Potential attacks and defenses at critical points in non-interactive AI-powered framework for content editing.
| No. | Attack | Defense strategies |
|---|---|---|
| ① | The actor is malicious | + Identity verification + Purpose declaration and metadata embedding + Proactive defense (e.ɡ., watermarking) of published media content |
| ② | Intercept ADCs to inject deepfake material | + Device digital signature and identity verification + Input signal watermarking |
| ③, ⑤, ⑧,⑩ | Intercept channel to manipulate transmitted data | Strongly encrypting communication channels |
| ④ | Modify additional information | + Non-media data encryption + Media data watermarking |
| ⑥ | Overwrite AI-powered system (model, training data, workflows, decision modules, etc) | + System digital signature and identity verification + Robust AI system protection + Source content inspection + Input deepfake detection + Input watermark verification + Output media watermarking |
| ⑨ | Overwrite target platform(s) | + Platform digital signature and identity verification + Deepfake and watermark verification |
| ⑪ | Intercept DACs | + Device digital signature and identity verification + Deepfake and watermark verification + Metadata and auditing information display |
| No. | Attack | Defense strategies |
|---|---|---|
| ① | The actor is malicious | + Identity verification |
| ② | Intercept ADCs to inject deepfake material | + Device digital signature and identity verification |
| ③, ⑤, ⑧,⑩ | Intercept channel to manipulate transmitted data | Strongly encrypting communication channels |
| ④ | Modify additional information | + Non-media data encryption |
| ⑥ | Overwrite AI-powered system (model, training data, workflows, decision modules, | + System digital signature and identity verification |
| ⑨ | Overwrite target platform(s) | + Platform digital signature and identity verification |
| ⑪ | Intercept DACs | + Device digital signature and identity verification |
Sharing content requires targeting cookies to be enabled. Please update your cookie preferences to use this feature.