Xiao, Y., Ye, Q., Liang, Z., Li, H., Li, R., Zheng, H., & Hu, H. (2026). Class-feature Watermark: A Resilient Black-box Watermark Against Model Extraction Attacks. Proceedings of the AAAI Conference on Artificial Intelligence, 40(42), 35903–35912. https://doi.org/10.1609/aaai.v40i42.40905