{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T01:41:05Z","timestamp":1740102065762,"version":"3.37.3"},"reference-count":24,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,6,18]],"date-time":"2023-06-18T00:00:00Z","timestamp":1687046400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,6,18]],"date-time":"2023-06-18T00:00:00Z","timestamp":1687046400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2022YFB3103202"],"award-info":[{"award-number":["2022YFB3103202"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,6,18]]},"DOI":"10.1109\/ijcnn54540.2023.10191063","type":"proceedings-article","created":{"date-parts":[[2023,8,2]],"date-time":"2023-08-02T17:30:03Z","timestamp":1690997403000},"page":"1-8","source":"Crossref","is-referenced-by-count":1,"title":["Interesting Near-boundary Data: Inferring Model Ownership for DNNs"],"prefix":"10.1109","author":[{"given":"Zhe","family":"Sun","sequence":"first","affiliation":[{"name":"Tianjin Key Laboratory of Network and Data Security Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zongwen","family":"Yang","sequence":"additional","affiliation":[{"name":"Tianjin Key Laboratory of Network and Data Security Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhongyu","family":"Huang","sequence":"additional","affiliation":[{"name":"Tianjin Key Laboratory of Network and Data Security Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu","family":"Zhang","sequence":"additional","affiliation":[{"name":"Tianjin Key Laboratory of Network and Data Security Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jianzhong","family":"Zhang","sequence":"additional","affiliation":[{"name":"Tianjin Key Laboratory of Network and Data Security Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1615","article-title":"Turning your weakness into a strength: Watermarking deep neural networks by back-dooring","volume-title":"27th USENIX Security Symposium (USENIX Security 18)","author":"Adi","year":"2018"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3437526"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref4","first-page":"1309","article-title":"Exploring con-nections between active learning and model extraction","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Chandrasekaran","year":"2020"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453079"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3297858.3304051"},{"key":"ref7","article-title":"Rethinking deep neural network ownership verification: Embed-ding passports to defeat ambiguity attacks","volume":"32","author":"Fan","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1162\/tacl_a_00437"},{"key":"ref9","article-title":"Explaining and harnessing adversarial exam-ples","author":"Goodfellow","year":"2014","journal-title":"arXiv preprint"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.4140\/TCP.n.2015.249"},{"key":"ref12","first-page":"1937","article-title":"Entangled wa-termarks as a defense against model extraction","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Jia","year":"2021"},{"journal-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref13"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.5555\/2999134.2999257"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref16","article-title":"Piracy resistant watermarks for deep neural networks","author":"Li","year":"2019","journal-title":"arXiv preprint"},{"key":"ref17","first-page":"05821","article-title":"Open-sourced dataset protection via backdoor watermarking","author":"Li","year":"2020","journal-title":"arXiv preprint"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i2.20036"},{"key":"ref19","article-title":"Dataset inference: Ownership resolution in machine learning","author":"Maini","year":"2021","journal-title":"arXiv preprint"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-88418-5_26"},{"key":"ref21","article-title":"Un-supervised representation learning with deep convolutional generative adversarial networks","author":"Radford","year":"2015","journal-title":"arXiv preprint"},{"key":"ref22","article-title":"En-semble adversarial training: Attacks and defenses","author":"Tramer","year":"2017","journal-title":"arXiv preprint"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3078971.3078974"},{"key":"ref24","first-page":"22619","article-title":"Passport-aware normal-ization for deep model protection","volume":"33","author":"Zhang","year":"2020","journal-title":"Advances in Neural Information Processing Systems"}],"event":{"name":"2023 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2023,6,18]]},"location":"Gold Coast, Australia","end":{"date-parts":[[2023,6,23]]}},"container-title":["2023 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10190990\/10190992\/10191063.pdf?arnumber=10191063","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,1]],"date-time":"2024-03-01T15:23:21Z","timestamp":1709306601000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10191063\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,6,18]]},"references-count":24,"URL":"https:\/\/doi.org\/10.1109\/ijcnn54540.2023.10191063","relation":{},"subject":[],"published":{"date-parts":[[2023,6,18]]}}}