{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T19:36:36Z","timestamp":1757619396535,"version":"3.44.0"},"reference-count":82,"publisher":"Springer Science and Business Media LLC","issue":"6","license":[{"start":{"date-parts":[[2025,7,22]],"date-time":"2025-07-22T00:00:00Z","timestamp":1753142400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,7,22]],"date-time":"2025-07-22T00:00:00Z","timestamp":1753142400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["SN COMPUT. SCI."],"DOI":"10.1007\/s42979-025-04190-z","type":"journal-article","created":{"date-parts":[[2025,7,22]],"date-time":"2025-07-22T09:42:12Z","timestamp":1753177332000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["A Review on Secure Inference From Neural Networks"],"prefix":"10.1007","volume":"6","author":[{"given":"Gholamreza","family":"Heydari","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6112-538X","authenticated-orcid":false,"given":"Mojtaba","family":"Mahdavi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hamid","family":"Mala","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,7,22]]},"reference":[{"issue":"5","key":"4190_CR1","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3628446","volume":"56","author":"Z\u00c1 Mann","year":"2023","unstructured":"Mann Z\u00c1, Weinert C, Chabal D, Bos JW. Towards practical secure neural network inference: the journey so far and the road ahead. ACM Comput Surv. 2023;56(5):1\u201337.","journal-title":"ACM Comput Surv"},{"key":"4190_CR2","doi-asserted-by":"crossref","unstructured":"Yao ACC. How to generate and exchange secrets. In: 27th annual symposium on foundations of computer science (Sfcs 1986). IEEE; 1986;162-7.","DOI":"10.1109\/SFCS.1986.25"},{"key":"4190_CR3","volume-title":"A fully homomorphic encryption scheme","author":"C Gentry","year":"2009","unstructured":"Gentry C. A fully homomorphic encryption scheme. US: PhD thesis, stanford university; 2009."},{"issue":"10s","key":"4190_CR4","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3503045","volume":"54","author":"VK Yadav","year":"2022","unstructured":"Yadav VK, Andola N, Verma S, Venkatesan S. A survey of oblivious transfer protocol. ACM comput surv (CSUR). 2022;54(10s):1\u201337.","journal-title":"ACM comput surv (CSUR)"},{"key":"4190_CR5","doi-asserted-by":"crossref","unstructured":"Boyle E, Gilboa N, Ishai Y. Function secret sharing. In: Annual international conference on the theory and applications of cryptographic techniques. Springer; 2015;337-67.","DOI":"10.1007\/978-3-662-46803-6_12"},{"key":"4190_CR6","doi-asserted-by":"crossref","unstructured":"Ryffel T, Tholoniat P, Pointcheval D, Bach F. Ariann: low-interaction privacy-preserving deep learning via function secret sharing. In: Proceedings on privacy enhancing technologies. 2022;291-316.","DOI":"10.2478\/popets-2022-0015"},{"key":"4190_CR7","doi-asserted-by":"publisher","first-page":"274","DOI":"10.56553\/popets-2022-0109","volume":"4","author":"K Gupta","year":"2022","unstructured":"Gupta K, Kumaraswamy D, Chandran N, Gupta D. Llama: a low latency math library for secure inference. Proc Privacy Enhancing Tech. 2022;4:274\u201394.","journal-title":"Proc Privacy Enhancing Tech"},{"key":"4190_CR8","doi-asserted-by":"publisher","first-page":"351","DOI":"10.56553\/popets-2022-0113","volume":"4","author":"S Wagh","year":"2022","unstructured":"Wagh S. Pika: secure computation using function secret sharing over rings. Proc Privacy Enhancing Tech. 2022;4:351\u201377.","journal-title":"Proc Privacy Enhancing Tech"},{"key":"4190_CR9","unstructured":"Yang P, Jiang ZL, Gao S, Wang H, Zhou J, Jin Y, Yiu SM, Fang J. Fssnn: communication-efficient secure neural network training via function secret sharing. Cryptology ePrint archive. 2023."},{"key":"4190_CR10","doi-asserted-by":"publisher","first-page":"2569","DOI":"10.1109\/TIFS.2023.3262149","volume":"18","author":"M Hao","year":"2023","unstructured":"Hao M, Li H, Chen H, Xing P, Zhang T. Fastsecnet: an efficient cryptographic framework for private neural network inference. IEEE Trans Inf Forensics Secur. 2023;18:2569\u201382.","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"4190_CR11","doi-asserted-by":"crossref","unstructured":"Gupta K, Jawalkar N, Mukherjee A, Chandran N, Gupta D, Panwar A, Sharma R. Sigma: secure gpt inference with function secret sharing. Cryptology ePrint Archive. 2023.","DOI":"10.56553\/popets-2024-0107"},{"key":"4190_CR12","doi-asserted-by":"crossref","unstructured":"Yang, P, Jiang, ZL, Zhuang, J, Fang, J, Yiu, S.-M, Wang, X. Fssibnn: Fss-based secure binarized neural network inference with free bitwidth conversion. In: European Symposium on Research in Computer Security. Springer; 2024;229-250.","DOI":"10.1007\/978-3-031-70879-4_12"},{"issue":"2\u20133","key":"4190_CR13","doi-asserted-by":"publisher","first-page":"70","DOI":"10.1561\/3300000019","volume":"2","author":"D Evans","year":"2018","unstructured":"Evans D, Kolesnikov V, Rosulek M. A pragmatic introduction to secure multi-party computation. Found Trends\u00ae Priv Sec. 2018;2(2\u20133):70\u2013246.","journal-title":"Found Trends\u00ae Priv Sec"},{"key":"4190_CR14","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9781107337756","volume-title":"Secure multiparty computation","author":"R Cramer","year":"2015","unstructured":"Cramer R, Damg\u00e5rd IB. Secure multiparty computation. Cambridge: Cambridge University Press; 2015."},{"key":"4190_CR15","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9780511546891","volume-title":"Foundations of Cryptography","author":"O Goldreich","year":"2001","unstructured":"Goldreich O. Foundations of Cryptography. Cambridge: Cambridge University Press; 2001."},{"issue":"17","key":"4190_CR16","doi-asserted-by":"publisher","first-page":"8643","DOI":"10.3390\/app12178643","volume":"12","author":"A Zafar","year":"2022","unstructured":"Zafar A, Aamir M, Mohd Nawi N, Arshad A, Riaz S, Alruban A, Dutta AK, Almotairi S. A comparison of pooling methods for convolutional neural networks. Appl Sci. 2022;12(17):8643.","journal-title":"Appl Sci"},{"issue":"6","key":"4190_CR17","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1109\/MNET.127.2200342","volume":"37","author":"Q Zhang","year":"2022","unstructured":"Zhang Q, Xiang T, Cai Y, Zhao Z, Wang N, Wu H. Privacy-preserving machine learning as a service: challenges and opportunities. IEEE Network. 2022;37(6):214\u201323.","journal-title":"IEEE Network"},{"key":"4190_CR18","doi-asserted-by":"publisher","first-page":"45736","DOI":"10.1109\/ACCESS.2023.3274190","volume":"11","author":"MF Babar","year":"2023","unstructured":"Babar MF, Hasan M. Trusted deep neural execution-a survey. IEEE access. 2023;11:45736\u201348.","journal-title":"IEEE access"},{"key":"4190_CR19","doi-asserted-by":"publisher","DOI":"10.1016\/j.iot.2019.100055","volume":"6","author":"L Coppolino","year":"2019","unstructured":"Coppolino L, D\u2019Antonio S, Mazzeo G, Romano L. A comprehensive survey of hardware-assisted security: From the edge to the cloud. Internet of things. 2019;6: 100055.","journal-title":"Internet of things"},{"key":"4190_CR20","doi-asserted-by":"crossref","unstructured":"Riazi MS, Weinert C, Tkachenko O, Songhori EM, Schneider T, Koushanfar F. Chameleon: a hybrid secure computation framework for machine learning applications. In: Proceedings of the 2018 on asia conference on computer and communications security; 2018;707-21.","DOI":"10.1145\/3196494.3196522"},{"issue":"4","key":"4190_CR21","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3394658","volume":"43","author":"A Wood","year":"2020","unstructured":"Wood A, Najarian K, Kahrobaei D. Homomorphic encryption for machine learning in medicine and bioinformatics. ACM computing surveys (CSUR). 2020;43(4):1\u201335.","journal-title":"ACM computing surveys (CSUR)"},{"key":"4190_CR22","unstructured":"Goldwasser S, Micali S. Probabilistic encryption & how to play mental poker keeping secret all partial information. In: Providing sound foundations for cryptography: on the work of shafi goldwasser and silvio micali; 2019;173-201."},{"key":"4190_CR23","doi-asserted-by":"crossref","unstructured":"Paillier P. Public-key cryptosystems based on composite degree residuosity classes. In: International conference on the theory and applications of cryptographic techniques. Springer; 1999;223-8.","DOI":"10.1007\/3-540-48910-X_16"},{"key":"4190_CR24","doi-asserted-by":"crossref","unstructured":"Boneh D, Goh EJ, Nissim K. Evaluating 2-dnf formulas on ciphertexts. In: Theory of cryptography: second theory of cryptography conference, TCC 2005, cambridge, MA, USA, february 10-12, 2005. proceedings 2. Springer; 2005;325-41.","DOI":"10.1007\/978-3-540-30576-7_18"},{"key":"4190_CR25","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4939-1711-2","volume-title":"An introduction to cryptography","author":"J Hoffstein","year":"2014","unstructured":"Hoffstein J, Pipher J, Silverman JH, Hoffstein J, Pipher J, Silverman JH. An introduction to cryptography. Newyork: Springer; 2014."},{"issue":"11","key":"4190_CR26","doi-asserted-by":"publisher","first-page":"612","DOI":"10.1145\/359168.359176","volume":"22","author":"A Shamir","year":"1979","unstructured":"Shamir A. How to share a secret. Commun ACM. 1979;22(11):612\u20133.","journal-title":"Commun ACM"},{"key":"4190_CR27","doi-asserted-by":"crossref","unstructured":"Boyle E, Gilboa N, Ishai Y. Function secret sharing: improvements and extensions. In: 23rd ACM conference on computer and communications security, CCS 2016. Association for computing machinery; 2016;1292-1303.","DOI":"10.1145\/2976749.2978429"},{"key":"4190_CR28","doi-asserted-by":"crossref","unstructured":"Boyle E, Chandran N, Gilboa N, Gupta D, Ishai Y, Kumar N, Rathee M. Function secret sharing for mixed-mode and fixed-point secure computation. In: Annual international conference on the theory and applications of cryptographic techniques. Springer; 2021;871-900.","DOI":"10.1007\/978-3-030-77886-6_30"},{"key":"4190_CR29","doi-asserted-by":"crossref","unstructured":"Micali S, Goldreich O, Wigderson A. How to play any mental game. In: Proceedings of the nineteenth ACM symp. on theory of computing, STOC. ACM New York; 1987;218-29.","DOI":"10.1145\/28395.28420"},{"key":"4190_CR30","doi-asserted-by":"crossref","unstructured":"Mohassel P, Rindal P. ABY3: a mixed protocol framework for machine learning. In: Proceedings of the 2018 ACM SIGSAC conference on computer and communications security; 2018;35-52.","DOI":"10.1145\/3243734.3243760"},{"key":"4190_CR31","doi-asserted-by":"crossref","unstructured":"Wagh S, Tople S, Benhamouda F, Kushilevitz E, Mittal P, Rabin T. Falcon: honest-majority maliciously secure framework for private deep learning. In: Proceedings on privacy enhancing technologies. 2021;188-208.","DOI":"10.2478\/popets-2021-0011"},{"key":"4190_CR32","unstructured":"Wagh S, Gupta D, Chandran N. SecureNN: efficient and private neural network training. Cryptology ePrint Archive. 2018;442."},{"key":"4190_CR33","unstructured":"Riazi MS, Samragh M, Chen H, Laine K, Lauter K, Koushanfar F. XONN: XNOR-based oblivious deep neural network inference. In: Proceedings of the 28th USENIX conference on security symposium; 2019;1501-18."},{"key":"4190_CR34","doi-asserted-by":"crossref","unstructured":"Kumar N, Rathee M, Chandran N, Gupta D, Rastogi A, Sharma R. Cryptflow: secure tensorflow inference. In: 2020 IEEE symposium on security and privacy (SP). IEEE; 2020;336-53.","DOI":"10.1109\/SP40000.2020.00092"},{"key":"4190_CR35","unstructured":"Krizhevsky A, Sutskever I, Hinton GE. Imagenet classification with deep convolutional neural networks. Advances in neural information processing systems. 2015."},{"key":"4190_CR36","doi-asserted-by":"publisher","unstructured":"Simonyan K, Zisserman A. Very deep convolutional networks for large-scale image recognition. 2014; https:\/\/doi.org\/10.48550\/arXiv.1409.1556.","DOI":"10.48550\/arXiv.1409.1556"},{"key":"4190_CR37","doi-asserted-by":"crossref","unstructured":"He K, Zhang X, Ren S, Sun J. Deep residual learning for image recognition. In: Proceedings of the IEEE conference on computer vision and pattern recognition; 2016;770-8.","DOI":"10.1109\/CVPR.2016.90"},{"issue":"11","key":"4190_CR38","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"LeCun Y, Bottou L, Bengio Y, Haffner P. Gradient-based learning applied to document recognition. Proc IEEE. 1998;86(11):2278\u2013324.","journal-title":"Proc IEEE"},{"key":"4190_CR39","unstructured":"Juvekar C, Vaikuntanathan V, Chandrakasan A. Gazelle: a low latency framework for secure neural network inference. In: Proceedings of the 27th USENIX conference on security symposium; 2018;1651-68."},{"key":"4190_CR40","doi-asserted-by":"crossref","unstructured":"Chandran N, Gupta D, Rastogi A, Sharma R, Tripathi S. Ezpc: programmable and efficient secure two-party computation for machine learning. In: 2019 IEEE european symposium on security and privacy (EuroS &P). IEEE; 2019;496-511.","DOI":"10.1109\/EuroSP.2019.00043"},{"key":"4190_CR41","unstructured":"Rathee D, Rathee M, Goli R, Gupta D, Sharma R, Chandran N, Rastogi A. 2021 IEEE symposium on security and privacy (SP). IEEE, 2021;1003-20."},{"key":"4190_CR42","doi-asserted-by":"crossref","unstructured":"Rathee D, Rathee M, Kumar N, ChandranN, GuptaD, Rastogi A, Sharma R. Cryptflow2: practical 2-party secure inference. In: Proceedings of the 2020 ACM SIGSAC conference on computer and communications security; 2020;325-42.","DOI":"10.1145\/3372297.3417274"},{"key":"4190_CR43","doi-asserted-by":"crossref","unstructured":"Mishra P, Lehmkuhl R, Srinivasan A, Zheng W, Popa RA. Delphi: a cryptographic inference system for neural networks. In: Proceedings of the 2020 workshop on privacy-preserving machine learning in practice; 2020;27-30.","DOI":"10.1145\/3411501.3419418"},{"key":"4190_CR44","doi-asserted-by":"crossref","unstructured":"Keller M. MP-SPDZ: a versatile framework for multi-party computation. In: Proceedings of the 2020 ACM SIGSAC conference on computer and communications security; 2020. pp. 1575-90.","DOI":"10.1145\/3372297.3417872"},{"key":"4190_CR45","doi-asserted-by":"publisher","unstructured":"Warden P. Speech commands: a dataset for limited-vocabulary speech recognition. arXiv. 2018; https:\/\/doi.org\/10.48550\/arXiv.1804.03209.","DOI":"10.48550\/arXiv.1804.03209"},{"key":"4190_CR46","doi-asserted-by":"crossref","unstructured":"Boyle E, Gilboa N, Ishai Y. Secure computation with preprocessing via function secret sharing. In: Theory of cryptography: 17th international conference, TCC 2019, Nuremberg, Germany, December 1\u20135, 2019, proceedings, part I 17. Springer; 2019;341-71.","DOI":"10.1007\/978-3-030-36030-6_14"},{"key":"4190_CR47","doi-asserted-by":"crossref","unstructured":"Liu J, Juuti M, Lu Y. Oblivious neural network predictions via minionn transformations. In: Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security; 2017;619-31.","DOI":"10.1145\/3133956.3134056"},{"key":"4190_CR48","doi-asserted-by":"crossref","unstructured":"Rouhani BD, Riazi MS, Koushanfar F. Deepsecure: scalable provably-secure deep learning. In: Proceedings of the 55th annual design automation conference; 2018:1-6.","DOI":"10.1145\/3195970.3196023"},{"key":"4190_CR49","doi-asserted-by":"crossref","unstructured":"Beaver D. Efficient multiparty protocols using circuit randomization. In: Advances in Cryptology-CRYPTO\u201991: Proceedings 11. Springer; 1992:420-32.","DOI":"10.1007\/3-540-46766-1_34"},{"key":"4190_CR50","unstructured":"Patra A, Schneider T, Suresh A, Yalame H. ABY2.0: improved mixed-protocol secure two-party computation. In: 30th USENIX security symposium (USENIX security 21); 2021:2165-82."},{"key":"4190_CR51","unstructured":"Ng LK, Chow SS. Gforce: gpu-friendly oblivious and rapid neural network inference. In: 30th USENIX security symposium (USENIX security 21); 2021:2147-64."},{"key":"4190_CR52","first-page":"15718","volume":"35","author":"M Hao","year":"2022","unstructured":"Hao M, Li H, Chen H, Xing P, Xu G, Zhang T. Iron: private inference on transformers. Adv Neural Inf Process Syst. 2022;35:15718\u201331.","journal-title":"Adv Neural Inf Process Syst"},{"issue":"34","key":"4190_CR53","first-page":"4961","volume":"34","author":"B Knott","year":"2021","unstructured":"Knott B, Venkataraman S, Hannun A, Sengupta S, Ibrahim M, Maaten L. CRYPTEN: secure multi-party computation meets machine learning. Adv Neural Inf Process Syst. 2021;34(34):4961\u201373.","journal-title":"Adv Neural Inf Process Syst"},{"key":"4190_CR54","doi-asserted-by":"crossref","unstructured":"Storrier K, Vadapalli A, Lyons A, Henry R. Grotto: screaming fast (2+ 1)-pc or $${\\mathbb{Z}}_{2^{n}}$$ via (2, 2)-dpfs. In: Proceedings of the 2023 ACM SIGSAC conference on computer and communications security; 2023;2143-57.","DOI":"10.1145\/3576915.3623147"},{"key":"4190_CR55","doi-asserted-by":"crossref","unstructured":"Jawalkar N, Gupta K, Basu A, Chandran N, Gupta D, Sharma R. Orca: fss-based secure training and inference with gpus. In: 2024 IEEE symposium on security and privacy (SP). IEEE; 2024;597-616.","DOI":"10.1109\/SP54263.2024.00063"},{"key":"4190_CR56","doi-asserted-by":"crossref","unstructured":"Zhu W, Wei M, Li X, Li Q. Securebinn: 3-party secure computation for binarized neural network inference. In: European Symposium on Research in Computer Security. Springer; 2022;275-294.","DOI":"10.1007\/978-3-031-17143-7_14"},{"key":"4190_CR57","doi-asserted-by":"publisher","first-page":"2382","DOI":"10.1109\/TIFS.2023.3265342","volume":"18","author":"Y Dong","year":"2023","unstructured":"Dong Y, Chen X, Song X, Li K. Flexbnn: fast private binary neural network inference with flexible bit-width. IEEE Trans Inf Forensics Secur. 2023;18:2382\u201397.","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"4190_CR58","doi-asserted-by":"crossref","unstructured":"Mohassel P, Zhang Y. Secureml: a system for scalable privacy-preserving machine learning. In: 2017 IEEE symposium on security and privacy (SP). IEEE; 2017;19-38.","DOI":"10.1109\/SP.2017.12"},{"key":"4190_CR59","unstructured":"Gilad-Bachrach R, Dowlin N, Laine K, Lauter K, Naehrig M, Wernsing J. Cryptonets: applying neural networks to encrypted data with high throughput and accuracy. In: International conference on machine learning. PMLR; 2016;201-10."},{"key":"4190_CR60","doi-asserted-by":"crossref","unstructured":"Demmler D, Schneider T, Zohner M. ABY-a framework for efficient mixed-protocol secure two-party computation. In: NDSS; 2015.","DOI":"10.14722\/ndss.2015.23113"},{"key":"4190_CR61","first-page":"459","volume":"2","author":"M Byali","year":"2020","unstructured":"Byali M, Chaudhari H, Patra A, Suresh A. Flash: fast and robust framework for privacy-preserving machine learning. Proc Priv Enhancing Tech. 2020;2:459\u201380.","journal-title":"Proc Priv Enhancing Tech"},{"key":"4190_CR62","first-page":"355","volume":"4","author":"A Dalskov","year":"2020","unstructured":"Dalskov A, Escudero D, Keller M. Secure evaluation of quantized neural networks. Proc Priv Enhancing Tech. 2020;4:355\u201375.","journal-title":"Proc Priv Enhancing Tech"},{"key":"4190_CR63","doi-asserted-by":"crossref","unstructured":"Ben-Efraim A, Nielsen M, Omri E. Turbospeedz: Double your online spdz! improving spdz using function dependent preprocessing. In: Applied cryptography and network security: 17th international conference, ACNS 2019, Bogota, Colombia, June 5\u20137, 2019, proceedings 17. Springer; 2019;530-49.","DOI":"10.1007\/978-3-030-21568-2_26"},{"key":"4190_CR64","doi-asserted-by":"crossref","unstructured":"Harrison J. A machine-checked theory of floating point arithmetic. In: International conference on theorem proving in higher order logics. Springer; 1999;113-30.","DOI":"10.1007\/3-540-48256-3_9"},{"key":"4190_CR65","unstructured":"Xu T, Wu L, Wang R, Li M. Privcirnet: Efficient private inference via block circulant transformation. arXiv preprint arXiv:2405.14569. 2024."},{"key":"4190_CR66","doi-asserted-by":"crossref","unstructured":"Pang Q, Zhu J, M\u00f6llering H, Zheng W, Schneider T. Bolt: Privacy-preserving, accurate and efficient inference for transformers. In: 2024 IEEE Symposium on Security and Privacy (SP). IEEE; 2024;4753-4771.","DOI":"10.1109\/SP54263.2024.00130"},{"key":"4190_CR67","unstructured":"Ran R, Luo X, Wang W, Liu T, Quan G, Xu X, Ding C, Wen W. Spencnn: orchestrating encoding and sparsity for fast homomorphically encrypted neural network inference. In: International Conference on Machine Learning. PMLR; 2023;28718-28728."},{"key":"4190_CR68","unstructured":"Huang Z, Lu W-j, Hong C, Ding J. Cheetah: Lean and fast secure $$\\{$$Two-Party$$\\}$$ deep neural network inference. In: 31st USENIX Security Symposium (USENIX Security 22); 2022;809-826."},{"key":"4190_CR69","doi-asserted-by":"crossref","unstructured":"Ju JH, Park J, Kim J, Kang M, Kim D, Cheon JH, Ahn JH. NeuJeans: Private Neural Network Inference with Joint Optimization of Convolution and FHE Bootstrapping. In: Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security; 2024;4361-4375.","DOI":"10.1145\/3658644.3690375"},{"key":"4190_CR70","doi-asserted-by":"crossref","unstructured":"Frimpong E, Nguyen K, Budzys M, Khan T, Michalas A. Guardml: Efficient privacy-preserving machine learning services through hybrid homomorphic encryption. In: Proceedings of the 39th ACM\/SIGAPP Symposium on Applied Computing; 2024;953-962.","DOI":"10.1145\/3605098.3635983"},{"issue":"3","key":"4190_CR71","doi-asserted-by":"publisher","first-page":"30","DOI":"10.46586\/tches.v2023.i3.30-73","volume":"2023","author":"C Dobraunig","year":"2023","unstructured":"Dobraunig C, Grassi L, Helminger L, Rechberger C, Schofnegger M, Walch R. Pasta: A case for hybrid homomorphic encryption. IACR Trans Cryptographic Hardware and Embedded Syst. 2023;2023(3):30\u201373.","journal-title":"IACR Trans Cryptographic Hardware and Embedded Syst"},{"key":"4190_CR72","doi-asserted-by":"crossref","unstructured":"Cho J, Ha J, Kim S, Lee B, Lee J, Lee J, Moon D, Yoon H. Transciphering framework for approximate homomorphic encryption. In: International Conference on the Theory and Application of Cryptology and Information Security. Springer; 2021;640-669.","DOI":"10.1007\/978-3-030-92078-4_22"},{"key":"4190_CR73","doi-asserted-by":"crossref","unstructured":"Cosseron O, Hoffmann C, M\u00e9aux P, Standaert F-X. Towards case-optimized hybrid homomorphic encryption: Featuring the elisabeth stream cipher. In: International Conference on the Theory and Application of Cryptology and Information Security. Springer; 2022. pp. 32-67.","DOI":"10.1007\/978-3-031-22969-5_2"},{"key":"4190_CR74","doi-asserted-by":"publisher","first-page":"2175","DOI":"10.1109\/TIFS.2023.3263631","volume":"18","author":"D Kim","year":"2023","unstructured":"Kim D, Guyot C. Optimized privacy-preserving cnn inference with fully homomorphic encryption. IEEE Trans Inf Forensics Secur. 2023;18:2175\u201387.","journal-title":"IEEE Trans Inf Forensics Secur"},{"key":"4190_CR75","doi-asserted-by":"publisher","first-page":"3024","DOI":"10.1109\/ACCESS.2023.3348170","volume":"12","author":"D Kim","year":"2023","unstructured":"Kim D, Park J, Kim J, Kim S, Ahn JH. Hyphen: A hybrid packing method and its optimizations for homomorphic encryption-based neural networks. IEEE Access. 2023;12:3024\u201338.","journal-title":"IEEE Access"},{"key":"4190_CR76","unstructured":"Park J, Kim MJ, Jung W, Ahn JH. Aespa: Accuracy preserving low-degree polynomial activation for fast private inference. arXiv preprint arXiv:2201.06699. 2022."},{"key":"4190_CR77","unstructured":"Lam, M, Mitzenmacher, M, Reddi, V.J, Wei, G-Y, Brooks, D. Tabula: Efficiently computing nonlinear activation functions for secure neural network inference. arXiv preprint arXiv:2203.02833. 2022."},{"issue":"1","key":"4190_CR78","doi-asserted-by":"publisher","first-page":"19130","DOI":"10.1038\/s41598-023-45791-z","volume":"13","author":"H Yu","year":"2023","unstructured":"Yu H, Ren X, Zhao C, Yang S, McCann J. Quantum-aided secure deep neural network inference on real quantum computers. Sci Rep. 2023;13(1):19130.","journal-title":"Sci Rep"},{"issue":"1","key":"4190_CR79","doi-asserted-by":"publisher","first-page":"4799","DOI":"10.1038\/s41467-022-32168-5","volume":"13","author":"M Kim","year":"2022","unstructured":"Kim M, Jiang X, Lauter K, Ismayilzada E, Shams S. Secure human action recognition by encrypted neural network inference. Nat Commun. 2022;13(1):4799.","journal-title":"Nat Commun"},{"key":"4190_CR80","unstructured":"Shuai\u00a0Li A, Iyengar A, Kundu A, Bertino E. Transfer learning for security: Challenges and future directions. arXiv e-prints,2403. 2024."},{"issue":"18","key":"4190_CR81","doi-asserted-by":"publisher","first-page":"9010","DOI":"10.3390\/app12189010","volume":"12","author":"J Li","year":"2022","unstructured":"Li J, Zhang Z, Yu S, Yuan J. Improved secure deep neural network inference offloading with privacy-preserving scalar product evaluation for edge computing. Appl Sci. 2022;12(18):9010.","journal-title":"Appl Sci"},{"issue":"20","key":"4190_CR82","doi-asserted-by":"publisher","first-page":"4272","DOI":"10.3390\/math11204272","volume":"11","author":"GW Muoka","year":"2023","unstructured":"Muoka GW, Yi D, Ukwuoma CC, Mutale A, Ejiyi CJ, Mzee AK, Gyarteng ES, Alqahtani A, Al-antari MA. A comprehensive review and analysis of deep learning-based medical image adversarial attack and defense. Mathematics. 2023;11(20):4272.","journal-title":"Mathematics"}],"container-title":["SN Computer Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-025-04190-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s42979-025-04190-z\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-025-04190-z.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,7]],"date-time":"2025-09-07T17:34:08Z","timestamp":1757266448000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s42979-025-04190-z"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7,22]]},"references-count":82,"journal-issue":{"issue":"6","published-online":{"date-parts":[[2025,8]]}},"alternative-id":["4190"],"URL":"https:\/\/doi.org\/10.1007\/s42979-025-04190-z","relation":{},"ISSN":["2661-8907"],"issn-type":[{"type":"electronic","value":"2661-8907"}],"subject":[],"published":{"date-parts":[[2025,7,22]]},"assertion":[{"value":"22 August 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"4 July 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"22 July 2025","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"The authors declare that they have no Conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}}],"article-number":"668"}}