Abstract
Research on watermark attacking is essential to reinforce robust watermarking methods by providing new attacking benchmarks. Recently, there is an emergence of attacking methods based on deep learning, in which perceptual loss and watermark loss are utilized to train the neural networks for the imperceptibility of watermarked images and the disruption of attacked watermarks. In this work, we propose a novel randomness-anchored attacking network (RAN) based on deep learning. In RAN, we introduce an alternative watermark loss to attack the watermarks into random noises by anchoring to randomness rather than the original watermarks. Extensive attacking experiments of comparisons with attacking schemes show that the proposed RAN models can achieve satisfying performance in preserving the visual fidelity of attacked watermarked images with competitive attacking ability. The proposed methods add new inspirations to the design of stealthy and effective attacking models based on deep learning, with significant implications for developing robust watermarking. The source code and data is shared at https://github.com/kq409/Watermark-Attack.
Similar content being viewed by others
Funding
This work was supported by the Key Research and Development Project of Science & Technology Department of Sichuan Province (2024YFFK0119, 2024YFFK0122).
Author information
Authors and Affiliations
Corresponding author
Ethics declarations
Competing interests
The authors declare no competing interests.
Additional information
Publisher’s note
Springer Nature remains neutral with regard to jurisdictional claims in published maps and institutional affiliations.
Rights and permissions
Open Access This article is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License, which permits any non-commercial use, sharing, distribution and reproduction in any medium or format, as long as you give appropriate credit to the original author(s) and the source, provide a link to the Creative Commons licence, and indicate if you modified the licensed material. You do not have permission under this licence to share adapted material derived from this article or parts of it. The images or other third party material in this article are included in the article’s Creative Commons licence, unless indicated otherwise in a credit line to the material. If material is not included in the article’s Creative Commons licence and your intended use is not permitted by statutory regulation or exceeds the permitted use, you will need to obtain permission directly from the copyright holder. To view a copy of this licence, visit http://creativecommons.org/licenses/by-nc-nd/4.0/.
About this article
Cite this article
Li, F., Li, D., Li, K. et al. RAN: A randomness-anchored watermark attacking network with stealth and effectiveness. Sci Rep (2026). https://doi.org/10.1038/s41598-026-52298-w
Received:
Accepted:
Published:
DOI: https://doi.org/10.1038/s41598-026-52298-w


