← Search

Mahmood Sharif

3 accepted papers

2026

NoisePrints: Distortion-Free Watermarks for Authorship in Private Diffusion Models

ICLR 2026poster

With the rapid adoption of diffusion models for visual content generation, proving authorship and protecting copyright have become critical. This challenge is particularly important when model owners keep their models private and may be unwilling or unable to handle authorship issues, making third-p…

Cited by 0SourcecodeScholar
2022

Constrained Gradient Descent: A Powerful and Principled Evasion Attack Against Neural Networks

ICML 2022spotlight

We propose new, more efficient targeted white-box attacks against deep neural networks. Our attacks better align with the attacker’s goal: (1) tricking a model to assign higher probability to the target class than to any other class, while (2) staying within an $\epsilon$-distance of the attacked in…