{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,5]],"date-time":"2026-03-05T15:42:03Z","timestamp":1772725323198,"version":"3.50.1"},"reference-count":47,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"4","license":[{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,7,1]],"date-time":"2025-07-01T00:00:00Z","timestamp":1751328000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100004543","name":"China Scholarship Council","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100004543","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,7]]},"DOI":"10.1109\/tdsc.2025.3543093","type":"journal-article","created":{"date-parts":[[2025,2,17]],"date-time":"2025-02-17T13:43:49Z","timestamp":1739799829000},"page":"4022-4039","source":"Crossref","is-referenced-by-count":1,"title":["On the Vulnerability of Data Points Under Multiple Membership Inference Attacks and Target Models"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3612-1934","authenticated-orcid":false,"given":"Mauro","family":"Conti","sequence":"first","affiliation":[{"name":"Department of Mathematics, University of Padua, Padua, Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5366-843X","authenticated-orcid":false,"given":"Jiaxin","family":"Li","sequence":"additional","affiliation":[{"name":"Department of Mathematics, University of Padua, Padua, Italy"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7509-4337","authenticated-orcid":false,"given":"Stjepan","family":"Picek","sequence":"additional","affiliation":[{"name":"Institute for Computing and Information Sciences, Radboud University, Nijmegen, The Netherlands"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/3457607"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP51992.2021.00028"},{"key":"ref3","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. 3rd Int. Conf. Learn. Representations","author":"Goodfellow"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2018.2886017"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.5555\/3241094.3241142"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00038"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP48549.2020.00040"},{"key":"ref9","first-page":"2615","article-title":"Systematic evaluation of privacy risks of machine learning models","volume-title":"Proc. 30th USENIX Secur. Symp.","author":"Song"},{"key":"ref10","article-title":"SHAPr: An efficient and versatile membership privacy risk metric for machine learning","author":"Duddu","year":"2021"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833649"},{"key":"ref12","article-title":"SUOD: Toward scalable unsupervised outlier detection","author":"Zhao","year":"2020"},{"key":"ref13","first-page":"1964","article-title":"Label-only membership inference attacks","volume-title":"Proc. 38th Int. Conf. Mach. Learn.","author":"Choquette-Choo"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484575"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23119"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1613\/jair.614"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1038\/nbt1206-1565"},{"key":"ref18","first-page":"1","article-title":"A comparative analysis on linear regression and support vector regression","volume-title":"Proc. Online Int. Conf. Green Eng. Technol.","author":"S"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939785"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2594473.2594476"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0031"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.9781\/ijimai.2016.415"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9780511790423"},{"key":"ref25","article-title":"ML privacy meter: Aiding regulatory compliance by quantifying the privacy risks of machine learning","author":"Murakonda","year":"2020"},{"key":"ref26","first-page":"4525","article-title":"ML-Doctor: Holistic risk assessment of inference attacks against machine learning models","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Liu"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2019.2897554"},{"key":"ref28","first-page":"5558","article-title":"White-box vs black-box: Bayes optimal strategies for membership inference","volume-title":"Proc. 36th Int. Conf. Mach. Learn.","author":"Sablayrolles"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560675"},{"key":"ref30","first-page":"1929","article-title":"Dropout: A simple way to prevent neural networks from overfitting","volume":"15","author":"Srivastava","year":"2014","journal-title":"J. Mach. Learn. Res."},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243855"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363201"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i11.17150"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/3422337.3447836"},{"key":"ref35","article-title":"A novel self-distillation architecture to defeat membership inference attacks","volume-title":"Proc. NeurIPS Workshop Privacy Mach. Learn.","author":"Tang"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2023-0024"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2022-0023"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417238"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3485338"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0008"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM51629.2021.00182"},{"key":"ref43","article-title":"Node-level membership inference attacks against graph neural networks","author":"He","year":"2021"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TPSISA52974.2021.00002"},{"key":"ref45","first-page":"4543","article-title":"Inference attacks against graph neural networks","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Zhang"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11077775\/10891543.pdf?arnumber=10891543","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,14]],"date-time":"2025-07-14T17:45:23Z","timestamp":1752515123000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10891543\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7]]},"references-count":47,"journal-issue":{"issue":"4"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3543093","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,7]]}}}