Xiao, Yaxin, et al. “Class-Feature Watermark: A Resilient Black-Box Watermark Against Model Extraction Attacks”. Proceedings of the AAAI Conference on Artificial Intelligence, vol. 40, no. 42, Mar. 2026, pp. 35903-12, doi:10.1609/aaai.v40i42.40905.