Not Just Text: Uncovering Vision Modality Typographic Threats in Image Generation Models

Abstract

Current image generation models can effortlessly produce high-quality, highly realistic images, but this also increases the risk of misuse. In various Text-to-Image or Image-to-Image tasks, attackers can generate a series of images containing inappropriate content by simply editing the language modality input. To mitigate this security concern, numerous guarding or defensive strategies have been proposed, with a particular emphasis on safeguarding language modality. However, in practical applications, threats in the vision modality, particularly in tasks involving the editing of real-world images, present heightened security risks as they can easily infringe upon the rights of the image owner. Therefore, this paper employs a method named typographic attack to reveal that various image generation models are also susceptible to threats within the vision modality. Furthermore, we also evaluate the defense performance of various existing methods when facing threats in the vision modality and uncover their ineffectiveness. Finally, we propose the Vision Modal Threats in Image Generation Models (VMT-IGMs) dataset, which would serve as a baseline for evaluating the vision modality vulnerability of various image generation models.

Cite

Text

Cheng et al. "Not Just Text: Uncovering Vision Modality Typographic Threats in Image Generation Models." Conference on Computer Vision and Pattern Recognition, 2025. doi:10.1109/CVPR52734.2025.00285

Markdown

[Cheng et al. "Not Just Text: Uncovering Vision Modality Typographic Threats in Image Generation Models." Conference on Computer Vision and Pattern Recognition, 2025.](https://mlanthology.org/cvpr/2025/cheng2025cvpr-just/) doi:10.1109/CVPR52734.2025.00285

BibTeX

@inproceedings{cheng2025cvpr-just,
  title     = {{Not Just Text: Uncovering Vision Modality Typographic Threats in Image Generation Models}},
  author    = {Cheng, Hao and Xiao, Erjia and Yang, Jiayan and Cao, Jiahang and Zhang, Qiang and Zhang, Jize and Xu, Kaidi and Gu, Jindong and Xu, Renjing},
  booktitle = {Conference on Computer Vision and Pattern Recognition},
  year      = {2025},
  pages     = {2997-3007},
  doi       = {10.1109/CVPR52734.2025.00285},
  url       = {https://mlanthology.org/cvpr/2025/cheng2025cvpr-just/}
}