{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,15]],"date-time":"2025-11-15T07:43:13Z","timestamp":1763192593051,"version":"3.45.0"},"reference-count":42,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,30]]},"DOI":"10.1109\/ijcnn64981.2025.11229049","type":"proceedings-article","created":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T18:46:15Z","timestamp":1763145975000},"page":"1-8","source":"Crossref","is-referenced-by-count":0,"title":["Differential Privacy on Large Language Models for Privacy Preserving Clinical Coding"],"prefix":"10.1109","author":[{"given":"Ben","family":"Marshall","sequence":"first","affiliation":[{"name":"The University of Western Australia,Department of Computer Science and Software Engineering,Perth,Australia"}]},{"given":"Sirui","family":"Li","sequence":"additional","affiliation":[{"name":"Murdoch University,School of Information Technology,Perth,Australia"}]},{"given":"Shiv Akarsh","family":"Meka","sequence":"additional","affiliation":[{"name":"Royal Perth Hospital,Health In A Virtual Environment,Perth,Australia"}]},{"given":"Wei","family":"Liu","sequence":"additional","affiliation":[{"name":"The University of Western Australia,Department of Computer Science and Software Engineering,Perth,Australia"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.findings-emnlp.102"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref3","first-page":"2633","article-title":"Extracting training data from large language models","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Carlini"},{"article-title":"Llm for patient-trial matching: Privacy-aware data augmentation towards better performance and generalizability","volume-title":"American Medical Informatics Association (AMIA) Annual Symposium","author":"Yuan","key":"ref4"},{"key":"ref5","first-page":"1324","article-title":"Large language models for healthcare data augmentation: An example on patient-trial matching","volume-title":"AMIA Annual Symposium Proceedings","volume":"2023","author":"Yuan"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1162\/coli_a_00458"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1093\/jamia\/ocw156"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/TETC.2020.2983404"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-79228-4_1"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1561\/0400000042"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"volume-title":"Differentially private methods in natural language processing","year":"2023","author":"Igamberdiev","key":"ref12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-acl.874"},{"key":"ref14","article-title":"Large language models can be strong differentially private learners","volume":"abs\/2110.05679","author":"Li","year":"2021","journal-title":"CoRR"},{"key":"ref15","article-title":"Differentially private fine-tuning of language models","volume":"abs\/2110.06500","author":"Yu","year":"2021","journal-title":"CoRR"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2022.emnlp-main.323"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.acl-long.74"},{"article-title":"Mistral 7b (2023)","year":"2023","author":"Jiang","key":"ref18"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3641289"},{"key":"ref20","first-page":"1950","article-title":"Few-shot parameter-efficient fine-tuning is better and cheaper than in-context learning","volume":"35","author":"Liu","year":"2022","journal-title":"Advances in Neural Information Processing Systems"},{"article-title":"Large language models for failure mode classification: an investigation","year":"2023","author":"Stewart","key":"ref21"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3582515.3609536"},{"article-title":"Differentially private natural language models: Recent advances and future directions","year":"2023","author":"Hu","key":"ref23"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.eacl-main.207"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.emnlp-main.114"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-acl.874"},{"key":"ref27","article-title":"Opacus: User-friendly differential privacy library in pytorch","volume":"abs\/2109.12298","author":"Yousefpour","year":"2021","journal-title":"CoRR"},{"article-title":"dp-transformers: Training transformer models with differential privacy","year":"2022","author":"Inan","key":"ref28"},{"key":"ref29","article-title":"Lora: Low-rank adaptation of large language models","volume":"abs\/2106.09685","author":"Hu","year":"2021","journal-title":"CoRR"},{"article-title":"Qlora: Efficient finetuning of quantized llms","year":"2023","author":"Dettmers","key":"ref30"},{"article-title":"Distilbert, a distilled version of bert: smaller, faster, cheaper and lighter","volume-title":"NeurIPS EMC2Workshop","author":"Sanh","key":"ref31"},{"issue":"8","key":"ref32","first-page":"9","article-title":"Language models are unsupervised multitask learners","volume":"1","author":"Radford","year":"2019","journal-title":"OpenAI blog"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2022.acl-long.577"},{"key":"ref34","first-page":"10697","article-title":"Deduplicating training data mitigates privacy risks in language models","volume-title":"Proceedings of the 39th International Conference on Machine Learning","volume":"162","author":"Kandpal"},{"article-title":"Quantifying memorization across neural language models","year":"2023","author":"Carlini","key":"ref35"},{"key":"ref36","first-page":"267","article-title":"The secret sharer: Evaluating and testing unintended memorization in neural networks","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Carlini"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/D19-1410"},{"year":"2019","key":"ref38","article-title":"International classification of diseases"},{"article-title":"Do not let privacy overbill utility: Gradient embedding perturbation for private learning","volume-title":"International Conference on Learning Representations","author":"Yu","key":"ref39"},{"volume-title":"Das 2020 redistricting production code","year":"2020","key":"ref40"},{"article-title":"Federated learning with formal differential privacy guarantees","year":"2022","author":"McMahan","key":"ref41"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2014.35"}],"event":{"name":"2025 International Joint Conference on Neural Networks (IJCNN)","start":{"date-parts":[[2025,6,30]]},"location":"Rome, Italy","end":{"date-parts":[[2025,7,5]]}},"container-title":["2025 International Joint Conference on Neural Networks (IJCNN)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11227166\/11227148\/11229049.pdf?arnumber=11229049","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,15]],"date-time":"2025-11-15T07:39:25Z","timestamp":1763192365000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11229049\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,30]]},"references-count":42,"URL":"https:\/\/doi.org\/10.1109\/ijcnn64981.2025.11229049","relation":{},"subject":[],"published":{"date-parts":[[2025,6,30]]}}}