A Response to Glaze Purification via IMPRESS (original) (raw)
Abstract:Recent work proposed a new mechanism to remove protective perturbation added by Glaze in order to again enable mimicry of art styles from images protected by Glaze. Despite promising results shown in the original paper, our own tests with the authors' code demonstrated several limitations of the proposed purification approach. The main limitations are 1) purification has a limited effect when tested on artists that are not well-known historical artists already embedded in original training data, 2) problems in evaluation metrics, and 3) collateral damage on mimicry result for clean images. We believe these limitations should be carefully considered in order to understand real world usability of the purification attack.
Submission history
From: Stanley Wu [view email]
[v1] Tue, 12 Dec 2023 20:52:27 UTC (3,100 KB)