The invention discloses a robust watermarking method for stable
diffusion generated images. The robust watermarking method comprises the following steps: step 1,
watermark embedding; step 2, generating a
watermark image; step 3,
watermark extraction; step 4, watermark detection and
source tracing; according to the method, the watermark information is encrypted and mapped into
Gaussian noise approximately conforming to normal distribution, and is embedded into a
potential space instead of directly modifying pixels, so that
visual distortion of an image is avoided, native logic of a
diffusion model is fit,
model parameters do not need to be adjusted or network fine adjustment is not needed, and the original generation performance of the model can be fully guaranteed; the watermark is expanded to the
potential space full dimension, the watermark covers the whole semantic level of the image, a voting mechanism is introduced in the extraction stage to carry out consistency
verification on the multi-copy watermark, various common attacks can be effectively resisted, the generated image can still keep the complete content structure and
semantic consistency even under the high watermark capacity, and the
image quality is improved. And the balance of model performance,
image quality and robustness is realized.