2022
Fingerprinting Deep Neural Networks Globally via Universal Adversarial Perturbations
CVPR 2022oral
In this paper, we propose a novel and practical mechanism which enables the service provider to verify whether a suspect model is stolen from the victim model via model extraction attacks. Our key insight is that the profile of a DNN model's decision boundary can be uniquely characterized by its Uni…