Targeted Data Protection for Diffusion Model by Matching Training Trajectory
By: Hojun Lee , Mijin Koo , Yeji Song and more
Potential Business Impact:
Protects art from being copied by AI.
Recent advancements in diffusion models have made fine-tuning text-to-image models for personalization increasingly accessible, but have also raised significant concerns regarding unauthorized data usage and privacy infringement. Current protection methods are limited to passively degrading image quality, failing to achieve stable control. While Targeted Data Protection (TDP) offers a promising paradigm for active redirection toward user-specified target concepts, existing TDP attempts suffer from poor controllability due to snapshot-matching approaches that fail to account for complete learning dynamics. We introduce TAFAP (Trajectory Alignment via Fine-tuning with Adversarial Perturbations), the first method to successfully achieve effective TDP by controlling the entire training trajectory. Unlike snapshot-based methods whose protective influence is easily diluted as training progresses, TAFAP employs trajectory-matching inspired by dataset distillation to enforce persistent, verifiable transformations throughout fine-tuning. We validate our method through extensive experiments, demonstrating the first successful targeted transformation in diffusion models with simultaneous control over both identity and visual patterns. TAFAP significantly outperforms existing TDP attempts, achieving robust redirection toward target concepts while maintaining high image quality. This work enables verifiable safeguards and provides a new framework for controlling and tracing alterations in diffusion model outputs.
Similar Papers
Learning Few-Step Diffusion Models by Trajectory Distribution Matching
CV and Pattern Recognition
Makes AI art and video creation much faster.
Perturb a Model, Not an Image: Towards Robust Privacy Protection via Anti-Personalized Diffusion Models
CV and Pattern Recognition
Stops AI from copying your face or style.
T3MAL: Test-Time Fast Adaptation for Robust Multi-Scale Information Diffusion Prediction
Social and Information Networks
Predicts how news spreads, even when people change.