{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T20:53:07Z","timestamp":1770411187699,"version":"3.49.0"},"publisher-location":"Singapore","reference-count":23,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819569625","type":"print"},{"value":"9789819569632","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-95-6963-2_4","type":"book-chapter","created":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T10:08:42Z","timestamp":1770372522000},"page":"45-58","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Backdoor-Based Protection Framework for\u00a0Model Functional Services"],"prefix":"10.1007","author":[{"given":"Yusheng","family":"Guo","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qiang","family":"Hao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhao","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qingshuang","family":"Wu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yanliang","family":"Lu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ming","family":"Gu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Su","family":"Hu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,2,7]]},"reference":[{"key":"4_CR1","doi-asserted-by":"crossref","unstructured":"Hua, W., Zhang, Z., Suh, G.E.: Reverse engineering convolutional neural networks through side-channel information leaks. In: 2018 55th ACM\/ESDA\/IEEE Design Automation Conference (DAC), pp. 1\u20136. IEEE (2018)","DOI":"10.1109\/DAC.2018.8465773"},{"issue":"6","key":"4_CR2","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3707453","volume":"34","author":"D Li","year":"2025","unstructured":"Li, D., Zhang, Z., Yao, M., Cai, Y., Guo, Y., Chen, X.: TEESlice: protecting sensitive neural network models in trusted execution environments when attackers have pre-trained models. ACM Trans. Softw. Eng. Methodol. 34(6), 1\u201349 (2025)","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"4_CR3","doi-asserted-by":"crossref","unstructured":"Chakraborty, A., Mondai, A., Srivastava, A.: Hardware-assisted intellectual property protection of deep learning models. In: 2020 57th ACM\/IEEE Design Automation Conference (DAC), pp. 1\u20136. IEEE (2020)","DOI":"10.1109\/DAC18072.2020.9218651"},{"key":"4_CR4","doi-asserted-by":"crossref","unstructured":"Tian, J., Zhou, J., Duan, J.: Probabilistic selective encryption of convolutional neural networks for hierarchical services. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR), pp. 2205\u20132214 (2021)","DOI":"10.1109\/CVPR46437.2021.00224"},{"key":"4_CR5","unstructured":"Guo, Y., Zhong, N., Qian, Z., Zhang, X.: Model copyright protection in buyer-seller environment. arXiv preprint arXiv:2312.05262 (2023)"},{"key":"4_CR6","unstructured":"Gerault, D., Hambitzer, A., Ronen, E., Shamir, A.: How to securely implement cryptography in deep neural networks. Cryptology ePrint Archive (2025)"},{"key":"4_CR7","unstructured":"Fan, L., Ng, K.W., Chan, C.S.: Rethinking deep neural network ownership verification: embedding passports to defeat ambiguity attacks. Adv. Neural Inf. Process. Syst. 32 (2019)"},{"key":"4_CR8","first-page":"22619","volume":"33","author":"J Zhang","year":"2020","unstructured":"Zhang, J., Chen, D., Liao, J., Zhang, W., Hua, G., Yu, N.: Passport-aware normalization for deep model protection. Adv. Neural. Inf. Process. Syst. 33, 22619\u201322628 (2020)","journal-title":"Adv. Neural. Inf. Process. Syst."},{"key":"4_CR9","first-page":"1780","volume":"34","author":"X Chen","year":"2021","unstructured":"Chen, X., Chen, T., Zhang, Z., Wang, Z.: You are caught stealing my winning lottery ticket! making a lottery ticket claim its ownership. Adv. Neural. Inf. Process. Syst. 34, 1780\u20131791 (2021)","journal-title":"Adv. Neural. Inf. Process. Syst."},{"issue":"4","key":"4_CR10","doi-asserted-by":"publisher","first-page":"4521","DOI":"10.1109\/TPAMI.2022.3195956","volume":"45","author":"B Li","year":"2022","unstructured":"Li, B., Fan, L., Gu, H., Li, J., Yang, Q.: FedIPR: ownership verification for federated deep neural network models. IEEE Trans. Pattern Anal. Mach. Intell. 45(4), 4521\u20134536 (2022)","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"issue":"6","key":"4_CR11","doi-asserted-by":"publisher","first-page":"5214","DOI":"10.1109\/TDSC.2023.3242737","volume":"20","author":"P Lv","year":"2023","unstructured":"Lv, P., et al.: A robustness-assured white-box watermark in neural networks. IEEE Trans. Dependable Secure Comput. 20(6), 5214\u20135229 (2023)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"4_CR12","doi-asserted-by":"crossref","unstructured":"Pang, K., Qi, T., Wu, C., Bai, M., Jiang, M., Huang, Y.: ModelShield: adaptive and robust watermark against model extraction attack. IEEE Trans. Inf. Forensics Secur. (2025)","DOI":"10.1109\/TIFS.2025.3530691"},{"key":"4_CR13","doi-asserted-by":"crossref","unstructured":"He, Z., Zhang, T., Lee, R.: Sensitive-sample fingerprinting of deep neural networks. In: Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 4729\u20134737 (2019)","DOI":"10.1109\/CVPR.2019.00486"},{"key":"4_CR14","doi-asserted-by":"crossref","unstructured":"Chen, J., et al.: Copy, right? A testing framework for copyright protection of deep learning models. In: 2022 IEEE Symposium on Security and Privacy (SP), pp. 824\u2013841. IEEE (2022)","DOI":"10.1109\/SP46214.2022.9833747"},{"key":"4_CR15","doi-asserted-by":"crossref","unstructured":"Xu, T., Zhong, S.h., Zhang, Z., Liu, Y.: Intellectual property protection for deep models: Pioneering cross-domain fingerprinting solutions. IEEE Trans. Inf. Forensics Secur. (2025)","DOI":"10.1109\/TIFS.2025.3552175"},{"key":"4_CR16","unstructured":"Gu, T., Dolan-Gavitt, B., Garg, S.: BadNets: identifying vulnerabilities in the machine learning model supply chain. arXiv preprint arXiv:1708.06733 (2017)"},{"key":"4_CR17","unstructured":"Chen, X., Liu, C., Li, B., Lu, K., Song, D.: Targeted backdoor attacks on deep learning systems using data poisoning. arXiv preprint arXiv:1712.05526 (2017)"},{"key":"4_CR18","doi-asserted-by":"crossref","unstructured":"Li, Y., Li, Y., Wu, B., Li, L., He, R., Lyu, S.: Invisible backdoor attack with sample-specific triggers. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 16463\u201316472 (2021)","DOI":"10.1109\/ICCV48922.2021.01615"},{"key":"4_CR19","doi-asserted-by":"crossref","unstructured":"Guo, Y., Zhong, N., Qian, Z., Zhang, X.: Physical invisible backdoor based on camera imaging. In: Proceedings of the 31st ACM International Conference on Multimedia, pp. 7817\u20137825 (2023)","DOI":"10.1145\/3581783.3612476"},{"key":"4_CR20","doi-asserted-by":"crossref","unstructured":"Xu, Y., et al.: Fine-grained prompt screening: defending against backdoor attack on text-to-image diffusion models. In: Proceedings of the Thirty-Fourth International Joint Conference on Artificial Intelligence (2025)","DOI":"10.24963\/ijcai.2025\/68"},{"key":"4_CR21","doi-asserted-by":"crossref","unstructured":"Zhang, H., Tang, H., Sun, Y., Li, Z.: Gradient pruning interactive attack for vision-language pre-training models. IEEE Trans. Dependable Secure Comput. (2025)","DOI":"10.1109\/TDSC.2025.3625576"},{"key":"4_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"104","DOI":"10.1007\/978-3-031-20065-6_7","volume-title":"Computer Vision \u2013 ECCV 2022","author":"J Bai","year":"2022","unstructured":"Bai, J., Gao, K., Gong, D., Xia, S.T., Li, Z., Liu, W.: Hardly perceptible trojan attack against neural networks with bit flips. In: Avidan, S., Brostow, G., Ciss\u00e9, M., Farinella, G.M., Hassner, T. (eds.) ECCV 2022. LNCS, vol. 13665, pp. 104\u2013121. Springer, Cham (2022). https:\/\/doi.org\/10.1007\/978-3-031-20065-6_7"},{"key":"4_CR23","unstructured":"Nguyen, A., Tran, A.: WaNet\u2013imperceptible warping-based backdoor attack. arXiv preprint arXiv:2102.10369 (2021)"}],"container-title":["Lecture Notes in Computer Science","MultiMedia Modeling"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-95-6963-2_4","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T10:08:47Z","timestamp":1770372527000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-95-6963-2_4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9789819569625","9789819569632"],"references-count":23,"URL":"https:\/\/doi.org\/10.1007\/978-981-95-6963-2_4","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"7 February 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"MMM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Multimedia Modeling","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Prague","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Czech Republic","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 January 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31 January 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"32","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"mmm2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/mmm2026.cz\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}