{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T16:38:43Z","timestamp":1778258323508,"version":"3.51.4"},"reference-count":52,"publisher":"Springer Science and Business Media LLC","issue":"10","license":[{"start":{"date-parts":[[2024,5,22]],"date-time":"2024-05-22T00:00:00Z","timestamp":1716336000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,5,22]],"date-time":"2024-05-22T00:00:00Z","timestamp":1716336000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Fund of China","doi-asserted-by":"crossref","award":["62076184, 61976158, 61976160, 62076182, 62276190"],"award-info":[{"award-number":["62076184, 61976158, 61976160, 62076182, 62276190"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Central Universities and State Key Laboratory of Integrated Services Networks"},{"name":"Shanghai Innovation Action Project of Science and Technology","award":["2051110070"],"award-info":[{"award-number":["2051110070"]}]},{"DOI":"10.13039\/100007219","name":"Shanghai Natural Science Foundation","doi-asserted-by":"crossref","award":["22ZR1466700"],"award-info":[{"award-number":["22ZR1466700"]}],"id":[{"id":"10.13039\/100007219","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Int J Comput Vis"],"published-print":{"date-parts":[[2024,10]]},"DOI":"10.1007\/s11263-024-02115-6","type":"journal-article","created":{"date-parts":[[2024,5,22]],"date-time":"2024-05-22T18:02:12Z","timestamp":1716400932000},"page":"4673-4687","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Re-ID-leak: Membership Inference Attacks Against Person Re-identification"],"prefix":"10.1007","volume":"132","author":[{"given":"Junyao","family":"Gao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xinyang","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuguang","family":"Dou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dongsheng","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Duoqian","family":"Miao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6745-9674","authenticated-orcid":false,"given":"Cairong","family":"Zhao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,5,22]]},"reference":[{"key":"2115_CR1","doi-asserted-by":"crossref","unstructured":"Bousmalis, K., Silberman, N., Dohan, D., et\u00a0al. (2017). Unsupervised pixel-level domain adaptation with generative adversarial networks. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 3722\u20133731).","DOI":"10.1109\/CVPR.2017.18"},{"key":"2115_CR2","doi-asserted-by":"crossref","unstructured":"Chen, B., Deng, W., & Hu, J. (2019). Mixed high-order attention network for person re-identification. In Proceedings of the IEEE\/CVF international conference on computer vision (pp. 371\u2013381).","DOI":"10.1109\/ICCV.2019.00046"},{"key":"2115_CR3","doi-asserted-by":"crossref","unstructured":"Chen, M., Zhang, Z., Wang, T., et\u00a0al. (2021). When machine unlearning jeopardizes privacy. In Proceedings of the 2021 ACM SIGSAC conference on computer and communications security (pp. 896\u2013911).","DOI":"10.1145\/3460120.3484756"},{"key":"2115_CR4","doi-asserted-by":"crossref","unstructured":"Cheng, D., Gong, Y., Zhou, S., et\u00a0al. (2016). Person re-identification by multi-channel parts-based CNN with improved triplet loss function. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 1335\u20131344).","DOI":"10.1109\/CVPR.2016.149"},{"key":"2115_CR5","doi-asserted-by":"crossref","unstructured":"Chollet, F. (2017). Xception: Deep learning with depthwise separable convolutions. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 1251\u20131258).","DOI":"10.1109\/CVPR.2017.195"},{"key":"2115_CR6","unstructured":"Dosovitskiy, A., Beyer, L., Kolesnikov, A., et\u00a0al. (2020). An image is worth 16x16 words: Transformers for image recognition at scale. arXiv:2010.11929"},{"issue":"10","key":"2115_CR7","doi-asserted-by":"publisher","first-page":"2644","DOI":"10.1109\/TCSVT.2017.2711015","volume":"28","author":"Y Duan","year":"2017","unstructured":"Duan, Y., Lu, J., Feng, J., et al. (2017). Deep localized metric learning. IEEE Transactions on Circuits and Systems for Video Technology, 28(10), 2644\u20132656.","journal-title":"IEEE Transactions on Circuits and Systems for Video Technology"},{"key":"2115_CR8","doi-asserted-by":"crossref","unstructured":"Fredrikson, M., Jha, S., & Ristenpart, T. (2015). Model inversion attacks that exploit confidence information and basic countermeasures. In Proceedings of the 22nd ACM SIGSAC conference on computer and communications security (pp. 1322\u20131333).","DOI":"10.1145\/2810103.2813677"},{"issue":"1","key":"2115_CR9","first-page":"1","volume":"17","author":"Y Ganin","year":"2016","unstructured":"Ganin, Y., Ustinova, E., Ajakan, H., et al. (2016). Domain-adversarial training of neural networks. The Journal of Machine Learning Research, 17(1), 1\u201335.","journal-title":"The Journal of Machine Learning Research"},{"key":"2115_CR10","doi-asserted-by":"crossref","unstructured":"Gao, J., Jiang, X., Zhang, H., et\u00a0al. (2023). Similarity distribution based membership inference attack on person re-identification. In Proceedings of the AAAI conference on artificial intelligence (pp. 14,820\u201314,828).","DOI":"10.1609\/aaai.v37i12.26731"},{"issue":"1","key":"2115_CR11","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/s11263-014-0718-4","volume":"109","author":"B Gong","year":"2014","unstructured":"Gong, B., Grauman, K., & Sha, F. (2014). Learning kernels for unsupervised domain adaptation with applications to visual object recognition. International Journal of Computer Vision, 109(1), 3\u201327.","journal-title":"International Journal of Computer Vision"},{"key":"2115_CR12","doi-asserted-by":"crossref","unstructured":"Hayes, J., Melis, L., Danezis, G., et\u00a0al. (2017). Logan: Membership inference attacks against generative models. arXiv:1705.07663","DOI":"10.2478\/popets-2019-0008"},{"key":"2115_CR13","doi-asserted-by":"crossref","unstructured":"He, K., Zhang, X., Ren, S., et\u00a0al. (2016). Deep residual learning for image recognition. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 770\u2013778).","DOI":"10.1109\/CVPR.2016.90"},{"key":"2115_CR14","doi-asserted-by":"crossref","unstructured":"He, S., Luo, H., Wang, P., et\u00a0al. (2021). Transreid: Transformer-based object re-identification. In Proceedings of the IEEE\/CVF international conference on computer vision (pp. 15,013\u201315,022).","DOI":"10.1109\/ICCV48922.2021.01474"},{"issue":"24","key":"2115_CR15","doi-asserted-by":"publisher","first-page":"26,633","DOI":"10.1007\/s11042-016-4188-2","volume":"76","author":"HM Hu","year":"2017","unstructured":"Hu, H. M., Fang, W., Zeng, G., et al. (2017). A person re-identification algorithm based on pyramid color topology feature. Multimedia Tools and Applications, 76(24), 26,633-26,646.","journal-title":"Multimedia Tools and Applications"},{"key":"2115_CR16","unstructured":"Krizhevsky, A. (2009). Learning multiple layers of features from tiny images. Master\u2019s Thesis, University of Tront."},{"key":"2115_CR17","unstructured":"Li, G., Rezaei, S., & Liu, X. (2022). User-level membership inference attack against metric embedding learning. arXiv:2203.02077"},{"key":"2115_CR18","doi-asserted-by":"crossref","unstructured":"Li, J., Li, N., & Ribeiro, B. (2020). Membership inference attacks and defenses in supervised learning via generalization gap. arXiv:2002.12062.","DOI":"10.1145\/3422337.3447836"},{"key":"2115_CR19","doi-asserted-by":"crossref","unstructured":"Li, W., Zhu, X., & Gong, S. (2018). Harmonious attention network for person re-identification. In 2018 IEEE\/CVF conference on computer vision and pattern recognition (pp. 2285\u20132294).","DOI":"10.1109\/CVPR.2018.00243"},{"key":"2115_CR20","unstructured":"Liu, W., Wen, Y., Yu, Z., et\u00a0al. (2016). Large-margin softmax loss for convolutional neural networks. In Proceedings of the 33rd international conference on international conference on machine learning\u2014Volume 48. JMLR.org, ICML\u201916 (pp. 507\u2013516)."},{"key":"2115_CR21","doi-asserted-by":"crossref","unstructured":"Liu, Z., Lin, Y., Cao, Y., et\u00a0al. (2021). Swin transformer: Hierarchical vision transformer using shifted windows. In Proceedings of the IEEE\/CVF international conference on computer vision (pp. 10,012\u201310,022).","DOI":"10.1109\/ICCV48922.2021.00986"},{"key":"2115_CR22","unstructured":"Long, Y., Bindschaedler, V., Wang, L., et\u00a0al. (2018). Understanding membership inferences on well-generalized learning models. arXiv:1802.04889"},{"issue":"104","key":"2115_CR23","first-page":"394","volume":"119","author":"Z Ming","year":"2022","unstructured":"Ming, Z., Zhu, M., Wang, X., et al. (2022). Deep learning-based person re-identification methods: A survey and outlook of recent works. Image and Vision Computing, 119(104), 394.","journal-title":"Image and Vision Computing"},{"key":"2115_CR24","unstructured":"Nasr, M., Shokri, R., & Houmansadr, A. (2018a). Comprehensive privacy analysis of deep learning. In Proceedings of the 2019 IEEE symposium on security and privacy (SP) (pp. 1\u201315)."},{"key":"2115_CR25","doi-asserted-by":"crossref","unstructured":"Nasr, M., Shokri, R., & Houmansadr, A. (2018b). Machine learning with membership privacy using adversarial regularization. In Proceedings of the 2018 ACM SIGSAC conference on computer and communications security (pp. 634\u2013646).","DOI":"10.1145\/3243734.3243855"},{"key":"2115_CR26","doi-asserted-by":"crossref","unstructured":"Oh\u00a0Song, H., Xiang, Y., Jegelka, S., et\u00a0al (2016). Deep metric learning via lifted structured feature embedding. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 4004\u20134012).","DOI":"10.1109\/CVPR.2016.434"},{"key":"2115_CR27","unstructured":"Ranjan, R., Castillo, C. D., & Chellappa, R. (2017). L2-constrained softmax loss for discriminative face verification. arXiv:1703.09507"},{"key":"2115_CR28","unstructured":"Sablayrolles, A., Douze, M., Schmid, C., et\u00a0al. (2019). White-box vs black-box: Bayes optimal strategies for membership inference. In International conference on machine learning, PMLR (pp. 5558\u20135567)."},{"key":"2115_CR29","doi-asserted-by":"crossref","unstructured":"Salem, A., Zhang, Y., Humbert, M., et\u00a0al. (2018). Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. arXiv:1806.01246","DOI":"10.14722\/ndss.2019.23119"},{"key":"2115_CR30","doi-asserted-by":"crossref","unstructured":"Sandler, M., Howard, A., Zhu, M., et\u00a0al. (2018). Mobilenetv2: Inverted residuals and linear bottlenecks. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 4510\u20134520).","DOI":"10.1109\/CVPR.2018.00474"},{"key":"2115_CR31","doi-asserted-by":"crossref","unstructured":"Schroff, F., Kalenichenko, D., & Philbin, J. (2015). Facenet: A unified embedding for face recognition and clustering. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 815\u2013823).","DOI":"10.1109\/CVPR.2015.7298682"},{"key":"2115_CR32","unstructured":"Sharma, C., Kapil, S. R., & Chapman, D. (2021). Person re-identification with a locally aware transformer. arXiv:2106.03720"},{"key":"2115_CR33","doi-asserted-by":"crossref","unstructured":"Shokri, R., Stronati, M., Song, C., et\u00a0al. (2017). Membership inference attacks against machine learning models. In 2017 IEEE symposium on security and privacy (SP) (pp. 3\u201318). IEEE.","DOI":"10.1109\/SP.2017.41"},{"key":"2115_CR34","unstructured":"Simonyan, K., & Zisserman, A. (2014). Very deep convolutional networks for large-scale image recognition. arXiv:1409.1556"},{"key":"2115_CR35","doi-asserted-by":"crossref","unstructured":"Song, L., Shokri, R., & Mittal, P. (2019). Privacy risks of securing machine learning models against adversarial examples. In Proceedings of the 2019 ACM SIGSAC conference on computer and communications security (pp. 241\u2013257).","DOI":"10.1145\/3319535.3354211"},{"key":"2115_CR36","doi-asserted-by":"crossref","unstructured":"Sun, Y., Zheng, L., Yang, Y., et\u00a0al. (2018). Beyond part models: Person retrieval with refined part pooling (and a strong convolutional baseline). In Proceedings of the European conference on computer vision (ECCV) (pp. 480\u2013496).","DOI":"10.1007\/978-3-030-01225-0_30"},{"key":"2115_CR37","doi-asserted-by":"crossref","unstructured":"Szegedy, C., Liu, W., Jia, Y., et\u00a0al. (2015). Going deeper with convolutions. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp 1\u20139).","DOI":"10.1109\/CVPR.2015.7298594"},{"key":"2115_CR38","doi-asserted-by":"crossref","unstructured":"Wang, G., Yuan, Y., Chen, X., et\u00a0al. (2018a). Learning discriminative features with multiple granularities for person re-identification. In Proceedings of the 26th ACM international conference on multimedia (pp. 274\u2013282).","DOI":"10.1145\/3240508.3240552"},{"key":"2115_CR39","doi-asserted-by":"crossref","unstructured":"Wang, H., Zhu, X., Gong, S., et al. (2018b). Person re-identification in identity regression space. International Journal of Computer Vision, 126, 1288\u20131310.","DOI":"10.1007\/s11263-018-1105-3"},{"key":"2115_CR40","doi-asserted-by":"crossref","unstructured":"Wei, L., Zhang, S., Gao, W., et\u00a0al. (2018). Person transfer gan to bridge domain gap for person re-identification. In Proceedings of the IEEE conference on computer vision and pattern recognition (pp. 79\u201388).","DOI":"10.1109\/CVPR.2018.00016"},{"key":"2115_CR41","doi-asserted-by":"crossref","unstructured":"Wu, X., Fredrikson, M., Jha, S., et\u00a0al. (2016). A methodology for formalizing model-inversion attacks. In 2016 IEEE 29th computer security foundations symposium (CSF) (pp. 355\u2013370). IEEE.","DOI":"10.1109\/CSF.2016.32"},{"key":"2115_CR42","doi-asserted-by":"publisher","first-page":"143","DOI":"10.1016\/j.patcog.2018.08.015","volume":"86","author":"F Yang","year":"2019","unstructured":"Yang, F., Yan, K., Lu, S., et al. (2019). Attention driven person re-identification. Pattern Recognition, 86, 143\u2013155.","journal-title":"Pattern Recognition"},{"key":"2115_CR43","doi-asserted-by":"crossref","unstructured":"Yeom, S., Giacomelli, I., Fredrikson, M., et\u00a0al. (2018). Privacy risk in machine learning: Analyzing the connection to overfitting. In2018 IEEE 31st computer security foundations symposium (CSF) (pp. 268\u2013282). IEEE.","DOI":"10.1109\/CSF.2018.00027"},{"key":"2115_CR44","doi-asserted-by":"publisher","first-page":"1654","DOI":"10.1007\/s11263-019-01259-0","volume":"128","author":"J Yin","year":"2020","unstructured":"Yin, J., Wu, A., & Zheng, W. S. (2020). Fine-grained person re-identification. International Journal of Computer Vision, 128, 1654\u20131672.","journal-title":"International Journal of Computer Vision"},{"key":"2115_CR45","unstructured":"Yu, D., Zhang, H., Chen, W., et\u00a0al. (2021). How does data augmentation affect privacy in machine learning? In Proceedings of the AAAI conference on artificial intelligence (pp. 10,746\u201310,753)."},{"key":"2115_CR46","doi-asserted-by":"publisher","first-page":"1875","DOI":"10.1007\/s11263-021-01461-z","volume":"129","author":"S Zhang","year":"2021","unstructured":"Zhang, S., Chen, D., Yang, J., et al. (2021). Guided attention in CNNs for occluded pedestrian detection and re-identification. International Journal of Computer Vision, 129, 1875\u20131892.","journal-title":"International Journal of Computer Vision"},{"key":"2115_CR47","doi-asserted-by":"crossref","unstructured":"Zheng, F., Deng, C., Sun, X., et\u00a0al. (2019). Pyramidal person re-identification via multi-loss dynamic training. In Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition (pp. 8514\u20138522).","DOI":"10.1109\/CVPR.2019.00871"},{"key":"2115_CR48","doi-asserted-by":"crossref","unstructured":"Zheng, L., Shen, L., Tian, L., et\u00a0al. (2015). Scalable person re-identification: A benchmark. In Proceedings of the IEEE international conference on computer vision (pp. 1116\u20131124).","DOI":"10.1109\/ICCV.2015.133"},{"key":"2115_CR49","unstructured":"Zheng, L., Yang, Y., & Hauptmann, A. G. (2016). Person re-identification: Past, present and future. arXiv:1610.02984"},{"key":"2115_CR50","doi-asserted-by":"crossref","unstructured":"Zheng, Z., Zheng, L., & Yang, Y. (2017). Unlabeled samples generated by gan improve the person re-identification baseline in vitro. In Proceedings of the IEEE international conference on computer vision (pp. 3754\u20133762).","DOI":"10.1109\/ICCV.2017.405"},{"key":"2115_CR51","doi-asserted-by":"crossref","unstructured":"Zhou, K., Yang, Y., Cavallaro, A., et\u00a0al. (2019). Omni-scale feature learning for person re-identification. In Proceedings of the IEEE\/CVF international conference on computer vision (pp. 3702\u20133712).","DOI":"10.1109\/ICCV.2019.00380"},{"key":"2115_CR52","doi-asserted-by":"crossref","unstructured":"Zhu, Z., Jiang, X., Zheng, F., et\u00a0al. (2020). Aware loss with angular regularization for person re-identification. In Proceedings of the AAAI conference on artificial intelligence (pp. 13,114\u201313,121).","DOI":"10.1609\/aaai.v34i07.7014"}],"container-title":["International Journal of Computer Vision"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11263-024-02115-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11263-024-02115-6\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11263-024-02115-6.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,10,4]],"date-time":"2024-10-04T06:26:30Z","timestamp":1728023190000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11263-024-02115-6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,5,22]]},"references-count":52,"journal-issue":{"issue":"10","published-print":{"date-parts":[[2024,10]]}},"alternative-id":["2115"],"URL":"https:\/\/doi.org\/10.1007\/s11263-024-02115-6","relation":{},"ISSN":["0920-5691","1573-1405"],"issn-type":[{"value":"0920-5691","type":"print"},{"value":"1573-1405","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,5,22]]},"assertion":[{"value":"22 July 2023","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"4 May 2024","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"22 May 2024","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}