An early look at cryptographic watermarks for AI-generated content
blog.cloudflare.com
blog.cloudflare.com
The point is, there is no good solution here unless there is regulation, but these attempts at solutions are useful in the long run
if you're technically sophisticated you can easily evade it of course. but 1) most people aren't technically sophisticated, 2) one can ask "why are you going through all this effort to remove the watermark if you aren't trying to deceive anyone"?
Yeah in the long run you might be right, but there will be lots of people looking for a quick opportunity. E.g. a content farmer trying to SEO. If Google punishes websites for serving AI generated content, you know where this will end.
Lots of people are very lazy.
Citation: all the times we already spot obvious AI-generated comment, which in the early days included the models literally saying "As an AI language model" and this ending up in Amazon reviews etc.
Anyway. In this future, my camera would have its jpgs signed with Nikon or Sony's certificate [0][1], art created by OpenAI would be signed up open AI, and images without any signature would be suspect by default.
[0] https://www.dpreview.com/news/6352280282/sony-content-authen...
[1] https://en.wikipedia.org/wiki/Content_Authenticity_Initiativ...
Also, how much gen AI is enough to require a watermark? If I generativley fill the part of my photo that I blurred with my thumb, should the entire photo be watermarked? Just the part that I filled in? What if I use a gen AI tool, but only apply a transformation that does not require gen AI (like adding a label on an image)?
Cryptographic watermarks for Gen AI or for non-Gen AI media is dangerous from a security standpoint.
Maybe it would technically be possible to defeat, but we're already pretty good at making it difficult/expensive to extract a private key from hardware.
OTOH, could this be another step towards prohibiting Open Source models?