{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T16:44:06Z","timestamp":1751388246431,"version":"3.37.3"},"reference-count":58,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,5,2]],"date-time":"2022-05-02T00:00:00Z","timestamp":1651449600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,5,2]],"date-time":"2022-05-02T00:00:00Z","timestamp":1651449600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100012470","name":"CERN","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100012470","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,5,2]]},"DOI":"10.1109\/infocom48880.2022.9796975","type":"proceedings-article","created":{"date-parts":[[2022,6,20]],"date-time":"2022-06-20T21:18:49Z","timestamp":1655759929000},"page":"590-599","source":"Crossref","is-referenced-by-count":7,"title":["When Deep Learning Meets Steganography: Protecting Inference Privacy in the Dark"],"prefix":"10.1109","author":[{"given":"Qin","family":"Liu","sequence":"first","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiamin","family":"Yang","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hongbo","family":"Jiang","sequence":"additional","affiliation":[{"name":"Hunan University,College of Computer Science and Electronic Engineering,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jie","family":"Wu","sequence":"additional","affiliation":[{"name":"Temple University,Department of Computer and Information Sciences,Philadelphia,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tao","family":"Peng","sequence":"additional","affiliation":[{"name":"Guangzhou University,School of Computer Science and Cyber Engineering,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tian","family":"Wang","sequence":"additional","affiliation":[{"name":"Beijing Normal University &#x0026; UIC,Institute of Artificial Intelligence and Future Networks,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guojun","family":"Wang","sequence":"additional","affiliation":[{"name":"Guangzhou University,School of Computer Science and Cyber Engineering,P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2019.2901877"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2003.08.007"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"article-title":"DarKnight: A Data Privacy Scheme for Training and Inference of Deep Neural Networks","year":"2020","author":"hashemi","key":"ref31"},{"article-title":"Chiron: Privacy-preserving machine learning as a service","year":"2018","author":"hunt","key":"ref30"},{"key":"ref37","article-title":"Adaptive payload distribution in multiple images steganography based on image texture features","author":"liao","year":"2019","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3418290"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3183713.3197390"},{"key":"ref34","article-title":"Calibrating noise to sensitivity in private data analysis","author":"dwork","year":"2006","journal-title":"Proc of TCC"},{"key":"ref28","article-title":"Slalom: Fast, verifiable and private execution of neural networks in trusted hardware","author":"tramer","year":"2018","journal-title":"Proc of ICLR"},{"key":"ref27","article-title":"Interpretable complex-valued neural networks for privacy protection","author":"xiang","year":"2020","journal-title":"Proc of ICLR"},{"article-title":"Efficient deep learning on multi-source private data","year":"2018","author":"hynes","key":"ref29"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.91"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298682"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0011"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref21","article-title":"Trident: Efficient 4PC framework for privacy preserving machine learning","author":"rachuri","year":"2020","journal-title":"Proc of NDSS"},{"key":"ref24","article-title":"Deep private-feature extraction","author":"osia","year":"2018","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3219819.3220106"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3373376.3378522"},{"article-title":"Privacy aware offloading of deep neural networks","year":"2018","author":"leroux","key":"ref25"},{"key":"ref50","article-title":"Reading digits in natural images with unsupervised feature learning","author":"netzer","year":"2011","journal-title":"Proc of NIPS"},{"key":"ref51","article-title":"Sanctum: Minimal hardware extensions for strong software isolation","author":"costan","year":"2016","journal-title":"Proc of USENIX Security"},{"key":"ref58","article-title":"Adam: A method for stochastic optimization","author":"kingma","year":"2014","journal-title":"Proc of ICLR"},{"key":"ref57","article-title":"Imagenet classification with deep convolutional neural networks","author":"krizhevsky","year":"2012","journal-title":"Communications of the ACM"},{"article-title":"Opening the black box of deep neural networks via information","year":"2017","author":"shwartz-ziv","key":"ref56"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413546"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.632"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/1015330.1015332"},{"article-title":"Differentially private federated learning: A client level perspective","year":"2018","author":"geyer","key":"ref10"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2911169"},{"article-title":"Generative Adversarial Networks","year":"2014","author":"goodfellow","key":"ref40"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660348"},{"journal-title":"Tech Rep","article-title":"Learning with privacy at scale","year":"2017","key":"ref13"},{"article-title":"Generating artificial data for private deep learning","year":"2018","author":"triastcyn","key":"ref14"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1186\/1687-417X-2007-037343"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23241"},{"key":"ref17","article-title":"CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy","author":"dowlin","year":"2016","journal-title":"Proc of ICML"},{"key":"ref18","article-title":"ABY3: A mixed protocol framework for machine learning","author":"mohassel","year":"2018","journal-title":"Proc of CCS"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0035"},{"year":"0","key":"ref4"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2015.152"},{"key":"ref6","article-title":"Privacy-preserving machine learning: threats and solutions","author":"rubaie","year":"2019","journal-title":"IEEE Security & Privacy"},{"year":"0","key":"ref5","article-title":"BigML"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref7","article-title":"Privacy-preserving deep learning","author":"shokri","year":"2015","journal-title":"Proc of CCS"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2012.02.016"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2017.48"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-21735-7_7"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2019.2921977"},{"article-title":"Learning multiple layers of features from tiny images","year":"2009","author":"krizhevsky","key":"ref48"},{"key":"ref47","article-title":"Learning algorithms for classification: A comparison on handwritten digit recognition","author":"lecun","year":"1995","journal-title":"Neural Networks"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417253"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2018\/543"},{"key":"ref44","article-title":"Attacking and protecting data privacy in edge-cloud collaborative inference systems","author":"he","year":"2020","journal-title":"IEEE Internet of Things Journal"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3021407"}],"event":{"name":"IEEE INFOCOM 2022 - IEEE Conference on Computer Communications","start":{"date-parts":[[2022,5,2]]},"location":"London, United Kingdom","end":{"date-parts":[[2022,5,5]]}},"container-title":["IEEE INFOCOM 2022 - IEEE Conference on Computer Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9796607\/9796652\/09796975.pdf?arnumber=9796975","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,11]],"date-time":"2022-07-11T20:01:33Z","timestamp":1657569693000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9796975\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,5,2]]},"references-count":58,"URL":"https:\/\/doi.org\/10.1109\/infocom48880.2022.9796975","relation":{},"subject":[],"published":{"date-parts":[[2022,5,2]]}}}