{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T21:06:14Z","timestamp":1763154374039,"version":"3.45.0"},"reference-count":60,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100004826","name":"Beijing Natural Science Foundation","doi-asserted-by":"publisher","award":["L251038","QY24203"],"award-info":[{"award-number":["L251038","QY24203"]}],"id":[{"id":"10.13039\/501100004826","id-type":"DOI","asserted-by":"publisher"}]},{"name":"CCF-Huawei Populus Grove Fund","award":["TC202418"],"award-info":[{"award-number":["TC202418"]}]},{"name":"Fellowship of China National Postdoctoral Program for Innovative Talents","award":["BX20240045"],"award-info":[{"award-number":["BX20240045"]}]},{"name":"China Postdoctoral Science Foundation General Program","award":["2025M773481"],"award-info":[{"award-number":["2025M773481"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,11]]},"DOI":"10.1109\/tdsc.2025.3596652","type":"journal-article","created":{"date-parts":[[2025,8,7]],"date-time":"2025-08-07T17:47:03Z","timestamp":1754588823000},"page":"7334-7347","source":"Crossref","is-referenced-by-count":0,"title":["$\\mathtt {Antelope}$: Fast and Secure Neural Network Inference"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-2625-3896","authenticated-orcid":false,"given":"Xiaoyuan","family":"Liu","sequence":"first","affiliation":[{"name":"School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1961-7946","authenticated-orcid":false,"given":"Hongwei","family":"Li","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9764-9345","authenticated-orcid":false,"given":"Guowen","family":"Xu","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9121-0171","authenticated-orcid":false,"given":"Shengmin","family":"Xu","sequence":"additional","affiliation":[{"name":"College of Computer and Cyber Security, Fujian Normal University, Fuzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0070-1707","authenticated-orcid":false,"given":"Xinyi","family":"Huang","sequence":"additional","affiliation":[{"name":"Artificial Intelligence thrust, Information Hub, Hong Kong University of Science and Technology (Guangzhou), Guangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6595-6650","authenticated-orcid":false,"given":"Tianwei","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Computer Science and Engineering, Nanyang Technological University, Singapore"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2702-7679","authenticated-orcid":false,"given":"Yijing","family":"Lin","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Networking and Switching Technology, Beijing University of Posts and Telecommunications, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0594-0432","authenticated-orcid":false,"given":"Jianying","family":"Zhou","sequence":"additional","affiliation":[{"name":"Singapore University of Technology and Design, Singapore"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1","article-title":"Secure computation on floating point numbers","volume-title":"Proc. Annu. Netw. Distrib. Syst. Secur. Symp.","author":"Aliasgari"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516738"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-46766-1_34"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-44750-4_8"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/0-387-34805-0_48"},{"key":"ref6","first-page":"1213","article-title":"The guard\u2019s dilemma: Efficient code-reuse attacks against Intel SGX","volume-title":"Proc. USENIX Secur. Symp.","author":"Biondo"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354255"},{"key":"ref8","first-page":"812","article-title":"Low latency privacy preserving inference","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Brutzkus"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-14577-3_6"},{"key":"ref10","first-page":"1361","article-title":"SIMC: ML inference secure against malicious clients at semi-honest cost","volume-title":"Proc. USENIX Secur. Symp.","author":"Chandran"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3338466.3358922"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.23005"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-45721-1_3"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-84252-9_17"},{"key":"ref15","doi-asserted-by":"crossref","DOI":"10.1017\/CBO9781107337756","volume-title":"Secure Multiparty Computation","author":"Cramer","year":"2015"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2020-0077"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-32009-5_38"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23113"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"article-title":"Faster CryptoNets: Leveraging sparsity for real-world encrypted inference","year":"2018","author":"Edward","key":"ref20"},{"key":"ref21","first-page":"2241","article-title":"Circa: Stochastic ReLUs for private deep learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Ghodsi"},{"key":"ref22","first-page":"201","article-title":"CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Gilad-Bachrach"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-48405-1_8"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/0-387-21769-x_9"},{"volume-title":"Deep Learning","year":"2016","author":"Goodfellow","key":"ref25"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00016"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW53098.2021.00368"},{"article-title":"DarKnight: A data privacy scheme for training and inference of deep neural networks","year":"2020","author":"Hashemi","key":"ref28"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-14303-8"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"article-title":"CryptoDL: Deep neural networks over encrypted data","year":"2017","author":"Hesamifard","key":"ref31"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref33","first-page":"809","article-title":"Cheetah: Lean and fast secure two-party deep neural network inference","volume-title":"Proc. USENIX Secur. Symp.","author":"Huang"},{"article-title":"SqueezeNet: AlexNet-level accuracy with 50x fewer parameters and 0.5 MB model size","year":"2016","author":"Iandola","key":"ref34"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45146-4_9"},{"key":"ref36","first-page":"1651","article-title":"GAZELLE: A low latency framework for secure neural network inference","volume-title":"Proc. USENIX Secur. Symp.","author":"Juvekar"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/62212.62215"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40084-1_4"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00092"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3411501.3419418"},{"key":"ref42","first-page":"35","article-title":"ABY3: A mixed protocol framework for machine learning","volume-title":"Proc. ACM SIGSAC Conf. Comput. Commun. Secur.","author":"Mohassel"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1137\/S0097539704383633"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref46","first-page":"2147","article-title":"GForce: GPU-Friendly oblivious and rapid neural network inference","volume-title":"Proc. USENIX Secur. Symp.","author":"Ng"},{"key":"ref47","first-page":"2165","article-title":"ABY2.0: Improved mixed-protocol secure two-party computation","volume-title":"Proc. USENIX Secur. Symp.","author":"Patra"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00086"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417274"},{"key":"ref50","first-page":"1501","article-title":"XONN: XNOR-based oblivious deep neural network inference","volume-title":"Proc. USENIX Secur. Symp.","author":"Riazi"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/DAC.2018.8465894"},{"key":"ref52","first-page":"4490","article-title":"TAPAS: Tricks to accelerate (encrypted) prediction as a service","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Sanyal"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24119"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363228"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0011"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-17140-6_7"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417276"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24351"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11242243\/11119433.pdf?arnumber=11119433","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T21:01:16Z","timestamp":1763154076000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11119433\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11]]},"references-count":60,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3596652","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"type":"print","value":"1545-5971"},{"type":"electronic","value":"1941-0018"},{"type":"electronic","value":"2160-9209"}],"subject":[],"published":{"date-parts":[[2025,11]]}}}