arrow
返回

Toward Detecting Hidden Functionalities in Deep Learning Models

delete2026-01-06
delete0
PRE
AI
G
Guobiao Li
S
Sheng Li
Z
Zhenxing Qian
X
Xinpeng Zhang
DOI:10.1109/LSP.2026.3651083delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Deep functionality hiding is an emerging technique that embeds confidential or sensitive functions within seemingly benign deep learning models (DLMs), which perform ordinary machine learning tasks. This enables such models to execute covert tasks while remaining undetected. Despite the rapid progress in deep functionality hiding, countermeasures remain unexplored. In this paper, we propose Distribution Offset Analysis (DOA), a novel method for detecting hidden functionalities in DLMs. Our key insight is that the weight distribution of a benign DLM typically follows a Gaussian distribution, whereas a container DLM with hidden functionalities exhibits notable statistical deviations from this Gaussian pattern. In our methodology, we first compute the distributional distance (i.e., offsets) between the model's weights and an ideal Gaussian distribution. We then fuse these offsets with weight features into a unified representation, which is subsequently used to train a meta-classifier for hidden functionality detection. Through extensive experiments, we demonstrate the effectiveness of the proposed DOA method, which achieves an average detection rate of over 87% against existing state-of-the-art deep functionality hiding techniques.
Keyword:
Functionality hiding
deep learning models
steganalysis

期刊

I
IEEE Signal Processing Letters
IF:
3.9
论文数:
622
被引数:
0

机构

F
Fudan University
学者数:
4.9K
论文数: 1.4K
被引数: 11.1W
引用论文

引用论文

AgeDB: The First Manually Collected, In-the-Wild Age Database
err2017-07-01
err0
errOAAI
errStylianos Moschoglou; Athanasios Papaioannou; Christos Sagonas; Jiankang Deng; Irene Kotsia; Stefanos Zafeiriou
err分享
err收藏
err分享
err收藏
学者 查看更多内容