{"id":174187,"date":"2023-10-14T06:16:35","date_gmt":"2023-10-14T11:16:35","guid":{"rendered":"https:\/\/lifeboat.com\/blog\/2023\/10\/researchers-tested-ai-watermarks-and-broke-all-of-them"},"modified":"2023-10-14T06:16:35","modified_gmt":"2023-10-14T11:16:35","slug":"researchers-tested-ai-watermarks-and-broke-all-of-them","status":"publish","type":"post","link":"https:\/\/lifeboat.com\/blog\/2023\/10\/researchers-tested-ai-watermarks-and-broke-all-of-them","title":{"rendered":"Researchers Tested AI Watermarks\u2014and Broke All of Them"},"content":{"rendered":"<p><a class=\"aligncenter blog-photo\" href=\"https:\/\/lifeboat.com\/blog.images\/researchers-tested-ai-watermarks-and-broke-all-of-them2.jpg\"><\/a><\/p>\n<p>Feizi and his coauthors looked at how easy it is for bad actors to evade watermarking attempts. (He calls it \u201cwashing out\u201d the watermark.) In addition to demonstrating how attackers might remove watermarks, the study shows how it\u2019s possible to add watermarks to human-generated images, triggering false positives. Released online this week, the preprint paper has yet to be peer-reviewed, but Feizi has been a leading figure in AI detection, so it\u2019s worth paying attention to, even at this early stage.<\/p>\n<p>It\u2019s timely research. Watermarking has emerged as one of the more promising strategies to identify AI-generated images and text. Just as physical watermarks are embedded on paper money and stamps to prove authenticity, digital watermarks are meant to trace the origins of images and text online, helping people spot deepfaked videos and bot-authored books. With the US presidential elections on the horizon in 2024, concerns over manipulated media are high\u2014and some people are already getting fooled. Former US president Donald Trump, for instance, <a data-offer-url=\"https:\/\/futurism.com\/trump-ai-voice-cloned-fake-video-anderson-cooper\" class=\"\"  href=\"https:\/\/futurism.com\/trump-ai-voice-cloned-fake-video-anderson-cooper\" rel=\"nofollow noopener\" target=\"_blank\">shared<\/a> a fake video of Anderson Cooper on his Truth Social platform; Cooper\u2019s voice had been AI-cloned.<\/p>\n<p>This summer, OpenAI, Alphabet, Meta, Amazon, and several other major AI players <a href=\"https:\/\/www.wired.com\/story\/ai-watermarking-misinformation\/\">pledged<\/a> to develop watermarking technology to combat misinformation. In late August, <a href=\"https:\/\/www.wired.com\/story\/google-deepmind-demis-hassabis-chatgpt\/\">Google\u2019s DeepMind<\/a> released a beta version of its new watermarking tool, SynthID. The hope is that these tools will flag AI content as it\u2019s being generated, in the same way that physical watermarking authenticates dollars as they\u2019re being printed.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Feizi and his coauthors looked at how easy it is for bad actors to evade watermarking attempts. (He calls it \u201cwashing out\u201d the watermark.) In addition to demonstrating how attackers might remove watermarks, the study shows how it\u2019s possible to add watermarks to human-generated images, triggering false positives. Released online this week, the preprint paper [\u2026]<\/p>\n","protected":false},"author":578,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[11,6],"tags":[],"class_list":["post-174187","post","type-post","status-publish","format-standard","hentry","category-biotech-medical","category-robotics-ai"],"_links":{"self":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/174187","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/users\/578"}],"replies":[{"embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/comments?post=174187"}],"version-history":[{"count":0,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/posts\/174187\/revisions"}],"wp:attachment":[{"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/media?parent=174187"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/categories?post=174187"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/lifeboat.com\/blog\/wp-json\/wp\/v2\/tags?post=174187"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}