
Canadian researchers create tool to remove anti-deepfake watermarks from AI content
Academia and industry have focused on watermarking as the best way to fight deepfakes and 'basically abandoned all other approaches,' said Andre Kassis, a PhD candidate in computer science who led the research.
At a White House event in 2023, the leading AI companies — including OpenAI, Meta, Google and Amazon — pledged to implement mechanisms such as watermarking to clearly identify AI-generated content.
AI companies' systems embed a watermark, which is a hidden signature or pattern that isn't visible to a person but can be identified by another system, Kassis explained.
He said the research shows the use of watermarks is most likely not a viable shield against the hazards posed by AI content.
'It tells us that the danger of deepfakes is something that we don't even have the tools to start tackling at this point,' he said.
The tool developed at the University of Waterloo, called UnMarker, follows other academic research on removing watermarks. That includes work at the University of Maryland, a collaboration between researchers at the University of California and Carnegie Mellon, and work at ETH Zürich.
Kassis said his research goes further than earlier efforts and is the 'first to expose a systemic vulnerability that undermines the very premise of watermarking as a defence against deepfakes.'
In a follow-up email statement, he said that 'what sets UnMarker apart is that it requires no knowledge of the watermarking algorithm, no access to internal parameters, and no interaction with the detector at all.'
When tested, the tool worked more than 50 per cent of the time on different AI models, a university press release said.
AI systems can be misused to create deepfakes, spread misinformation and perpetrate scams — creating a need for a reliable way to identify content as AI-generated, Kassis said.
After AI tools became too advanced for AI detectors to work well, attention turned to watermarking.
The idea is that if we cannot 'post facto understand or detect what's real and what's not,' it's possible to inject 'some kind of hidden signature or some kind of hidden pattern' earlier on, when the content is created, Kassis said.
The European Union's AI Act requires providers of systems that put out large quantities of synthetic content to implement techniques and methods to make AI-generated or manipulated content identifiable, such as watermarks.
In Canada, a voluntary code of conduct launched by the federal government in 2023 requires those behind AI systems to develop and implement 'a reliable and freely available method to detect content generated by the system, with a near-term focus on audio-visual content (e.g., watermarking).'
Kassis said UnMarker can remove watermarks without knowing anything about the system that generated it, or anything about the watermark itself.
'We can just apply this tool and within two minutes max, it will output an image that is visually identical to the watermark image' which can then be distributed, he said.
'It kind of is ironic that there's billions that are being poured into this technology and then, just with two buttons that you press, you can just get an image that is watermark-free.'
Kassis said that while the major AI players are racing to implement watermarking technology, more effort should be put into finding alternative solutions.
Watermarks have 'been declared as the de facto standard for future defence against these systems,' he said.
'I guess it's a call for everyone to take a step back and then try to think about this problem again.'
This report by The Canadian Press was first published July 23, 2025.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
a few seconds ago
- Yahoo
US securities regulator announces AI task force
(Reuters) -The U.S. Securities and Exchange Commission said on Friday that it is creating an artificial intelligence task force to lead the agency's efforts to "enhance innovation and efficiency" in its operations. Valerie Szczepanik, who has been named the SEC's chief AI officer, will lead the task force, the regulator said in a statement. Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

Engadget
2 minutes ago
- Engadget
Everything you need to know about iOS 26 beta release: How to download it on your iPhone, new Apple features like Liquid Glass and more
Liquid Glass is a huge new change coming to iOS 26. (Apple) Waiting until the fall can feel like ages when you're ready to upgrade your iPhone to iOS 26. But there's good news: you can test out all the features now by downloading and installing Apple's public beta, which CEO Tim Cook says is (with the other current beta operating systems) "by far the most popular developer betas we've had," 9to5Mac reports. We also previewed the iOS 26 public beta release, which shows off the fresh home and lock screen redesign we've been asking to see for years. Called Liquid Glass, the new translucent look will extend across all of Apple's upcoming operating systems. The overhaul is one of several big changes coming to iOS, macOS, iPadOS and the rest of Apple's software suite, all of which were showcased during the company's WWDC keynote on June 9. After overpromising on AI plans last year, Apple kept its iOS roadmap focused more on basic quality of life improvements this year. There are multiple useful additions coming to the Phone and Messages apps on your iPhone, for instance: Apple execs outlined the ability to weed out spam texts or other unknown senders and an option to hold your spot on a phone call when you've been waiting for a representative to pick up. Plus, a treasured feature that we took for granted is coming back (hint: it's in the Photos app). Siri, meanwhile, is in a holding pattern. Apple has previously specified that its smarter voice assistant — first promised at WWDC 2024 — is delayed until some point "in the coming year," so you shouldn't expect any major changes in the current betas. But there are reports that Apple is aiming to give Siri a bigger brain transplant by basing it on third-party artificial intelligence models like OpenAI's ChatGPT or Anthropic's Claude, which could make 2026 a pivotal year. With each beta, it seems like additional new improvements are popping up, like a newly discovered FaceTime feature that'll freeze your video if it detects nudity. Most newer iPhone models are eligible to download iOS 26 (both the betas and final version). Want to see the full list of new features coming this fall? Read on. The current iPhone operating system is iOS 18, and Apple is still actively updating it — version 18.6 was just recently released. But don't expect to see iOS 19. Instead, Apple is skipping the numbering ahead to iOS 26 later this year. The company has decided to line up its iOS version numbers with a year-based system, similar to car model years. So while iOS and its sibling operating systems will be released in late 2025, they're all designated "26" to reflect the year ahead. (Meanwhile, iOS 18 is still getting new versions this summer, too.) It's official, we're moving to iOS 26. (Apple) Let's be honest. Out of everything announced at WWDC this year, the new Liquid Glass design was the star of the show. The iPhone's home and lock screens have looked pretty much the same year after year — the last exciting thing (in my opinion) was the option to add your own aesthetic to your home screen by customizing your apps and widgets. So seeing the home and lock screens' new facelift is refreshing. So what exactly is Liquid Glass? Apple calls it a "new translucent material" since, well, the apps and widgets are clear. However, the screen can still adapt to dark and light modes, depending on surroundings. You'll also notice buttons with a new floating design in several apps, like Phone and Maps. They're designed to be less distracting than the current buttons, but are still easy to see. While the design overhaul has proven to be controversial since its announcement, some — including Engadget's own Devindra Hardawar — like the new direction, even if it's somewhat reminiscent of Microsoft's translucent Windows Vista Aero designs from nearly twenty years ago. That said, as of the release of the iOS 26 beta 2, Apple has already incorporated some user feedback into the design, dialing back the transparency in at least some places. And while it will continue to evolve, Apple users won't be able to escape it: Liquid Glass was designed to make all of Apple's OSes more cohesive. Here's a look at how the translucent aesthetic will look with the new macOS Tahoe 26 on your desktop. iOS 26 has a laundry list of new features. Among the most worthwhile: Phone app redesign: You'll finally be able to scroll through contacts, recent calls and voicemail messages all on one screen. It also comes with a new feature called Hold Assist that'll notify you when an agent comes to the phone so you can avoid the elevator music and continue on with other tasks. Live Translation in Phone, FaceTime and Messages: iOS 26 is bringing the ability to have a conversation via phone call or text message with someone who speaks another language. Live Translation will translate your conversation in real time, which results in some stop-and-go interactions in the examples Apple shared during its presentation. Polls in group chats: Tired of sorting through what seems like hundreds of messages in your group chat? You and your friends will soon be able to create polls in group messages for deciding things like which brunch spot you're eating at or whose car you're taking on a road trip. Filtering unknown senders in Messages: If you haven't received spam texts about unpaid tolls or other citations, you're lucky. For those of us who have, those annoying messages will soon be filtered away in a separate folder. Visual Intelligence: Similar to a reverse Google image search, this new feature will allow you to search for anything that's on your iPhone screen. For instance, if you spot a pair of shoes someone is wearing in an Instagram photo, you can screenshot it and use Visual Intelligence to find those shoes (or similar ones) online. Photos tabs are back: For anyone who's still frustrated with the Photos changes made last year, you'll be happy to know that your tabs are coming back. Library and Collections will have their own separate spaces so you don't have to scroll to infinity to find what you're looking for. FaceTime "Communication Safety" feature: A newer addition to iOS 26 appears to be the FaceTime "Communication Safety" feature that pauses communications if and when nudity is detected. The feature appears to be a child safety feature that uses on-device detection, thus obviating any cloud-based privacy issues. Apple's Hold Assist will be nifty for those pesky services that put you on hold for 10 or more minutes. (Apple) A few iPhone models that run the current version of iOS — iPhone XR, XS and XS Max — won't be compatible with the latest upgrade. But any iPhones released in 2019 or later will be eligible for the iOS 26 update. iPhone SE (second generation or later) iPhone 11 iPhone 11 Pro iPhone 11 Pro Max iPhone 12 iPhone 12 mini iPhone 12 Pro iPhone 12 Pro Max iPhone 13 iPhone 13 mini iPhone 13 Pro iPhone 13 Pro Max iPhone 14 iPhone 14 Plus iPhone 14 Pro iPhone 14 Pro Max iPhone 15 iPhone 15 Plus iPhone 15 Pro iPhone 15 Pro Max iPhone 16e iPhone 16 iPhone 16 Plus iPhone 16 Pro iPhone 16 Pro Max Not listed here are the presumed new iPhone 17 models (or maybe iPhone 26?) that are all but certain to be announced and released in September. The iOS 26 public beta is now available to download via the Apple Beta Software Program. If you're not already a member, you'll need to sign up to try out all the latest features. Just visit and sign up with your phone number or email address. It's free. Once you're in, you can install it by going to Settings > General > Software Update and selecting iOS 26 public beta. A word of caution: Don't sign up with your main iPhone unless you're OK with any risks that occur with using an OS that isn't finalized. iOS 26 will be released to the public this fall. It usually comes in September, within a week of the Apple iPhone event. Last year, it rolled out to iPhone users on September 16 — exactly one week after the iPhone 16 lineup was announced. If you're more interested in the Apple Intelligence features coming, here's everything Apple revealed for iOS, macOS and more during WWDC. Also, check out how iOS 26 screenshots could be an intriguing preview of Apple's delayed Siri rework. Update, August 1: Added quote from Tim Cook about iOS 26. Update, July 31: Noted that iOS 18.6 is now available. Update, July 24: Noted the iOS 26 public beta is now available. Update, July 3: Noted new FaceTime feature found in the developer beta. Update, June 30: Noted ongoing iOS 18 releases, and reports that Apple is considering additional external LLMs for Siri. Update, June 25: Noted changes added in iOS 26 beta 2. If you buy something through a link in this article, we may earn commission.

Business Insider
3 minutes ago
- Business Insider
Your chats with Meta's AI might end up on Google — just like ChatGPT until it turned them off
OpenAI's ChatGPT raised some eyebrows this week when people realized that certain chats were able to be found by Google search. Although people had checked a box to share the chats publicly, it seemed likely that not everyone understood what they were doing. On Thursday, OpenAI said that it would stop having shared chats be indexed by Google. Meanwhile, Meta's stand-alone MetaAI app also allows users to share their chats — and it will continue to allow Google to index them, meaning that they can show up in a search. I did a bunch of Google searches and found lots of MetaAI conversations in the results. The Meta AI app, launched this spring, lets people share chats to a "Discover" feed. Google crawlers can "index" that feed and then serve up the results when people use Google search. So, for instance, if you do a site-specific search on Google for " and the keyword "balloons," you might come up with a chat someone had with the MetaAI bot about where to get the best birthday balloons — if that person tapped the button to allow the chat to be shared. As Business Insider reported in June, the Meta AI Discover feed had been full of examples of chats that seemed personal in nature — medical questions, specific career advice, relationship matters. Some contained identifying information like phone numbers, email addresses, or full names. Although all of these people did click to share, based on the personal nature of some of the chats, I could only guess that people might have misunderstood what it meant to share the conversation. After Business Insider wrote about this a few weeks ago, the Meta AI app made some tweaks to warn users more clearly about how the Discover feed works. Now, when you choose to share a conversation, you get a pop-up with the warning: "Conversations on feed are public so anyone can see them and engage." The additional warning seems to be working. Scrolling through the Discover feed, I now see mainly instances of people using it for image creation and far fewer accidental private text conversations (although there seemed to still be at least a few of those). Meanwhile, Daniel Roberts, a representative for Meta, confirmed that Meta AI chats that were shared to its Discover feed would continue to be indexed by Google. He reiterated the multi-step process I just described. For now, Meta AI can only be used via its mobile app, not the web. This might lead people to think that even the Discover feed exists as a sort of walled garden, separate from "the internet" and existing only within the Meta AI app. But posts from the Discover feed (and only those public posts) can be shared as links around the web — and that's where the Google indexing comes in. If this sounds slightly confusing, it is. That may also be confusing to users. Now, it's possible that some people really do want to share their AI chats with the general public, and are happy to have those chats show up on Google searches along with their Instagram or Facebook handles. But I'm still not sure I'd understand why anyone would want to share their interactions — or why anyone else would want to read them.