{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,4]],"date-time":"2026-05-04T03:29:11Z","timestamp":1777865351349,"version":"3.51.4"},"reference-count":47,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T00:00:00Z","timestamp":1760832000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T00:00:00Z","timestamp":1760832000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100002920","name":"RGC","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100002920","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,10,19]]},"DOI":"10.1109\/iccv51701.2025.00261","type":"proceedings-article","created":{"date-parts":[[2026,4,29]],"date-time":"2026-04-29T19:45:49Z","timestamp":1777491949000},"page":"1-10","source":"Crossref","is-referenced-by-count":0,"title":["Geminio: Language-Guided Gradient Inversion Attacks in Federated Learning"],"prefix":"10.1109","author":[{"given":"Junjie","family":"Shan","sequence":"first","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ziqi","family":"Zhao","sequence":"additional","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jialin","family":"Lu","sequence":"additional","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rui","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Siu Ming","family":"Yiu","sequence":"additional","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ka-Ho","family":"Chow","sequence":"additional","affiliation":[{"name":"School of Computing and Data Science, The University of Hong Kong,Hong Kong SAR,China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP57164.2023.00020"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP57164.2023.00023"},{"key":"ref3","first-page":"3","article-title":"Imperio: Languageguided backdoor attacks for arbitrary model control","volume-title":"International Joint Conference on Artificial Intelligence","author":"Chow","year":"2024"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.2010.11929"},{"key":"ref6","first-page":"5, 2","volume-title":"Challenges in representation learning: Facial expression recognition challenge","author":"Dumitru","year":"2013"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.3390\/fi13040094"},{"key":"ref8","first-page":"1","volume-title":"Privacy leakage on dnns: A survey of model inversion attacks and defenses","author":"Fang","year":"2024"},{"key":"ref9","first-page":"1, 2","article-title":"Robbing the fed: Directly obtaining private data in federated learning with modified models","volume-title":"International Conference on Learning Representations","author":"Fowl","year":"2021"},{"key":"ref10","first-page":"2, 6, 3","article-title":"Hiding in plain sight: Disguising data stealing attacks in federated learning","volume-title":"International Conference on Learning Representations (ICLR)","author":"Garov","year":"2024"},{"key":"ref11","volume-title":"What\u2019s new in the 2023 gartner hype cycle for emerging technologies","author":"Gartner","year":"2023"},{"key":"ref12","first-page":"16937","article-title":"Inverting gradients-how easy is it to break privacy in federated learning?","volume-title":"Advances in neural information processing systems","volume":"33","author":"Geiping","year":"2020"},{"key":"ref13","first-page":"6","article-title":"Caltech256 object category dataset","volume-title":"Technical report, Technical Report 7694, California Institute of Technology Pasadena","author":"Griffin","year":"2007"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00978"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00140"},{"key":"ref17","first-page":"7232","article-title":"Evaluating gradient inversion attacks and defenses in federated learning","volume-title":"Advances in neural information processing systems","volume":"34","author":"Huang","year":"2021"},{"key":"ref18","first-page":"1, 3","volume-title":"Breaching a framework for attacks against privacy in federated learning","author":"Wen","year":"2022"},{"key":"ref19","first-page":"5, 2","volume-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"ref20","first-page":"3","article-title":"Blip: Bootstrapping language-image pre-training for unified vision-language understanding and generation","volume-title":"ICML","author":"Li","year":"2022"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00107"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP63326.2025.00061"},{"key":"ref23","first-page":"1273","article-title":"Communicationefficient learning of deep networks from decentralized data","volume-title":"Artificial intelligence and statistics","author":"McMahan","year":"2017"},{"key":"ref24","first-page":"8748","article-title":"Learning transferable visual models from natural language supervision","volume-title":"International conference on machine learning","author":"Radford","year":"2021"},{"key":"ref25","first-page":"2","volume-title":"Dealing doubt: Unveiling threat models in gradient inversion attacks under federated learning, a survey and taxonomy","author":"Shi","year":"2024"},{"key":"ref26","first-page":"1","article-title":"Don\u2019t decay the learning rate, increase the batch size","volume-title":"International Conference on Learning Representations","author":"Smith","year":"2018"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW63382.2024.00426"},{"key":"ref28","first-page":"5","article-title":"Efficientnetv2: Smaller models and faster training","volume-title":"International Conference on Machine Learning","author":"Tan","year":"2021"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2022-0043"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.2988575"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_27"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM58522.2023.00182"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2023.3273490"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/s13042-022-01647-y"},{"key":"ref35","first-page":"23668","article-title":"Fishing for user data in large-batch federated learning via gradient magnification","volume-title":"International Conference on Machine Learning","author":"Wen","year":"2022"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i18.29975"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01607"},{"key":"ref38","first-page":"493","article-title":"BatchCrypt: Efficient homomorphic encryption for Cross-Silo federated learning","volume-title":"2020 USENIX annual technical conference (USENIX ATC 20)","author":"Zhang","year":"2020"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00473"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2022\/791"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3589335.3651514"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/IOTM.004.2100182"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.103039"},{"key":"ref45","first-page":"1","volume-title":"idlg: Improved deep leakage from gradients","author":"Zhao","year":"2020"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00030"},{"key":"ref47","first-page":"2, 6, 3","article-title":"Deep leakage from gradients","volume-title":"Advances in Neural Information Processing Systems (NeurIPS)","author":"Zhu","year":"2019"}],"event":{"name":"2025 IEEE\/CVF International Conference on Computer Vision (ICCV)","location":"Honolulu, HI, USA","start":{"date-parts":[[2025,10,19]]},"end":{"date-parts":[[2025,10,25]]}},"container-title":["2025 IEEE\/CVF International Conference on Computer Vision (ICCV)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11443115\/11443287\/11443434.pdf?arnumber=11443434","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,30]],"date-time":"2026-04-30T06:18:14Z","timestamp":1777529894000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11443434\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,19]]},"references-count":47,"URL":"https:\/\/doi.org\/10.1109\/iccv51701.2025.00261","relation":{},"subject":[],"published":{"date-parts":[[2025,10,19]]}}}