{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,19]],"date-time":"2026-05-19T21:51:28Z","timestamp":1779227488137,"version":"3.51.4"},"reference-count":33,"publisher":"MDPI AG","issue":"4","license":[{"start":{"date-parts":[[2025,4,15]],"date-time":"2025-04-15T00:00:00Z","timestamp":1744675200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"Fundamental Research Funds for the Central Universities","award":["ZQN-1112"],"award-info":[{"award-number":["ZQN-1112"]}]},{"name":"Fundamental Research Funds for the Central Universities","award":["62002124"],"award-info":[{"award-number":["62002124"]}]},{"name":"National Natural Science Foundation of China","award":["ZQN-1112"],"award-info":[{"award-number":["ZQN-1112"]}]},{"name":"National Natural Science Foundation of China","award":["62002124"],"award-info":[{"award-number":["62002124"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Entropy"],"abstract":"<jats:p>The rapid development of diffusion models in image generation and processing has led to significant security concerns. Diffusion models are capable of producing highly realistic images that are indistinguishable from real ones. Although deploying a watermarking system can be a countermeasure to verify the ownership or the origin of images, the regeneration attacks arising from diffusion models can easily remove the embedded watermark from the images, without compromising their perceptual quality. Previous watermarking methods that hide watermark information in the carrier image are vulnerable to these newly emergent attacks. To address these challenges, we propose a robust and traceable watermark framework based on the latent diffusion model, where the spread-spectrum watermark is coupled with the diffusion noise to ensure its security and imperceptibility. Since the diffusion model is trained to reduce information entropy from disordered data to restore its true distribution, the transparency of the hidden watermark is guaranteed. Benefiting from the spread spectrum strategy, the decoder structure is no longer needed for watermark extraction, greatly alleviating the training overhead. Additionally, the robustness and transparency are easily controlled by a strength factor, whose operating range is studied in this work. Experimental results demonstrate that our method performs not only against common attacks, but also against regeneration attacks and semantic-based image editing.<\/jats:p>","DOI":"10.3390\/e27040428","type":"journal-article","created":{"date-parts":[[2025,4,15]],"date-time":"2025-04-15T03:59:06Z","timestamp":1744689546000},"page":"428","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":5,"title":["Spread Spectrum Image Watermarking Through Latent Diffusion Model"],"prefix":"10.3390","volume":"27","author":[{"given":"Hongfei","family":"Wu","sequence":"first","affiliation":[{"name":"School of Information Science and Engineering, Huaqiao University, Xiamen 361021, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaodan","family":"Lin","sequence":"additional","affiliation":[{"name":"School of Information Science and Engineering, Huaqiao University, Xiamen 361021, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gewei","family":"Tan","sequence":"additional","affiliation":[{"name":"School of Information Science and Engineering, Huaqiao University, Xiamen 361021, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2025,4,15]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"86","DOI":"10.1109\/ICIP.1994.413536","article-title":"A digital watermark","volume":"Volume 2","author":"Tirkel","year":"1994","journal-title":"Proceedings of the 1st International Conference on Image Processing"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"45","DOI":"10.1109\/TMM.2017.2721642","article-title":"SVD-based adaptive QIM watermarking on stereo audio signals","volume":"20","author":"Hwang","year":"2017","journal-title":"IEEE Trans. Multimed."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"1804","DOI":"10.1109\/InfoSEEE.2014.6946233","article-title":"A novel robust digital image watermarking algorithm based on two-level DCT","volume":"Volume 3","author":"Guan","year":"2014","journal-title":"Proceedings of the 2014 International Conference on Information Science, Electronics and Electrical Engineering"},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Zhu, J., Kaplan, R., Johnson, J., and Li, F. (2018, January 8\u201314). Hidden: Hiding data with deep networks. Proceedings of the European Conference on Computer Vision (ECCV), Munich, Germany.","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Tancik, M., Mildenhall, B., and Ng, R. (2020, January 14\u201319). Stegastamp: Invisible hyperlinks in physical photographs. Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, Virtual Event.","DOI":"10.1109\/CVPR42600.2020.00219"},{"key":"ref_6","unstructured":"Ronneberger, O., Fischer, P., and Brox, T. (2015, January 5\u20139). U-net: Convolutional networks for biomedical image segmentation. Proceedings of the Medical Image Computing and Computer-Assisted Intervention\u2014MICCAI 2015: 18th International Conference, Munich, Germany. Proceedings, Part III 18."},{"key":"ref_7","doi-asserted-by":"crossref","unstructured":"Jia, Z., Fang, H., and Zhang, W. (2021, January 20\u201324). Mbrs: Enhancing robustness of dnn-based watermarking by mini-batch of real and simulated jpeg compression. Proceedings of the 29th ACM International Conference on Multimedia, Chengdu, China.","DOI":"10.1145\/3474085.3475324"},{"key":"ref_8","doi-asserted-by":"crossref","first-page":"6260","DOI":"10.1109\/TCSVT.2023.3265970","article-title":"Adaptor: Improving the robustness and imperceptibility of watermarking by the adaptive strength factor","volume":"33","author":"Wang","year":"2023","journal-title":"IEEE Trans. Circuits Syst. Video Technol."},{"key":"ref_9","unstructured":"Fang, H., Chen, K., Qiu, Y., Liu, J., Xu, K., Fang, C., Zhang, W., and Chang, E.C. (November, January 29). DeNoL: A Few-Shot-Sample-Based Decoupling Noise Layer for Cross-channel Watermarking Robustness. Proceedings of the 31st ACM International Conference on Multimedia, Ottawa, ON, Canada."},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Fernandez, P., Sablayrolles, A., Furon, T., J\u00e9gou, H., and Douze, M. (2022, January 22\u201327). Watermarking images in self-supervised latent spaces. Proceedings of the ICASSP 2022\u20132022 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP), Singapore.","DOI":"10.1109\/ICASSP43922.2022.9746058"},{"key":"ref_11","unstructured":"Zhao, Y., Pang, T., Du, C., Yang, X., Cheung, N.M., and Lin, M. (2023). A recipe for watermarking diffusion models. arXiv."},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Fernandez, P., Couairon, G., J\u00e9gou, H., Douze, M., and Furon, T. (2023, January 1\u20136). The stable signature: Rooting watermarks in latent diffusion models. Proceedings of the IEEE\/CVF International Conference on Computer Vision, Paris, France.","DOI":"10.1109\/ICCV51070.2023.02053"},{"key":"ref_13","unstructured":"Zhang, L., Liu, X., Martin, A.V., Bearfield, C.X., Brun, Y., and Guan, H. (2024). Robust Image Watermarking using Stable Diffusion. arXiv."},{"key":"ref_14","unstructured":"Wen, Y., Kirchenbauer, J., Geiping, J., and Goldstein, T. (2023). Tree-ring watermarks: Fingerprints for diffusion images that are invisible and robust. arXiv."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Tan, Y., Peng, Y., Fang, H., Chen, B., and Xia, S.T. (2024, January 14\u201319). WaterDiff: Perceptual Image Watermarks Via Diffusion Model. Proceedings of the ICASSP 2024\u20142024 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP), Seoul, Republic of Korea.","DOI":"10.1109\/ICASSP48485.2024.10447095"},{"key":"ref_16","unstructured":"Zhao, X., Zhang, K., Su, Z., Vasan, S., Grishchenko, I., Kruegel, C., Vigna, G., Wang, Y.X., and Li, L. (2023). Invisible image watermarks are provably removable using generative AI. arXiv."},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"1673","DOI":"10.1109\/83.650120","article-title":"Secure spread spectrum watermarking for multimedia","volume":"6","author":"Cox","year":"1997","journal-title":"IEEE Trans. Image Process."},{"key":"ref_18","first-page":"6840","article-title":"Denoising diffusion probabilistic models","volume":"33","author":"Ho","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"ref_19","unstructured":"Song, J., Meng, C., and Ermon, S. (2020). Denoising diffusion implicit models. arXiv."},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Rombach, R., Blattmann, A., Lorenz, D., Esser, P., and Ommer, B. (2022, January 18\u201324). High-resolution image synthesis with latent diffusion models. Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, New Orleans, LA, USA.","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"ref_21","doi-asserted-by":"crossref","first-page":"47","DOI":"10.1109\/TCI.2016.2644865","article-title":"Loss functions for image restoration with neural networks","volume":"3","author":"Zhao","year":"2016","journal-title":"IEEE Trans. Comput. Imaging"},{"key":"ref_22","first-page":"2051","article-title":"A loss function for generative neural networks based on watson\u2019s perceptual model","volume":"33","author":"Czolbe","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"ref_23","unstructured":"Simonyan, K., and Zisserman, A. (2014). Very deep convolutional networks for large-scale image recognition. arXiv."},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Lin, T.Y., Maire, M., Belongie, S., Hays, J., Perona, P., Ramanan, D., Doll\u00e1r, P., and Zitnick, C.L. (2014, January 6\u201312). Microsoft coco: Common objects in context. Proceedings of the Computer Vision\u2014ECCV 2014: 13th European Conference, Zurich, Switzerland. Proceedings, Part V 13.","DOI":"10.1007\/978-3-319-10602-1_48"},{"key":"ref_25","doi-asserted-by":"crossref","unstructured":"Wang, Z.J., Montoya, E., Munechika, D., Yang, H., Hoover, B., and Chau, D.H. (2022). Diffusiondb: A large-scale prompt gallery dataset for text-to-image generative models. arXiv.","DOI":"10.18653\/v1\/2023.acl-long.51"},{"key":"ref_26","unstructured":"Kingma, D.P., and Ba, J. (2014). Adam: A method for stochastic optimization. arXiv."},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"2080","DOI":"10.1109\/TIP.2007.901238","article-title":"Image denoising by sparse 3-D transform-domain collaborative filtering","volume":"16","author":"Dabov","year":"2007","journal-title":"IEEE Trans. Image Process."},{"key":"ref_28","unstructured":"Ball\u00e9, J., Minnen, D., Singh, S., Hwang, S.J., and Johnston, N. (2018). Variational image compression with a scale hyperprior. arXiv."},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Cheng, Z., Sun, H., Takeuchi, M., and Katto, J. (2020, January 14\u201319). Learned image compression with discretized gaussian mixture likelihoods and attention modules. Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, Virtual Event.","DOI":"10.1109\/CVPR42600.2020.00796"},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"Zhang, R., Isola, P., Efros, A.A., Shechtman, E., and Wang, O. (2018, January 18\u201322). The unreasonable effectiveness of deep features as a perceptual metric. Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, Salt Lake City, UT, USA.","DOI":"10.1109\/CVPR.2018.00068"},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"1423","DOI":"10.1109\/18.923725","article-title":"Quantization index modulation: A class of provably good methods for digital watermarking and information embedding","volume":"47","author":"Chen","year":"2001","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Brooks, T., Holynski, A., and Efros, A.A. (2023, January 18\u201322). InstructPix2Pix: Learning to Follow Image Editing Instructions. Proceedings of the 2023 IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR), Vancouver, BC, Canada.","DOI":"10.1109\/CVPR52729.2023.01764"},{"key":"ref_33","unstructured":"Zhao, H., Ma, X., Chen, L., Si, S., Wu, R., An, K., Yu, P., Zhang, M., Li, Q., and Chang, B. (2024, December 06). UltraEdit: Instruction-based Fine-Grained Image Editing at Scale. Available online: http:\/\/arxiv.org\/abs\/2407.05282."}],"container-title":["Entropy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1099-4300\/27\/4\/428\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,9]],"date-time":"2025-10-09T17:14:36Z","timestamp":1760030076000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1099-4300\/27\/4\/428"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,4,15]]},"references-count":33,"journal-issue":{"issue":"4","published-online":{"date-parts":[[2025,4]]}},"alternative-id":["e27040428"],"URL":"https:\/\/doi.org\/10.3390\/e27040428","relation":{},"ISSN":["1099-4300"],"issn-type":[{"value":"1099-4300","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,4,15]]}}}