Robust Watermarking on Gradient Boosting Decision Trees
Chung, Jun Woo, Lao, Yingjie, Zhao, Weijie
–arXiv.org Artificial Intelligence
Gradient Boosting Decision Trees (GBDTs) are widely used in industry and academia for their high accuracy and efficiency, particularly on structured data. However, watermarking GBDT models remains underexplored compared to neural networks. In this work, we present the first robust watermarking framework tailored to GBDT models, utilizing in-place fine-tuning to embed imperceptible and resilient watermarks. We propose four embedding strategies, each designed to minimize impact on model accuracy while ensuring watermark robustness. Through experiments across diverse datasets, we demonstrate that our methods achieve high watermark embedding rates, low accuracy degradation, and strong resistance to post-deployment fine-tuning.
arXiv.org Artificial Intelligence
Nov-14-2025
- Country:
- Asia (0.04)
- Europe
- North America
- Canada > British Columbia
- Vancouver (0.04)
- United States
- California
- Los Angeles County > Long Beach (0.04)
- Orange County > Anaheim (0.04)
- San Francisco County > San Francisco (0.14)
- Hawaii > Honolulu County
- Honolulu (0.04)
- Louisiana > Orleans Parish
- New Orleans (0.04)
- Maryland > Baltimore (0.04)
- Oregon > Multnomah County
- Portland (0.04)
- California
- Canada > British Columbia
- Genre:
- Research Report (1.00)
- Industry:
- Information Technology > Security & Privacy (1.00)
- Technology: