{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,14]],"date-time":"2026-05-14T20:06:14Z","timestamp":1778789174848,"version":"3.51.4"},"reference-count":101,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"4","license":[{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,7]]},"DOI":"10.1109\/tdsc.2025.3532957","type":"journal-article","created":{"date-parts":[[2025,1,30]],"date-time":"2025-01-30T14:27:05Z","timestamp":1738247225000},"page":"3661-3675","source":"Crossref","is-referenced-by-count":17,"title":["Leakage-Resilient and Carbon-Neutral Aggregation Featuring the Federated AI-Enabled Critical Infrastructure"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0009-0000-5469-0762","authenticated-orcid":false,"given":"Zehang","family":"Deng","sequence":"first","affiliation":[{"name":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5404-8550","authenticated-orcid":false,"given":"Ruoxi","family":"Sun","sequence":"additional","affiliation":[{"name":"Cybersecurity and Quantum Systems Group, CSIRO&#x2019;s Data61, Eveleigh, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9172-4252","authenticated-orcid":false,"given":"Minhui","family":"Xue","sequence":"additional","affiliation":[{"name":"Cybersecurity and Quantum Systems Group, CSIRO&#x2019;s Data61, Eveleigh, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0655-666X","authenticated-orcid":false,"given":"Sheng","family":"Wen","sequence":"additional","affiliation":[{"name":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6353-8359","authenticated-orcid":false,"given":"Seyit","family":"Camtepe","sequence":"additional","affiliation":[{"name":"Cybersecurity and Quantum Systems Group, CSIRO&#x2019;s Data61, Eveleigh, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3289-6599","authenticated-orcid":false,"given":"Surya","family":"Nepal","sequence":"additional","affiliation":[{"name":"Cybersecurity and Quantum Systems Group, CSIRO&#x2019;s Data61, Eveleigh, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5252-0831","authenticated-orcid":false,"given":"Yang","family":"Xiang","sequence":"additional","affiliation":[{"name":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Amazon mechanical turk","year":"2019"},{"key":"ref2","article-title":"Hughes jupiter 3 satellite successfully launches, heralds the start of a new era of connectivity","year":"2023"},{"key":"ref3","article-title":"Nuclearn atomassist","year":"2023"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/d17-1045"},{"key":"ref6","first-page":"1707","article-title":"QSGD: Communication-efficient SGD via gradient quantization and encoding","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Alistarh"},{"key":"ref7","first-page":"7641","article-title":"Lamp: Extracting text from gradients with language model priors","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Balunovic"},{"key":"ref8","first-page":"560","article-title":"signSGD: Compressed optimisation for non-convex problems","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Bernstein"},{"key":"ref9","first-page":"1","article-title":"signSGD with majority vote is communication efficient and fault tolerant","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Bernstein"},{"key":"ref10","article-title":"Performance enhancing proxies intended to mitigate link-related degradations","author":"Border","year":"2001","journal-title":"IETF, RFC 3135"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2017.2756596"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/GLOBECOM54140.2023.10437543"},{"key":"ref13","article-title":"On evaluating adversarial robustness","author":"Carlini","year":"2019"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833649"},{"key":"ref15","volume-title":"Digital Image Processing","author":"Castleman","year":"1996"},{"key":"ref16","first-page":"1","article-title":"FedAT: A communication-efficient federated learning method with asynchronous tiers under non-IID data","volume-title":"Proc. Int. Conf. High Perform. Comput., Netw., Storage Anal.","author":"Chai"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/MWC.008.00353"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2932228"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1186\/s12864-019-6413-7"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2982356"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2021.findings-emnlp.305"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.29012\/jpc.v7i3.405"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1561\/9781601988195"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00983"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1016\/j.techsoc.2022.102137"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.23919\/ICN.2021.0015"},{"key":"ref28","first-page":"16937","article-title":"Inverting gradients-how easy is it to break privacy in federated learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Geiping"},{"key":"ref29","article-title":"Natural language processing: Why the wind industry needs it","author":"Gillen","year":"2017"},{"key":"ref30","first-page":"317","article-title":"$\\lbrace${ICARUS$\\rbrace$}: Attacking low earth orbit satellite networks","volume-title":"Proc. USENIX Annu. Techn. Conf.","author":"Giuliari"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/ICCWorkshops53468.2022.9814483"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1016\/j.actaastro.2024.01.039"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00978"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/mcom.004.2300277"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2022.100500"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00990"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.14722\/spacesec.2023.239792"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3542929.3563463"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1038\/s41558-022-01377-7"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1016\/j.seta.2023.103282"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2020.3028247"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.30837\/2522-9818.2017.2.048"},{"key":"ref44","article-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009","journal-title":"Dept. Comput. Sci."},{"key":"ref45","article-title":"Quantifying the carbon emissions of machine learning","author":"Lacoste","year":"2019"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/TSP.2023.3244092"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2021.3055892"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2020.3006177"},{"key":"ref49","first-page":"1","article-title":"FedMD: Heterogenous federated learning via model distillation","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Li"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00989"},{"key":"ref51","article-title":"ROUGE: A package for automatic evaluation of summaries","volume-title":"Proc. Text Summarization Branches Out: ACL-04 Workshop","volume":"8","author":"Lin","year":"2004"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00981"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2024.3367737"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2024.3376929"},{"key":"ref55","first-page":"1","article-title":"The \u201cBeatri","volume-title":"Proc. Netw. Distrib. Syst. Secur. Symp.","author":"Ma"},{"key":"ref56","first-page":"1","article-title":"The new IEEE-754 standard for floating point arithmetic","volume-title":"Proc. Dagstuhl Seminar Proc.","author":"Markstein"},{"key":"ref57","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. Artif. Intell. Statist.","author":"McMahan"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/3564625.3567973"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3335413"},{"key":"ref61","first-page":"3581","article-title":"Federated learning with buffered asynchronous aggregation","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"Nguyen"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2021.3132500"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.3390\/smartcities4020029"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.3115\/1219840.1219855"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00056"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1109\/IWIA.2006.15"},{"key":"ref67","doi-asserted-by":"publisher","DOI":"10.1038\/s41893-019-0352-9"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1145\/2897166"},{"key":"ref69","doi-asserted-by":"publisher","DOI":"10.1109\/TSP.2020.3046971"},{"key":"ref70","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1007\/s13369-022-06587-x"},{"key":"ref72","first-page":"13693","article-title":"Energy and policy considerations for deep learning in NLP","volume-title":"Proc. AAAI Conf. Artif. Intell.","author":"Strubell"},{"key":"ref73","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00919"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE43902.2021.00101"},{"key":"ref75","doi-asserted-by":"publisher","DOI":"10.1145\/3611643.3616309"},{"key":"ref76","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2021.3056569"},{"key":"ref77","doi-asserted-by":"publisher","DOI":"10.1145\/3570361.3592521"},{"key":"ref78","first-page":"1","article-title":"Lossy compression with Gaussian diffusion","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Theis"},{"key":"ref79","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-29053-5_8"},{"key":"ref80","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM58522.2023.00072"},{"key":"ref81","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2024.3429503"},{"key":"ref82","doi-asserted-by":"publisher","DOI":"10.1109\/ICCS.2018.8689224"},{"key":"ref83","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"key":"ref84","doi-asserted-by":"publisher","DOI":"10.1162\/tacl_a_00290"},{"key":"ref85","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.2988575"},{"key":"ref86","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.emnlp-demos.6"},{"key":"ref87","doi-asserted-by":"publisher","DOI":"10.1109\/TPS-ISA58951.2023.00012"},{"key":"ref88","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01607"},{"key":"ref89","doi-asserted-by":"publisher","DOI":"10.1145\/3576842.3582377"},{"key":"ref90","first-page":"6381","article-title":"Gradient obfuscation gives a false sense of security in federated learning","volume-title":"Proc. USENIX Secur. Symp.","author":"Yue"},{"key":"ref91","doi-asserted-by":"publisher","DOI":"10.1016\/j.knosys.2021.106775"},{"key":"ref92","article-title":"How does a deep learning model architecture impact its privacy?","author":"Zhang","year":"2022"},{"key":"ref93","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"ref94","doi-asserted-by":"publisher","DOI":"10.1145\/3589334.3645545"},{"key":"ref95","article-title":"iDLG: Improved deep leakage from gradients","author":"Zhao","year":"2020"},{"key":"ref96","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00030"},{"key":"ref97","doi-asserted-by":"publisher","DOI":"10.1109\/JAS.2024.124983"},{"key":"ref98","first-page":"14774","article-title":"Deep leakage from gradients","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Zhu"},{"key":"ref99","doi-asserted-by":"publisher","DOI":"10.1145\/3512345"},{"key":"ref100","doi-asserted-by":"publisher","DOI":"10.1109\/JAS.2024.124971"},{"key":"ref101","first-page":"12878","article-title":"Data-free knowledge distillation for heterogeneous federated learning","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Zhu"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11077775\/10858592.pdf?arnumber=10858592","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,11]],"date-time":"2025-07-11T22:48:33Z","timestamp":1752274113000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10858592\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7]]},"references-count":101,"journal-issue":{"issue":"4"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3532957","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,7]]}}}