{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,10]],"date-time":"2026-02-10T09:36:31Z","timestamp":1770716191022,"version":"3.49.0"},"reference-count":87,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"5","license":[{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,9,1]],"date-time":"2025-09-01T00:00:00Z","timestamp":1756684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"National Key Research and Development Program of China","award":["2022YFB3102100"],"award-info":[{"award-number":["2022YFB3102100"]}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U244120033"],"award-info":[{"award-number":["U244120033"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62402425"],"award-info":[{"award-number":["62402425"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62372075"],"award-info":[{"award-number":["62372075"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U24A20336"],"award-info":[{"award-number":["U24A20336"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62302069"],"award-info":[{"award-number":["62302069"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Natural Science Foundation of Chongqing, China","award":["CSTB2024NSCQ-LZX0084"],"award-info":[{"award-number":["CSTB2024NSCQ-LZX0084"]}]},{"name":"Zhejiang Province Science Foundation","award":["LD24F020002"],"award-info":[{"award-number":["LD24F020002"]}]},{"name":"Zhejiang Province Science Foundation","award":["LQ24F030015"],"award-info":[{"award-number":["LQ24F030015"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,9]]},"DOI":"10.1109\/tdsc.2025.3563477","type":"journal-article","created":{"date-parts":[[2025,4,24]],"date-time":"2025-04-24T13:08:30Z","timestamp":1745500110000},"page":"5186-5202","source":"Crossref","is-referenced-by-count":1,"title":["Facial Data Minimization: Shallow Model as Your Privacy Filter"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2311-4943","authenticated-orcid":false,"given":"Yuwen","family":"Pu","sequence":"first","affiliation":[{"name":"School of Big Data &#x0026; Software Engineering, Chongqing University, Chongqing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5894-662X","authenticated-orcid":false,"given":"Jiahao","family":"Chen","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5179-3165","authenticated-orcid":false,"given":"Jiayu","family":"Pan","sequence":"additional","affiliation":[{"name":"College of Software Technology, Zhejiang University, Ningbo, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5241-7276","authenticated-orcid":false,"given":"Diqun","family":"Yan","sequence":"additional","affiliation":[{"name":"College of Digital Technology and Engineering, Ningbo University of Finance and Economics, Ningbo, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8571-9780","authenticated-orcid":false,"given":"Xuhong","family":"Zhang","sequence":"additional","affiliation":[{"name":"College of Software Technology, Zhejiang University, Ningbo, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4268-372X","authenticated-orcid":false,"given":"Shouling","family":"Ji","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University, Hangzhou, China"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Data breaches that have happened in 2022 and 2023 so far","author":"Drapkin","year":"2023"},{"key":"ref2","article-title":"Half a billion facebook users\u2019 information posted on hacking website, cyber experts say","author":"O\u2019Donie","year":"2021"},{"key":"ref3","article-title":"The secretive company that might end privacy as we know it","author":"Hill","year":"2021"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ICB.2016.7550092"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v32i1.12303"},{"key":"ref6","article-title":"Desantis campaign uses apparently fake images to attack trump on twitter","author":"Nehamas","year":"2021"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01070"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3503161.3548202"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2022.3175602"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00387"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0032"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01459"},{"key":"ref13","first-page":"1589","article-title":"Fawkes: Protecting privacy against unauthorized deep learning models","volume-title":"Proc. 29th USENIX Secur. Symp.","author":"Shan"},{"key":"ref14","article-title":"LowKey: Leveraging adversarial attacks to protect social media users from facial recognition","author":"Cherepanova","year":"2021"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/FG57933.2023.10042617"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.00794"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3450268.3453519"},{"key":"ref18","article-title":"Inverting face embeddings with convolutional neural networks","author":"Zhmoginov","year":"2016"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3559613.3563201"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2018.2827389"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-68238-5_34"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3359789.3359824"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-46447-2_33"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3472634.3472661"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-20465-4_9"},{"key":"ref27","article-title":"PRIVATEFL: Accurate, differentially private federated learning via personalized data transformation","author":"Yang"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2020.101951"},{"key":"ref29","first-page":"1","article-title":"A privacy-preserving deep learning approach for face recognition with edge computing","volume-title":"Proc. USENIX Workshop Hot Topics Edge Comput.","author":"Mao"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/3503161.3548303"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i3.20157"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.5244\/C.27.103"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2007.1129"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00033"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01587"},{"key":"ref36","article-title":"Plug & play attacks: Towards robust and flexible model inversion attacks","author":"Struppek","year":"2022"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00044"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.361"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.522"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/FG59268.2024.10581959"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/TBIOM.2024.3391759"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2023.3312123"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2017.2738004"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.425"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3096120"},{"issue":"2","key":"ref48","first-page":"95","article-title":"A benchmark of facial recognition pipelines and co-usability performances of modules","volume":"17","author":"Serengil","year":"2024","journal-title":"J. Inf. Technol."},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i3.20157"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3096024"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00947"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2006.125"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-16181-5_52"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1007\/s10489-019-01432-5"},{"key":"ref55","article-title":"Data poisoning won\u2019t save you from facial recognition","author":"Radiya-Dixit","year":"2021"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/AVSS.2019.8909866"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/FG.2015.7285019"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1007\/11767831_15"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6930"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/TMC.2019.2947893"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1109\/AVSS.2018.8639121"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/WACV48630.2021.00159"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00483"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00444"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00754"},{"key":"ref67","article-title":"Nesterov accelerated gradient and scale invariance for adversarial attacks","author":"Lin","year":"2019"},{"key":"ref68","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01187"},{"key":"ref69","article-title":"Delving into the adversarial robustness on face recognition","author":"Yang","year":"2020"},{"key":"ref70","article-title":"Labeled faces in the wild: A database forstudying face recognition in unconstrained environments","volume-title":"Proc. Workshop faces \u2018Real-Life\u2019 Images: Detection, Alignment, Recognit.","author":"Huang","year":"2008"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2017.250"},{"key":"ref72","doi-asserted-by":"publisher","DOI":"10.1109\/WACV.2016.7477558"},{"key":"ref73","article-title":"Cross-age LFW: A database for studying cross-age face recognition in unconstrained environments","author":"Zheng","year":"2017"},{"key":"ref74","doi-asserted-by":"publisher","DOI":"10.1109\/LSP.2016.2603342"},{"key":"ref75","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-97909-0_46"},{"key":"ref76","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00482"},{"key":"ref77","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.713"},{"key":"ref78","article-title":"MobileNets: Efficient convolutional neural networks for mobile vision applications","author":"Howard","year":"2017"},{"key":"ref79","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref80","article-title":"Learning face representation from scratch","author":"Yi","year":"2014"},{"key":"ref81","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-24574-4_28"},{"key":"ref82","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"key":"ref83","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00552"},{"key":"ref84","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00068"},{"key":"ref85","article-title":"Understanding and enhancing the transferability of adversarial examples","author":"Wu","year":"2018"},{"key":"ref86","doi-asserted-by":"publisher","DOI":"10.1109\/ICB45273.2019.8987331"},{"key":"ref87","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.419"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11150357\/10975146.pdf?arnumber=10975146","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,8]],"date-time":"2025-09-08T22:52:00Z","timestamp":1757371920000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10975146\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,9]]},"references-count":87,"journal-issue":{"issue":"5"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3563477","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,9]]}}}