Protection for remote sensing object detection datasets based on backdoor watermarking and region of interest encryption
The collection,cleansing,and annotation processes of high-quality remote sensing datasets typically entail substan-tial costs.Therefore,the remote sensing datasets can be regarded as intellectual properties.However,remote sensing datasets also face threats such as theft,unauthorized usage and redistribution.In order to safeguard the copyright of datasets,we pro-pose an object detection dataset protection method based on backdoor watermarking and region of interest(ROI)encryption.The algorithm embeds object-generation watermark triggers into the original dataset and utilizes an ROI encryption algorithm to encrypt the dataset.During the watermark embedding phase,random samples are selected from the original dataset,and the triggers are embedded into random positions within the samples.During the dataset encryption phase,the ROIs in the annota-tion files are first initially encrypted.Then,disturbances are added within the encrypted ROIs.Finally,a unique random key is generated for each user based on a hash function,and perform secondary encryption on the initially encrypted annotation files.During the dataset decryption phase,only authorized users can decrypt the encrypted dataset,where the encrypted annotation files are restored to correct ROIs.Thereby obtaining the decrypted legitimate dataset.In the phase of asserting copyright on suspected models,a watermark test set is constructed with the object-generation watermark triggers.This test set is then in-putted into the suspected model for prediction.If the watermark prediction success rate exceeds a preset threshold,it is consid-ered that the model has utilized the protected dataset during training.Extensive experiments have demonstrated that this meth-od effectively protects dataset copyrights without compromising dataset quality.The watermarking algorithm exhibits strong robustness against fine-tuning attacks and pruning attacks.
remote sensing dataset for object detectiondataset protectioncopyright protectionROI encryptionobject-gen-eration watermark