CAT Paper Shows AI Image Watermarks Fail Against Adaptive Real-World Attacks
Project Site: https://compositional-adversarial-training.github.io/Code Repository: https://github.com/Asatheesh6561/CATHuggingFace Models & Datasets: https://huggingface.co/collections/asatheesh/cat
Everyone talks about watermarking AI images. But after WAVES Bench + our NeurIPS “Erasing the Invisible” competition, one thing became clear: watermarks don’t fail in the lab. They fail after the real world touches them. I wrote about our new paper, CAT, and why robust watermarking needs to train against adaptive compositional attacks — not just random corruptions.
Huge thanks to the team Anirudh Satheesh, Michael-Andrei Panaitescu-Liess @michael_panaite, Andrew Xu, Georgios Milis, Heng Huang, Zikui Cai @zikuicai and myself @furongh 💐
Project Site: https://compositional-adversarial-training.github.io/Code Repository: https://github.com/Asatheesh6561/CATHuggingFace Models & Datasets: https://huggingface.co/collections/asatheesh/cat