{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,16]],"date-time":"2026-05-16T04:00:57Z","timestamp":1778904057381,"version":"3.51.4"},"reference-count":61,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,11,1]],"date-time":"2024-11-01T00:00:00Z","timestamp":1730419200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["62293511"],"award-info":[{"award-number":["62293511"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["62088101"],"award-info":[{"award-number":["62088101"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["62102359"],"award-info":[{"award-number":["62102359"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"DOI":"10.13039\/501100001809","name":"National Science Foundation of China","doi-asserted-by":"crossref","award":["62276067"],"award-info":[{"award-number":["62276067"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Key R&#x0026;D Program of Zhejiang","award":["2022C01018"],"award-info":[{"award-number":["2022C01018"]}]},{"DOI":"10.13039\/501100003399","name":"Science and Technology Commission of Shanghai Municipality","doi-asserted-by":"publisher","award":["22511106102"],"award-info":[{"award-number":["22511106102"]}],"id":[{"id":"10.13039\/501100003399","id-type":"DOI","asserted-by":"publisher"}]},{"name":"National Key Research and Development Program of China","award":["2022YFB3102100"],"award-info":[{"award-number":["2022YFB3102100"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2024,11]]},"DOI":"10.1109\/tdsc.2024.3382321","type":"journal-article","created":{"date-parts":[[2024,3,28]],"date-time":"2024-03-28T19:11:14Z","timestamp":1711653074000},"page":"5720-5736","source":"Crossref","is-referenced-by-count":60,"title":["VeriFi: Towards Verifiable Federated Unlearning"],"prefix":"10.1109","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8335-2746","authenticated-orcid":false,"given":"Xiangshan","family":"Gao","sequence":"first","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2099-4973","authenticated-orcid":false,"given":"Xingjun","family":"Ma","sequence":"additional","affiliation":[{"name":"Fudan University, Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7113-7635","authenticated-orcid":false,"given":"Jingyi","family":"Wang","sequence":"additional","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1893-6259","authenticated-orcid":false,"given":"Youcheng","family":"Sun","sequence":"additional","affiliation":[{"name":"University of Manchester, Manchester, U.K."}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bo","family":"Li","sequence":"additional","affiliation":[{"name":"University of Illinois Urbana-Champaign (UIUC), Champaign, IL, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4268-372X","authenticated-orcid":false,"given":"Shouling","family":"Ji","sequence":"additional","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4221-2162","authenticated-orcid":false,"given":"Peng","family":"Cheng","sequence":"additional","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3155-3145","authenticated-orcid":false,"given":"Jiming","family":"Chen","sequence":"additional","affiliation":[{"name":"Zhejiang University, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"374","article-title":"Towards federated learning at scale: System design","volume-title":"Proc. Mach. Learn. Syst.","volume":"1","author":"Bonawitz"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1561\/9781680837896"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3298981"},{"key":"ref4","article-title":"Right to erasure (right to be forgotten)","year":"2017"},{"issue":"3152676","key":"ref5","first-page":"10","article-title":"The EU general data protection regulation (GDPR): A practical guide","volume":"10","author":"Voigt","year":"2017","journal-title":""},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.69554\/TCFN5165"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00019"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-21752-5_6"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.35"},{"key":"ref10","first-page":"3518","article-title":"Making AI forget you: Data deletion in machine learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Ginart"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/IWQOS52092.2021.9521274"},{"key":"ref12","article-title":"Learn to forget: User-level memorization elimination in federated learning","author":"Liu","year":"2020"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2022-0072"},{"key":"ref14","article-title":"Verifiable and provably secure machine unlearning","author":"Eisenhofer","year":"2022"},{"key":"ref15","first-page":"1885","article-title":"Understanding black-box predictions via influence functions","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Koh"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2003.1238387"},{"key":"ref17","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"McMahan"},{"key":"ref18","first-page":"119","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Blanchard"},{"key":"ref19","first-page":"5650","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Yin"},{"key":"ref20","first-page":"3521","article-title":"The hidden vulnerability of distributed learning in byzantium","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guerraoui"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3446776"},{"key":"ref23","first-page":"233","article-title":"A closer look at memorization in deep networks","volume-title":"Proc. 34th Int. Conf. Mach. Learn.","author":"Arpit"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.1611835114"},{"key":"ref25","article-title":"BadNets: Identifying vulnerabilities in the machine learning model supply chain","author":"Gu","year":"2017"},{"key":"ref26","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"Chen","year":"2017"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3078971.3078974"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196550"},{"key":"ref29","article-title":"IPGuard: Protecting the intellectual property of deep neural networks via fingerprinting the classification boundary","author":"Cao","year":"2019"},{"key":"ref30","article-title":"On the convergence of FedAvg on Non-IID data","author":"Li","year":"2019"},{"key":"ref31","article-title":"Critical learning periods in federated learning","author":"Yan","year":"2021"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/358549.358563"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.21236\/ADA465464"},{"key":"ref34","article-title":"Federated unlearning","author":"Liu","year":"2020"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref36","first-page":"2938","article-title":"How to backdoor federated learning","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"Bagdasaryan"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1016\/j.neuron.2017.05.039"},{"key":"ref38","article-title":"An empirical study of example forgetting during deep neural network learning","author":"Toneva","year":"2018"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref40","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017"},{"key":"ref41","article-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"ref42","article-title":"Speech commands: A dataset for limited-vocabulary speech recognition","author":"Warden","year":"2018"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1038\/sdata.2018.161"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/ISBI.2018.8363547"},{"key":"ref45","article-title":"BCN20000: Dermoscopic lesions in the wild","author":"Combalia","year":"2019"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1016\/S1473-3099(20)30120-1"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.5244\/C.29.41"},{"key":"ref49","article-title":"Estimating a Dirichlet distribution","author":"Thomas","year":"2000"},{"key":"ref50","article-title":"Can you really backdoor federated learning?","author":"Sun","year":"2019"},{"key":"ref51","article-title":"Attack of the tails: Yes, you really can backdoor federated learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Wang"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.74"},{"key":"ref53","article-title":"BERT: Pre-training of deep bidirectional transformers for language understanding","author":"Devlin","year":"2018"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/MCI.2014.2307227"},{"key":"ref55","volume-title":"Reinforcement Learning: An Introduction","author":"Sutton","year":"2018"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1613\/jair.301"},{"key":"ref57","article-title":"DeepObliviate: A powerful charm for erasing data residual memory in deep neural networks","author":"He","year":"2021"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0025"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.5555\/3241094.3241142"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8858\/10750463\/10480645.pdf?arnumber=10480645","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,11,26]],"date-time":"2024-11-26T23:02:23Z","timestamp":1732662143000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10480645\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,11]]},"references-count":61,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2024.3382321","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,11]]}}}