{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,16]],"date-time":"2026-01-16T17:46:21Z","timestamp":1768585581755,"version":"3.49.0"},"reference-count":30,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,30]]},"DOI":"10.1109\/ijcnn64981.2025.11228101","type":"proceedings-article","created":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T18:46:15Z","timestamp":1763145975000},"page":"1-8","source":"Crossref","is-referenced-by-count":1,"title":["Do Adversarial Perturbations Truly Mitigate Gradient Inversion in Federated Learning?"],"prefix":"10.1109","author":[{"given":"Hui","family":"Zhou","sequence":"first","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Zheng","family":"Qin","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Yipeng","family":"Zou","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Xin","family":"Deng","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Jiaxin","family":"Jiang","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Ge","family":"Xiao","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,Changsha,China"}]},{"given":"Hao","family":"Chen","sequence":"additional","affiliation":[{"name":"Hunan University,College of Cyber Science and Technology,Changsha,China"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Artificial intelligence and statistics","volume":"54","author":"McMahan","year":"2017"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3589334.3645514"},{"key":"ref3","first-page":"6381","article-title":"Gradient obfuscation gives a false sense of security in federated learning","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Yue"},{"key":"ref4","article-title":"Deep leakage from gradients","volume":"32","author":"Zhu","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref5","first-page":"16937","article-title":"Inverting gradients-how easy is it to break privacy in federated learning?","volume":"33","author":"Geiping","year":"2020","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01607"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2787987"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-63076-8_3"},{"key":"ref9","article-title":"Differentially private federated learning: A client level perspective","author":"Geyer","year":"2017"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00919"},{"key":"ref11","article-title":"Intriguing properties of neural networks","volume-title":"International Conference on Learning Representations","author":"Christian"},{"key":"ref12","article-title":"Explaining and harnessing adversarial examples","volume-title":"International Conference on Learning Representations","author":"Goodfellow"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00196"},{"key":"ref16","article-title":"Towards deep learning models resistant to adversarial attacks","volume-title":"International Conference on Learning Representations","author":"Aleksander"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3690304"},{"key":"ref18","article-title":"R-gap: Recursive gradient attack on privacy","author":"Zhu","year":"2020"},{"key":"ref19","article-title":"Robbing the fed: Directly obtaining private data in federated learning with modified models","author":"Fowl","year":"2021"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP57164.2023.00020"},{"key":"ref21","article-title":"idlg: Improved deep leakage from gradients","author":"Zhao","year":"2020"},{"key":"ref22","first-page":"29898","article-title":"Gradient inversion with generative image prior","volume":"34","author":"Jeon","year":"2021","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00989"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00458"},{"key":"ref25","article-title":"Nesterov accelerated gradient and scale invariance for adversarial attacks","author":"Lin","year":"2019"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM53939.2023.10229091"},{"issue":"4","key":"ref28","article-title":"Learning multiple layers of features from tiny images","volume":"1","author":"Krizhevsky","year":"2009","journal-title":"Handbook of Systemic Autoimmune Diseases"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00437"}],"event":{"name":"2025 International Joint Conference on Neural Networks (IJCNN)","location":"Rome, Italy","start":{"date-parts":[[2025,6,30]]},"end":{"date-parts":[[2025,7,5]]}},"container-title":["2025 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11227166\/11227148\/11228101.pdf?arnumber=11228101","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,15]],"date-time":"2025-11-15T07:17:20Z","timestamp":1763191040000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11228101\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,30]]},"references-count":30,"URL":"https:\/\/doi.org\/10.1109\/ijcnn64981.2025.11228101","relation":{},"subject":[],"published":{"date-parts":[[2025,6,30]]}}}