Box-Free Model Watermarks Are Prone to Black-Box Removal Attacks

Open in new window