{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,31]],"date-time":"2025-10-31T08:08:50Z","timestamp":1761898130743,"version":"build-2065373602"},"reference-count":28,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,30]]},"DOI":"10.1109\/icme59968.2025.11209365","type":"proceedings-article","created":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T17:57:42Z","timestamp":1761847062000},"page":"1-6","source":"Crossref","is-referenced-by-count":1,"title":["Model-Guardian: Protecting against Data-Free Model Stealing Using Gradient Representations and Deceptive Predictions"],"prefix":"10.1109","author":[{"given":"Yunfei","family":"Yang","sequence":"first","affiliation":[{"name":"Chinese Academy of Sciences,Institute of Information Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaojun","family":"Chen","sequence":"additional","affiliation":[{"name":"Chinese Academy of Sciences,Institute of Information Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yuexin","family":"Xuan","sequence":"additional","affiliation":[{"name":"Chinese Academy of Sciences,Institute of Information Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhendong","family":"Zhao","sequence":"additional","affiliation":[{"name":"Chinese Academy of Sciences,Institute of Information Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00474"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i8.26150"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN60899.2024.10650104"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01485"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01360"},{"key":"ref6","article-title":"Dual student networks for data-free model stealing","author":"Beetham","year":"2022","journal-title":"ICLR"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3579856.3590336"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/ICME57554.2024.10688153"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00085"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP49357.2023.10094956"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3581783.3612092"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00044"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2024.3520599"},{"key":"ref14","doi-asserted-by":"crossref","DOI":"10.1109\/ICME59968.2025.11209365","article-title":"Model-guardian: Protecting against data-free model stealing using gradient representations and deceptive predictions","author":"Yang","year":"2025"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref17","first-page":"10203","article-title":"Mexmi: Pool-based active model extraction crossover membership inference","volume":"35","author":"Xiao","year":"2022","journal-title":"NIPS"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00031"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2019.00020"},{"key":"ref20","article-title":"Prediction poisoning: Towards defenses against dnn model stealing attacks","author":"Orekondy","year":"2020","journal-title":"ICLR"},{"key":"ref21","article-title":"Protecting dnns from theft using an ensemble of diverse models","author":"Kariyappa","year":"2021","journal-title":"ICLR"},{"key":"ref22","article-title":"Undistillable: Making a nasty teacher that cannot teach students","author":"Ma","year":"2021","journal-title":"ICLR"},{"key":"ref23","article-title":"Increasing the cost of model extraction with calibrated proof of work","author":"Dziedzic","year":"2022","journal-title":"ICLR"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/3474369.3486863"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00872"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i2.20036"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1016\/j.jvcir.2023.103876"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01165"}],"event":{"name":"2025 IEEE International Conference on Multimedia and Expo (ICME)","start":{"date-parts":[[2025,6,30]]},"location":"Nantes, France","end":{"date-parts":[[2025,7,4]]}},"container-title":["2025 IEEE International Conference on Multimedia and Expo (ICME)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11208895\/11208897\/11209365.pdf?arnumber=11209365","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,31]],"date-time":"2025-10-31T06:01:39Z","timestamp":1761890499000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11209365\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,30]]},"references-count":28,"URL":"https:\/\/doi.org\/10.1109\/icme59968.2025.11209365","relation":{},"subject":[],"published":{"date-parts":[[2025,6,30]]}}}