{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,9]],"date-time":"2026-06-09T09:57:26Z","timestamp":1780999046091,"version":"3.54.1"},"reference-count":54,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"6","license":[{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"Natural Science Foundation of Xiamen, China","award":["3502Z202472028"],"award-info":[{"award-number":["3502Z202472028"]}]},{"name":"Xiamen Science and Technology Plan","award":["3502Z20231042"],"award-info":[{"award-number":["3502Z20231042"]}]},{"name":"Xiamen University of Technology High-Level Talent Launch","award":["YKJ22041R"],"award-info":[{"award-number":["YKJ22041R"]}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["1082204112364"],"award-info":[{"award-number":["1082204112364"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2025,11]]},"DOI":"10.1109\/tdsc.2025.3601175","type":"journal-article","created":{"date-parts":[[2025,8,21]],"date-time":"2025-08-21T18:32:22Z","timestamp":1755801142000},"page":"7849-7861","source":"Crossref","is-referenced-by-count":11,"title":["DP-TRAE: A Dual-Phase Merging Transferable Reversible Adversarial Example for Image Privacy Protection"],"prefix":"10.1109","volume":"22","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-6298-846X","authenticated-orcid":false,"given":"Xia","family":"Du","sequence":"first","affiliation":[{"name":"School of Computer and Information Engineering, Xiamen University of Technology, Xiamen, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiajie","family":"Zhu","sequence":"additional","affiliation":[{"name":"School of Computer and Information Engineering, Xiamen University of Technology, Xiamen, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2447-1806","authenticated-orcid":false,"given":"Ji-Zhe","family":"Zhou","sequence":"additional","affiliation":[{"name":"School of Computer Science, Engineering Research Center of Machine Learning and Industry Intelligence, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1788-3746","authenticated-orcid":false,"given":"Chi-Man","family":"Pun","sequence":"additional","affiliation":[{"name":"Department of Computer and Information Science, Faculty of Science and Technology, University of Macau, Macau, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4463-5652","authenticated-orcid":false,"given":"Zheng","family":"Lin","sequence":"additional","affiliation":[{"name":"Department of Electrical and Electronic Engineering, University of Hong Kong, Pok Fu Lam, Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-7120-9003","authenticated-orcid":false,"given":"Cong","family":"Wu","sequence":"additional","affiliation":[{"name":"Department of Electrical and Electronic Engineering, University of Hong Kong, Pok Fu Lam, Hong Kong"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3215-2696","authenticated-orcid":false,"given":"Zhe","family":"Chen","sequence":"additional","affiliation":[{"name":"Institute of Space Internet, Fudan University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7036-5158","authenticated-orcid":false,"given":"Jun","family":"Luo","sequence":"additional","affiliation":[{"name":"College of Computing and Data Science, Nanyang Technological University, Singapore"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3318975"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3265932"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3078111"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2021.3088084"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2022.3179131"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3654663"},{"key":"ref7","first-page":"267","article-title":"The secret Sharer: Evaluating and testing unintended memorization in neural networks","volume-title":"Proc. 28th USENIX Secur. Symp.","author":"Carlini"},{"issue":"1","key":"ref8","article-title":"Revealed: 50 million Facebook profiles harvested for cambridge analytica in major data breach","volume":"17","author":"Cadwalladr","year":"2018","journal-title":"Guardian"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2022.3194704"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01967"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00761"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3202544"},{"key":"ref13","first-page":"12885","article-title":"Cross-domain transferability of adversarial perturbations","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Naseer"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00754"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2022.3211736"},{"key":"ref16","article-title":"Intriguing properties of neural networks","author":"Szegedy","year":"2013"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.165"},{"key":"ref18","article-title":"DiffProtect: Generate adversarial examples with diffusion models for facial privacy protection","author":"Liu","year":"2023"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2021.102993"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2025.103515"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2025.103046"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2022.109048"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2023.109549"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2022.3207008"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3019490"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2016.2634161"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3664647.3681291"},{"key":"ref28","article-title":"Reversible adversarial attack based on reversible image transformation","author":"Yin","year":"2019"},{"key":"ref29","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00957"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00284"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00444"},{"key":"ref34","first-page":"2484","article-title":"Simple black-box adversarial attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guo"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01029"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.2001.958299"},{"key":"ref37","volume-title":"Digital Watermarking and Steganography","author":"Cox","year":"2007"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2018.2803303"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00469"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-015-0816-y"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref45","article-title":"Very deep convolutional networks for large-scale image recognition","author":"Simonyan","year":"2014"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"},{"key":"ref47","first-page":"1106","article-title":"ImageNet classification with deep convolutional neural networks","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Krizhevsky"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00474"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00140"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2003.819861"},{"key":"ref51","article-title":"Keeping the bad guys out: Protecting and vaccinating deep learning with JPEG compression","author":"Das","year":"2017"},{"key":"ref52","article-title":"Mitigating adversarial effects through randomization","author":"Xie","year":"2017"},{"key":"ref53","article-title":"Heat and blur: An effective and fast defense against adversarial examples","author":"Brama","year":"2020"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2019.2940533"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11242243\/11134103.pdf?arnumber=11134103","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,14]],"date-time":"2025-11-14T21:01:12Z","timestamp":1763154072000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11134103\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11]]},"references-count":54,"journal-issue":{"issue":"6"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3601175","relation":{"has-preprint":[{"id-type":"doi","id":"10.36227\/techrxiv.174742786.61827583\/v1","asserted-by":"object"}]},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,11]]}}}