springer International Publishing, Cham, 102\u2013118."},{"key":"e_1_3_3_1_24_2","first-page":"10684","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Rombach Robin","year":"2022","unstructured":"Robin Rombach, Andreas Blattmann, Dominik Lorenz, Patrick Esser, and Bj\u00f6rn Ommer. 2022. High-Resolution Image Synthesis With Latent Diffusion Models. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). 10684\u201310695."},{"key":"e_1_3_3_1_25_2","series-title":"Proceedings of Machine Learning Research","first-page":"29894","volume-title":"Proceedings of the 40th International Conference on Machine Learning","volume":"202","author":"Salman Hadi","year":"2023","unstructured":"Hadi Salman, Alaa Khaddaj, Guillaume Leclerc, Andrew Ilyas, and Aleksander Madry. 2023. Raising the Cost of Malicious AI-Powered Image Editing. In Proceedings of the 40th International Conference on Machine Learning(Proceedings of Machine Learning Research, Vol.\u00a0202). PMLR, 29894\u201329918. https:\/\/proceedings.mlr.press\/v202\/salman23a.html"},{"key":"e_1_3_3_1_26_2","volume-title":"The Thirteenth International Conference on Learning Representations (ICLR)","author":"Sander Tom","year":"2025","unstructured":"Tom Sander, Pierre Fernandez, Alain\u00a0Oliviero Durmus, Teddy Furon, and Matthijs Douze. 2025. Watermark Anything With Localized Messages. In The Thirteenth International Conference on Learning Representations (ICLR). https:\/\/openreview.net\/forum?id=IkZVDzdC8M"},{"key":"e_1_3_3_1_27_2","first-page":"2187","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Shan Shawn","year":"2023","unstructured":"Shawn Shan, Jenna Cryan, Emily Wenger, Haitao Zheng, Rana Hanocka, and Ben\u00a0Y Zhao. 2023. Glaze: Protecting artists from style mimicry by { Text-to-Image} models. In 32nd USENIX Security Symposium (USENIX Security 23). 2187\u20132204."},{"key":"e_1_3_3_1_28_2","volume-title":"NeurIPS","author":"Song Yang","year":"2019","unstructured":"Yang Song and Stefano Ermon. 2019. Generative modeling by estimating gradients of the data distribution. In NeurIPS."},{"key":"e_1_3_3_1_29_2","doi-asserted-by":"publisher","DOI":"10.1145\/3746027.3755755"},{"key":"e_1_3_3_1_30_2","unstructured":"Liqin Wang Qianyue Hu Wei Lu and Xiangyang Luo. 2026. Safeguarding Facial Identity against Diffusion-based Face Swapping via Cascading Pathway Disruption. arxiv:https:\/\/arXiv.org\/abs\/2601.14738\u00a0[cs.CV] https:\/\/arxiv.org\/abs\/2601.14738"},{"key":"e_1_3_3_1_31_2","doi-asserted-by":"publisher","unstructured":"Xiaogang Wang and Xiaoou Tang. 2009. Face Photo-Sketch Synthesis and Recognition. IEEE Transactions on Pattern Analysis and Machine Intelligence 31 11 (2009) 1955\u20131967. 10.1109\/TPAMI.2008.222","DOI":"10.1109\/TPAMI.2008.222"},{"key":"e_1_3_3_1_32_2","doi-asserted-by":"publisher","unstructured":"Zhou Wang A.C. Bovik H.R. Sheikh and E.P. Simoncelli. 2004. Image quality assessment: from error visibility to structural similarity. IEEE Transactions on Image Processing 13 4 (2004) 600\u2013612. 10.1109\/TIP.2003.819861","DOI":"10.1109\/TIP.2003.819861"},{"key":"e_1_3_3_1_33_2","volume-title":"NeurIPS","author":"Wen Yuxin","year":"2023","unstructured":"Yuxin Wen, John Kirchenbauer, Jonas Geiping, and Tom Goldstein. 2023. Tree-Ring Watermarks: Fingerprints for Diffusion Images that are Invisible and Robust. In NeurIPS. https:\/\/par.nsf.gov\/biblio\/10522361"},{"key":"e_1_3_3_1_34_2","first-page":"12162","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Yang Zijin","year":"2024","unstructured":"Zijin Yang, Kai Zeng, Kejiang Chen, Han Fang, Weiming Zhang, and Nenghai Yu. 2024. Gaussian Shading: Provable Performance-Lossless Image Watermarking for Diffusion Models. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). 12162\u201312171."},{"key":"e_1_3_3_1_35_2","unstructured":"Jie Zhang Shuai Dong Shiguang Shan and Xilin Chen. 2025. Dual Attention Guided Defense Against Malicious Edits. arxiv:https:\/\/arXiv.org\/abs\/2512.14333\u00a0[cs.CV] https:\/\/arxiv.org\/abs\/2512.14333"},{"key":"e_1_3_3_1_36_2","doi-asserted-by":"publisher","unstructured":"Lin Zhang Lei Zhang Xuanqin Mou and David Zhang. 2011. FSIM: A Feature Similarity Index for Image Quality Assessment. IEEE Transactions on Image Processing 20 8 (2011) 2378\u20132386. 10.1109\/TIP.2011.2109730","DOI":"10.1109\/TIP.2011.2109730"},{"key":"e_1_3_3_1_37_2","volume-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Zhang Richard","year":"2018","unstructured":"Richard Zhang, Phillip Isola, Alexei\u00a0A. Efros, Eli Shechtman, and Oliver Wang. 2018. The Unreasonable Effectiveness of Deep Features as a Perceptual Metric. In Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition (CVPR)."},{"key":"e_1_3_3_1_38_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP61157.2025.00178"},{"key":"e_1_3_3_1_39_2","volume-title":"Proceedings of the IEEE International Conference on Computer Vision (ICCV)","author":"Zhu Jun-Yan","year":"2017","unstructured":"Jun-Yan Zhu, Taesung Park, Phillip Isola, and Alexei\u00a0A. Efros. 2017. Unpaired Image-To-Image Translation Using Cycle-Consistent Adversarial Networks. In Proceedings of the IEEE International Conference on Computer Vision (ICCV)."}],"event":{"name":"IH&MMSec '26: ACM Workshop on Information Hiding and Multimedia Security","location":"Firenze Italy","acronym":"IH&MMSec '26","sponsor":["SIGMM ACM Special Interest Group on Multimedia"]},"container-title":["Proceedings of the 2026 ACM Workshop on Information Hiding and Multimedia Security"],"original-title":[],"deposited":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T08:13:02Z","timestamp":1781597582000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3785353.3815091"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,6,16]]},"references-count":38,"alternative-id":["10.1145\/3785353.3815091","10.1145\/3785353"],"URL":"https:\/\/doi.org\/10.1145\/3785353.3815091","relation":{},"subject":[],"published":{"date-parts":[[2026,6,16]]},"assertion":[{"value":"2026-06-16","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}