{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,14]],"date-time":"2026-03-14T18:17:25Z","timestamp":1773512245755,"version":"3.50.1"},"reference-count":36,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","license":[{"start":{"date-parts":[[2025,3,1]],"date-time":"2025-03-01T00:00:00Z","timestamp":1740787200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,3,1]],"date-time":"2025-03-01T00:00:00Z","timestamp":1740787200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,3,1]],"date-time":"2025-03-01T00:00:00Z","timestamp":1740787200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"National Key R&#x0026;D Program of China","award":["2022YFB3102100"],"award-info":[{"award-number":["2022YFB3102100"]}]},{"name":"Hangzhou Qianjiang Distinguished Experts programme"},{"DOI":"10.13039\/501100004826","name":"Beijing Natural Science Foundation","doi-asserted-by":"publisher","award":["L221014"],"award-info":[{"award-number":["L221014"]}],"id":[{"id":"10.13039\/501100004826","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Systematic Major Project of China State Railway Group Company Ltd.","award":["P2023W001"],"award-info":[{"award-number":["P2023W001"]}]},{"name":"Systematic Major Project of China State Railway Group Company Ltd.","award":["P2023W002"],"award-info":[{"award-number":["P2023W002"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,3]]},"DOI":"10.1109\/tdsc.2024.3445600","type":"journal-article","created":{"date-parts":[[2024,8,19]],"date-time":"2024-08-19T17:39:39Z","timestamp":1724089179000},"page":"1537-1550","source":"Crossref","is-referenced-by-count":8,"title":["Finding the PISTE: Towards Understanding Privacy Leaks in Vertical Federated Learning Systems"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-3759-4706","authenticated-orcid":false,"given":"Xiangrui","family":"Xu","sequence":"first","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5974-1589","authenticated-orcid":false,"given":"Wei","family":"Wang","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zheng","family":"Chen","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3790-2708","authenticated-orcid":false,"given":"Bin","family":"Wang","sequence":"additional","affiliation":[{"name":"Zhejiang Key Laboratory of Artificial Intelligence of Things (AIoT) Network and Data Security, Hangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8832-0513","authenticated-orcid":false,"given":"Chao","family":"Li","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1825-7416","authenticated-orcid":false,"given":"Li","family":"Duan","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3688-873X","authenticated-orcid":false,"given":"Zhen","family":"Han","sequence":"additional","affiliation":[{"name":"Beijing Key Laboratory of Security and Privacy in Intelligent Transportation, Beijing Jiaotong University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9035-6718","authenticated-orcid":false,"given":"Yufei","family":"Han","sequence":"additional","affiliation":[{"name":"INRIA, Rennes, France"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-021-00105-6"},{"key":"ref2","first-page":"1397","article-title":"Label inference attacks against vertical federated learning","volume-title":"Proc. USENIX Secur. Symp.","author":"Fu"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3485259"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/s11704-022-1651-2"},{"key":"ref5","article-title":"Lurking in the shadows: Unveiling stealthy backdoor attacks against personalized federated learning","volume-title":"Proc. 33st USENIX Secur. Symp.","author":"Lyu"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3637528.3671956"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3670365"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/jiot.2024.3380642"},{"key":"ref9","first-page":"4525","article-title":"ML-Doctor: Holistic risk assessment of inference attacks against machine learning models","volume-title":"Proc. USENIX Secur. Symp.","author":"Liu"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01607"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE51399.2021.00023"},{"key":"ref15","first-page":"994","article-title":"Cafe: Catastrophic data leakage in vertical federated learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Jin"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3228302"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i7.26083"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.463"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1016\/j.dss.2014.03.001"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2007.12.020"},{"key":"ref21","article-title":"UCI machine learning repository, 2010","author":"Frank","year":"2011"},{"key":"ref22","article-title":"Share your representation only: Guaranteed improvement of the privacy-utility tradeoff in federated learning","volume-title":"Proc. 11th Int. Conf. Learn. Representations","author":"Shen"},{"key":"ref23","first-page":"8056","article-title":"Bounding training data reconstruction in private (deep) learning","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guo"},{"key":"ref24","article-title":"Measuring and controlling split layer privacy leakage using fisher information","author":"Maeng","year":"2022"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833677"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560684"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00995"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1017\/9781108966559.020"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/FOCS.2010.12"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.14778\/3603581.3603588"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3324747"},{"key":"ref33","first-page":"34536","article-title":"Feature learning via mean-field langevin dynamics: Classifying sparse parities and beyond","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Suzuki"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2017.2777990"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.eng.2019.09.002"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1007\/s11704-022-2155-9"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/10925471\/10639355.pdf?arnumber=10639355","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,17]],"date-time":"2025-03-17T21:20:31Z","timestamp":1742246431000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10639355\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,3]]},"references-count":36,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2024.3445600","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,3]]}}}