defense arXiv Nov 1, 2025 · Nov 2025
Daichi Zhang, Tong Zhang, Shiming Ge et al. · EPFL · Chinese Academy of Sciences +1 more
Frequency-domain filter enhances forgery clues in Fourier spectrum to detect diffusion-generated images with better generalization
Output Integrity Attack visiongenerative
Diffusion models have achieved remarkable success in image synthesis, but the generated high-quality images raise concerns about potential malicious use. Existing detectors often struggle to capture discriminative clues across different models and settings, limiting their generalization to unseen diffusion models and robustness to various perturbations. To address this issue, we observe that diffusion-generated images exhibit progressively larger differences from natural real images across low- to high-frequency bands. Based on this insight, we propose a simple yet effective representation by enhancing the Frequency Forgery Clue (F^2C) across all frequency bands. Specifically, we introduce a frequency-selective function which serves as a weighted filter to the Fourier spectrum, suppressing less discriminative bands while enhancing more informative ones. This approach, grounded in a comprehensive analysis of frequency-based differences between natural real and diffusion-generated images, enables general detection of images from unseen diffusion models and provides robust resilience to various perturbations. Extensive experiments on various diffusion-generated image datasets demonstrate that our method outperforms state-of-the-art detectors with superior generalization and robustness.
diffusion cnn EPFL · Chinese Academy of Sciences · University of Chinese Academy of Sciences
defense arXiv Nov 1, 2025 · Nov 2025
Daichi Zhang, Tong Zhang, Jianmin Bao et al. · EPFL · Microsoft +1 more
Detects AI-generated fake images by exploiting hierarchical image-text misalignment in CLIP's visual-language space
Output Integrity Attack visionmultimodal
With the rapid development of generative models, detecting generated fake images to prevent their malicious use has become a critical issue recently. Existing methods frame this challenge as a naive binary image classification task. However, such methods focus only on visual clues, yielding trained detectors susceptible to overfitting specific image patterns and incapable of generalizing to unseen models. In this paper, we address this issue from a multi-modal perspective and find that fake images cannot be properly aligned with corresponding captions compared to real images. Upon this observation, we propose a simple yet effective detector termed ITEM by leveraging the image-text misalignment in a joint visual-language space as discriminative clues. Specifically, we first measure the misalignment of the images and captions in pre-trained CLIP's space, and then tune a MLP head to perform the usual detection task. Furthermore, we propose a hierarchical misalignment scheme that first focuses on the whole image and then each semantic object described in the caption, which can explore both global and fine-grained local semantic misalignment as clues. Extensive experiments demonstrate the superiority of our method against other state-of-the-art competitors with impressive generalization and robustness on various recent generative models.
transformer diffusion gan EPFL · Microsoft · Chinese Academy of Sciences