logo
Canadian researchers create tool to remove anti-deepfake watermarks from AI content

Canadian researchers create tool to remove anti-deepfake watermarks from AI content

CTV News23-07-2025
OpenAI CEO Sam Altman participates in a panel discussion during the annual meeting of the World Economic Forum in Davos, Switzerland, Thursday, Jan. 18, 2024. OpenAI was one of the major tech firms that promised to pursue watermarking technology. (AP Photo/Markus Schreiber)
OTTAWA — University of Waterloo researchers have built a tool that can quickly remove watermarks identifying content as artificially generated — and they say it proves that global efforts to combat deepfakes are most likely on the wrong track.
Academia and industry have focused on watermarking as the best way to fight deepfakes and 'basically abandoned all other approaches,' said Andre Kassis, a PhD candidate in computer science who led the research.
At a White House event in 2023, the leading AI companies — including OpenAI, Meta, Google and Amazon — pledged to implement mechanisms such as watermarking to clearly identify AI-generated content.
AI companies' systems embed a watermark, which is a hidden signature or pattern that isn't visible to a person but can be identified by another system, Kassis explained.
He said the research shows the use of watermarks is most likely not a viable shield against the hazards posed by AI content.
'It tells us that the danger of deepfakes is something that we don't even have the tools to start tackling at this point,' he said.
The tool developed at the University of Waterloo, called UnMarker, follows other academic research on removing watermarks. That includes work at the University of Maryland, a collaboration between researchers at the University of California and Carnegie Mellon, and work at ETH Zürich.
Kassis said his research goes further than earlier efforts and is the 'first to expose a systemic vulnerability that undermines the very premise of watermarking as a defence against deepfakes.'
In a follow-up email statement, he said that 'what sets UnMarker apart is that it requires no knowledge of the watermarking algorithm, no access to internal parameters, and no interaction with the detector at all.'
When tested, the tool worked more than 50 per cent of the time on different AI models, a university press release said.
AI systems can be misused to create deepfakes, spread misinformation and perpetrate scams — creating a need for a reliable way to identify content as AI-generated, Kassis said.
After AI tools became too advanced for AI detectors to work well, attention turned to watermarking.
The idea is that if we cannot 'post facto understand or detect what's real and what's not,' it's possible to inject 'some kind of hidden signature or some kind of hidden pattern' earlier on, when the content is created, Kassis said.
The European Union's AI Act requires providers of systems that put out large quantities of synthetic content to implement techniques and methods to make AI-generated or manipulated content identifiable, such as watermarks.
In Canada, a voluntary code of conduct launched by the federal government in 2023 requires those behind AI systems to develop and implement 'a reliable and freely available method to detect content generated by the system, with a near-term focus on audio-visual content (e.g., watermarking).'
Kassis said UnMarker can remove watermarks without knowing anything about the system that generated it, or anything about the watermark itself.
'We can just apply this tool and within two minutes max, it will output an image that is visually identical to the watermark image' which can then be distributed, he said.
'It kind of is ironic that there's billions that are being poured into this technology and then, just with two buttons that you press, you can just get an image that is watermark-free.'
Kassis said that while the major AI players are racing to implement watermarking technology, more effort should be put into finding alternative solutions.
Watermarks have 'been declared as the de facto standard for future defence against these systems,' he said.
'I guess it's a call for everyone to take a step back and then try to think about this problem again.'
This report by The Canadian Press was first published July 23, 2025.
Anja Karadeglija, The Canadian Press
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

5 Important Takeaways From SoFi's Blowout Earnings Report
5 Important Takeaways From SoFi's Blowout Earnings Report

Globe and Mail

time22 minutes ago

  • Globe and Mail

5 Important Takeaways From SoFi's Blowout Earnings Report

Key Points SoFi reported earnings that handily beat expectations on both the top and bottom lines. The loan platform business is generating an impressive stream of fee income. SoFi's asset quality is improving, with the net charge-off ratio declining by more than 40 basis points. 10 stocks we like better than SoFi Technologies › SoFi Technologies (NASDAQ: SOFI) recently reported its second-quarter earnings, and the stock soared to a multiyear high. Not only were the numbers generally stronger than analysts had been looking for, but the company also is growing in all the right ways and has big plans. With that in mind, here are some of the key takeaways from SoFi's earnings report that you need to know, and what to keep an eye on. Where to invest $1,000 right now? Our analyst team just revealed what they believe are the 10 best stocks to buy right now. Learn More » 1. Growth momentum isn't slowing down In the second quarter, revenue growth was 44% year over year, an acceleration over its prior rate. The company grew its membership base by 34% year over year, adding 846,000 new members, the highest single-quarter total ever. 2. Capital-light revenue streams are strong SoFi has been a personal lender for years, but the recent focus has been on the loan platform business, which consists of several capital-light streams of fee income. In addition to securitizing loans and selling them to investors, the company has been originating a high volume of loans on behalf of third parties and referring applicants to other lending partners. Its loan platform is generating high-margin fee income at a rate of more than $500 million annually on a run rate of $9.5 billion in loan originations. Fee-based revenue now makes up 44% of the company's total, compared with 27% a couple of years ago, and this shift is a big reason for SoFi's surprisingly strong profitability. Noninterest income roughly quadrupled year over year, and the loan platform business has been the primary driver. 3. Profits are better than expected Not only did SoFi produce better-than-expected profitability in the second quarter, but the company also reported its highest earnings per share (EPS) ever. It produced an 11% adjusted net margin, and adjusted earnings before interest, taxes, depreciation, and amortization (EBITDA) increased 80% year over year. And management raised its full-year 2025 guidance for all major profitability metrics and now expects EPS to more than double from 2024 levels. 4. Asset quality is improving SoFi's loan net charge-off rate ticked higher in 2023 but it has been in a clear downward trend for nearly two years. Since it peaked at 3.98% in late 2023, the net charge-off rate for personal loans has declined to 2.83%, including a 48-basis-point sequential drop in the most recent quarter. 5. More than personal loans SoFi is well known for its personal loan business, and for good reason. But the company also originates student loans and home loans, and I'd argue that these are underappreciated growth drivers. In the second quarter, student loan volume grew by 35%, and I wouldn't be surprised to see it accelerate in the second half of the year, since more pandemic-era federal student loan protections have expired recently. For example, borrowers whose loans are in limbo as the SAVE repayment plan makes its way through the legal system just recently saw interest start accumulating on their student loans again. Perhaps most exciting is the fintech's home loan business, which grew volume by more than 90% year over year despite a slow real estate market and persistent high interest rates. There's a lot of pent-up demand for home purchases as well as for refinancing and home equity lines of credit, and if mortgage rates fall, this could become a big business. What to watch The second half of 2025 could be an exciting time for SoFi. The Federal Reserve is widely expected to resume interest rate cuts, and this could help lower the company's deposit cost. Also, management is bringing back cryptocurrency trading before the end of the year and has other big plans to integrate cryptocurrency and blockchain technology throughout its platform. Along with its earnings report, SoFi announced a plan to raise $1.5 billion in fresh capital by selling new common stock. With plenty of growth opportunities, this could help take its business to the next level. Should you invest $1,000 in SoFi Technologies right now? Before you buy stock in SoFi Technologies, consider this: The Motley Fool Stock Advisor analyst team just identified what they believe are the 10 best stocks for investors to buy now… and SoFi Technologies wasn't one of them. The 10 stocks that made the cut could produce monster returns in the coming years. Consider when Netflix made this list on December 17, 2004... if you invested $1,000 at the time of our recommendation, you'd have $653,427!* Or when Nvidia made this list on April 15, 2005... if you invested $1,000 at the time of our recommendation, you'd have $1,119,863!* Now, it's worth noting Stock Advisor's total average return is 1,060% — a market-crushing outperformance compared to 182% for the S&P 500. Don't miss out on the latest top 10 list, available when you join Stock Advisor. See the 10 stocks » *Stock Advisor returns as of August 4, 2025

Brokenhead Ojibway Nation votes against proposed silica mining partnership
Brokenhead Ojibway Nation votes against proposed silica mining partnership

CTV News

timean hour ago

  • CTV News

Brokenhead Ojibway Nation votes against proposed silica mining partnership

Members of Brokenhead Ojibway Nation (BON) have voted against a proposed partnership with a silica mining company following a community referendum held last week. According to results shared by the First Nation on Facebook, 310 ballots were cast. A total of 181 members voted 'no' to the proposal, while 129 voted 'yes.' In the social media post, Chief and council thanked community members for participating and said they respect the outcome. 'Any proposal to extract resources from our territory must be presented to our membership,' the post read. 'This is the expectation of BON for all resource development proponents and is an important step in ensuring our members are meaningfully involved in decision-making.' The leadership said the referendum will serve as a foundation for developing clearer, community-driven processes for future engagement. Brokenhead Ojibway Nation is located about 70 kilometres northeast of Winnipeg.

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store