{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,9]],"date-time":"2026-05-09T16:32:10Z","timestamp":1778344330600,"version":"3.51.4"},"reference-count":58,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62032012"],"award-info":[{"award-number":["62032012"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"National Key Research and Development Program of China","award":["2020YFB1005700"],"award-info":[{"award-number":["2020YFB1005700"]}]},{"name":"CNKLSTISS"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2021]]},"DOI":"10.1109\/tifs.2020.3043139","type":"journal-article","created":{"date-parts":[[2020,12,7]],"date-time":"2020-12-07T23:05:21Z","timestamp":1607382321000},"page":"1736-1751","source":"Crossref","is-referenced-by-count":271,"title":["VeriFL: Communication-Efficient and Fast Verifiable Aggregation for Federated Learning"],"prefix":"10.1109","volume":"16","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5295-2781","authenticated-orcid":false,"given":"Xiaojie","family":"Guo","sequence":"first","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2984-2661","authenticated-orcid":false,"given":"Zheli","family":"Liu","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0385-8793","authenticated-orcid":false,"given":"Jin","family":"Li","sequence":"additional","affiliation":[]},{"given":"Jiqiang","family":"Gao","sequence":"additional","affiliation":[]},{"given":"Boyu","family":"Hou","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8625-0275","authenticated-orcid":false,"given":"Changyu","family":"Dong","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5166-4873","authenticated-orcid":false,"given":"Thar","family":"Baker","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3339819"},{"key":"ref38","first-page":"35","article-title":"ABY3: A mixed protocol framework for machine learning","author":"mohassel","year":"2018","journal-title":"Proc ACM SIGSAC Conf Comput Commun Secur"},{"key":"ref33","first-page":"1651","article-title":"Gazelle: A low latency framework for secure neural network inference","author":"juvekar","year":"2018","journal-title":"Proc 7th USENIX Secur Symp (USENIX Secur )"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-72540-4_4"},{"key":"ref31","first-page":"331","article-title":"Faster secure two-party computation using garbled circuits","volume":"201","author":"huang","year":"2011","journal-title":"Proc Usenix Secur Symp"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-78381-9_11"},{"key":"ref37","first-page":"201","article-title":"Cryptonets: Applying neural networks to encrypted data with high throughput and accuracy","author":"gilad-bachrach","year":"2016","journal-title":"Proc 33nd Int Conf Mach Learn (ICML)"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363207"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref34","first-page":"1501","article-title":"Xonn: Xnor-based oblivious deep neural network inference","author":"riazi","year":"2019","journal-title":"Proc 28th USENIX Secur Symp (USENIX Secur )"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2004.1301326"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-48658-5_22"},{"key":"ref29","first-page":"277","author":"lindell","year":"2017","journal-title":"How to Simulate It&#x2013;A Tutorial on the Simulation Proof Technique"},{"key":"ref2","article-title":"Federated learning: Strategies for improving communication efficiency","author":"kone?n\u00fd","year":"2016","journal-title":"arXiv 1610 05492"},{"key":"ref1","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"brendan mcmahan","year":"2016","journal-title":"arXiv 1602 05629"},{"key":"ref20","first-page":"285","article-title":"Billion-gate secure computation with malicious adversaries","author":"kreuter","year":"2012","journal-title":"Proc 21st USENIX Secur Symp (USENIX Secur )"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40084-1_2"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354261"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2019.00021"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.2988575"},{"key":"ref51","article-title":"Learning differentially private recurrent language models","author":"mcmahan","year":"2018","journal-title":"Proc 6th Int Conf Learn Represent (ICLR)"},{"key":"ref58","article-title":"Advances and open problems in federated learning","author":"kairouz","year":"2019","journal-title":"arXiv 1912 04977"},{"key":"ref57","article-title":"Byzantine-robust learning on heterogeneous datasets via resampling","author":"he","year":"2020","journal-title":"arXiv 2006 09365"},{"key":"ref56","first-page":"119","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","author":"blanchard","year":"2017","journal-title":"Proc Adv Neural Inf Process Syst Annu Conf Neural Inf Process Syst"},{"key":"ref55","first-page":"5636","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","author":"yin","year":"2018","journal-title":"Proc 35th Int Conf Mach Learn (ICML)"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1145\/3154503"},{"key":"ref53","article-title":"A generic framework for privacy preserving deep learning","author":"ryffel","year":"2018","journal-title":"arXiv 1811 04017"},{"key":"ref52","article-title":"Differentially private federated learning: A client level perspective","author":"geyer","year":"2017","journal-title":"arXiv 1712 07557"},{"key":"ref10","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"chen","year":"2017","journal-title":"arXiv 1712 05526"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23291"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00078"},{"key":"ref12","article-title":"Backdooring convolutional neural networks via targeted weight perturbations","author":"dumford","year":"2018","journal-title":"arXiv 1812 03128"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2019.2944481"},{"key":"ref14","first-page":"643","article-title":"Multiparty computation from somewhat homomorphic encryption","author":"damg\u00e5rd","year":"2012","journal-title":"Proc 32nd Annu Cryptol Conf Adv Cryptol (CRYPTO)"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-78372-7_6"},{"key":"ref16","first-page":"769","article-title":"Spd$Z_{2k}$\n: Efficient mpc mod $2^{k}$\n for dishonest majority","author":"cramer","year":"2018","journal-title":"Proc 38th Annu Int Cryptol Conf Adv Cryptol (CRYPTO) Part II"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-96881-0_27"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/28395.28420"},{"key":"ref19","first-page":"386","article-title":"Two-output secure computation with malicious adversaries","author":"shen","year":"2011","journal-title":"Proc 30th Annu Int Conf Theory Appl Cryptograph Techn Adv Cryptol (EUROCRYPT)"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134012"},{"key":"ref3","article-title":"Towards federated learning at scale: System design","author":"bonawitz","year":"2019","journal-title":"arXiv 1902 01046"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2929409"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1145\/3338501.3357370"},{"key":"ref9","article-title":"How to backdoor federated learning","author":"bagdasaryan","year":"2018","journal-title":"arXiv 1807 00459"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-79228-4_1"},{"key":"ref45","doi-asserted-by":"crossref","first-page":"211","DOI":"10.1561\/0400000042","article-title":"The algorithmic foundations of differential privacy","volume":"9","author":"dwork","year":"2014","journal-title":"Found Trends Theor Comput Sci"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/FOCS.2007.66"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/TETC.2018.2794611"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2787987"},{"key":"ref44","first-page":"257","article-title":"Threshold fully homomorphic encryption","volume":"2017","author":"jain","year":"2017","journal-title":"IACR Cryptol ePrint Arch"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-96884-1_19"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/9151439\/09285303.pdf?arnumber=9285303","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,5,10]],"date-time":"2022-05-10T14:52:42Z","timestamp":1652194362000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9285303\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021]]},"references-count":58,"URL":"https:\/\/doi.org\/10.1109\/tifs.2020.3043139","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021]]}}}