{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,24]],"date-time":"2026-03-24T01:14:35Z","timestamp":1774314875952,"version":"3.50.1"},"reference-count":24,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2019,11,1]],"date-time":"2019-11-01T00:00:00Z","timestamp":1572566400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,11,1]],"date-time":"2019-11-01T00:00:00Z","timestamp":1572566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2019,11,1]],"date-time":"2019-11-01T00:00:00Z","timestamp":1572566400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Secur. Privacy"],"published-print":{"date-parts":[[2019,11]]},"DOI":"10.1109\/msec.2019.2935666","type":"journal-article","created":{"date-parts":[[2019,9,24]],"date-time":"2019-09-24T20:09:37Z","timestamp":1569355777000},"page":"54-63","source":"Crossref","is-referenced-by-count":22,"title":["Deep Learning on Private Data"],"prefix":"10.1109","volume":"17","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6316-4649","authenticated-orcid":false,"given":"M. Sadegh","family":"Riazi","sequence":"first","affiliation":[{"name":"Electrical and Computer Engineering, University of California San Diego, United States"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8412-4320","authenticated-orcid":false,"given":"Bita","family":"Darvish Rouani","sequence":"additional","affiliation":[{"name":"Microsoft"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Farinaz","family":"Koushanfar","sequence":"additional","affiliation":[{"name":"Electrical and Computer Engineering, University of California San Diego, United States"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref5-sidebar1","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5_752"},{"key":"ref12","first-page":"601","article-title":"Stealing machine learning models via prediction APIs","author":"tram\u00e8r","year":"0","journal-title":"Proc 25th Usenix Security Symp"},{"key":"ref15","first-page":"1651","article-title":"GAZELLE: A low latency framework for secure neural network inference","author":"juvekar","year":"0","journal-title":"Proc 27th USENIX Security Symp"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134012"},{"key":"ref2-sidebar1","doi-asserted-by":"publisher","DOI":"10.1145\/28395.28420"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70972-7_27"},{"key":"ref2","first-page":"1310","article-title":"Privacy-preserving deep learning","author":"shokri","year":"0","journal-title":"Proc 22nd ACM SIGSAC Conf Computer and Communications Security"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1504\/IJSN.2015.071829"},{"key":"ref3-sidebar1","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-48910-X_16"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0035"},{"key":"ref16","first-page":"1501","article-title":"XONN: XNOR-based Oblivious Deep Neural Network Inference","author":"riazi","year":"0","journal-title":"Proc 28th USENIX Security Symp"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-70583-3_40"},{"key":"ref18","first-page":"35","article-title":"ABY3: A mixed protocol framework for machine learning","author":"mohassel","year":"0","journal-title":"Proc 2018 ACM SIGSAC Conf Computer and Communications Security"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/DAC.2018.8465894"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196522"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-45239-0_4"},{"key":"ref5","first-page":"201","article-title":"CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy","author":"gilad-bachrach","year":"0","journal-title":"Proc Int Conf Machine Learning"},{"key":"ref4-sidebar1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"ref1-sidebar1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"}],"container-title":["IEEE Security &amp; Privacy"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8013\/8886872\/08847306.pdf?arnumber=8847306","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,4,27]],"date-time":"2023-04-27T21:21:46Z","timestamp":1682630506000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8847306\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,11]]},"references-count":24,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/msec.2019.2935666","relation":{},"ISSN":["1540-7993","1558-4046"],"issn-type":[{"value":"1540-7993","type":"print"},{"value":"1558-4046","type":"electronic"}],"subject":[],"published":{"date-parts":[[2019,11]]}}}