Our new X account is live! Follow @wizwand_team for updates
WorkDL logo mark

A Resilient and Accessible Distribution-Preserving Watermark for Large Language Models

About

Watermarking techniques offer a promising way to identify machine-generated content via embedding covert information into the contents generated from language models. A challenge in the domain lies in preserving the distribution of original generated content after watermarking. Our research extends and improves upon existing watermarking framework, placing emphasis on the importance of a \textbf{Di}stribution-\textbf{P}reserving (DiP) watermark. Contrary to the current strategies, our proposed DiPmark simultaneously preserves the original token distribution during watermarking (distribution-preserving), is detectable without access to the language model API and prompts (accessible), and is provably robust to moderate changes of tokens (resilient). DiPmark operates by selecting a random set of tokens prior to the generation of a word, then modifying the token distribution through a distribution-preserving reweight function to enhance the probability of these selected tokens during the sampling process. Extensive empirical evaluation on various language models and tasks demonstrates our approach's distribution-preserving property, accessibility, and resilience, making it a effective solution for watermarking tasks that demand impeccable quality preservation.

Yihan Wu, Zhengmian Hu, Junfeng Guo, Hongyang Zhang, Heng Huang• 2023

Related benchmarks

TaskDatasetResultRank
Watermark DetectionC4 subset--
24
Spoofing Attack RobustnessBookSum
AUC0.5375
20
Spoofing Attack RobustnessC4 RealNewsLike
AUC0.5569
20
Spoofing attack traceabilityRTP-LX (test)
AUC51.85
20
Spoofing attack traceabilityRealToxicityPrompts (test)
AUC49.48
20
Paraphrase Attack RobustnessC4 RealNewsLike
AUC0.5337
20
Paraphrase Attack RobustnessBookSum
AUC55.12
20
Text GenerationC4
TPR @ FPR=1%89.01
15
Latency AnalysisLVLM generation
Average Generation Time (s)8.3464
14
Multimodal WatermarkingMS-COCO 17
PPL3.13
14
Showing 10 of 26 rows

Other info

Follow for update