{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,2]],"date-time":"2026-04-02T15:41:06Z","timestamp":1775144466829,"version":"3.50.1"},"reference-count":53,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,1,1]],"date-time":"2022-01-01T00:00:00Z","timestamp":1640995200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61872416"],"award-info":[{"award-number":["61872416"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62171189"],"award-info":[{"award-number":["62171189"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62002104"],"award-info":[{"award-number":["62002104"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62071192"],"award-info":[{"award-number":["62071192"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities of China","doi-asserted-by":"publisher","award":["2019kfyXJJS017"],"award-info":[{"award-number":["2019kfyXJJS017"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Key Research and Development Program of Hubei Province","award":["2020BAB120"],"award-info":[{"award-number":["2020BAB120"]}]},{"DOI":"10.13039\/100017882","name":"Wuhan Yellow Crane Talents","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100017882","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2022]]},"DOI":"10.1109\/tifs.2022.3155921","type":"journal-article","created":{"date-parts":[[2022,3,2]],"date-time":"2022-03-02T20:28:57Z","timestamp":1646252937000},"page":"1024-1037","source":"Crossref","is-referenced-by-count":32,"title":["Your Model Trains on My Data? Protecting Intellectual Property of Training Data via Membership Fingerprint Authentication"],"prefix":"10.1109","volume":"17","author":[{"given":"Gaoyang","family":"Liu","sequence":"first","affiliation":[{"name":"Hubei Key Laboratory of Smart Internet Technology, School of Electronic Information and Communications, Huazhong University of Science and Technology, Wuhan, China"}]},{"given":"Tianlong","family":"Xu","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Smart Internet Technology, School of Electronic Information and Communications, Huazhong University of Science and Technology, Wuhan, China"}]},{"given":"Xiaoqiang","family":"Ma","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Smart Internet Technology, School of Electronic Information and Communications, Huazhong University of Science and Technology, Wuhan, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1963-4954","authenticated-orcid":false,"given":"Chen","family":"Wang","sequence":"additional","affiliation":[{"name":"Hubei Key Laboratory of Smart Internet Technology, School of Electronic Information and Communications, Huazhong University of Science and Technology, Wuhan, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-10-5209-5"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1201\/9781351003827"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23055"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/MNET.2017.1500095NM"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2866321"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2929446"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196550"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3359789.3359801"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413976"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2021.3133824"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3437526"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24293"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3320269.3384731"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3240765.3240862"},{"key":"ref16","article-title":"BlackMarks: Blackbox multibit watermarking for deep neural networks","author":"Chen","year":"2019","journal-title":"arXiv:1904.00344"},{"key":"ref17","article-title":"Leveraging unlabeled data for watermark removal of deep neural networks","volume-title":"Proc. Workshop Secur. Privacy Mach. Learn. (ICML)","author":"Chen"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3078971.3078974"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3297858.3304051"},{"key":"ref20","first-page":"1340","article-title":"Deepwatermark: Embedding watermark into DNN model","volume-title":"Proc. Asia\u2013Pacific Signal Inf. Process. Assoc. Annu. Summit Conf. (APSIPA ASC)","author":"Kuribayashi"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2020.3030671"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2019.100199"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453108"},{"key":"ref24","first-page":"1615","article-title":"Turning your weakness into a strength: Watermarking deep neural networks by backdooring\u00eb","volume-title":"Proc. USENIX Symp.","author":"Adi"},{"key":"ref25","first-page":"1","article-title":"Neural attention distillation: Erasing backdoor triggers from deep neural networks","volume-title":"Proc. ICLR","author":"Li"},{"key":"ref26","article-title":"A systematic review on model watermarking for neural networks","author":"Boenisch","year":"2020","journal-title":"arXiv:2009.12153"},{"key":"ref27","first-page":"1937","article-title":"Entangled watermarks as a defense against model extraction","volume-title":"Proc. USENIX Symp.","author":"Jia"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3323873.3325042"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-019-04434-z"},{"key":"ref30","first-page":"1","article-title":"Dataset inference: Ownership resolution in machine learning","volume-title":"Proc. ICLR","author":"Maini"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/3523273"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23119"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484575"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/TCSS.2019.2916086"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref38","first-page":"1964","article-title":"Label-only membership inference attacks","volume-title":"Proc. ICML","author":"Choquette-Choo"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3073804"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-63076-8_2"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.3301411"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00574"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1007\/11681878_14"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref47","article-title":"Privacy for all: Demystify vulnerability disparity of differential privacy against membership inference attack","author":"Zhang","year":"2020","journal-title":"arXiv:2001.08855"},{"key":"ref48","first-page":"1895","article-title":"Evaluating differentially private machine learning in practice","volume-title":"Proc. USENIX Secur.","author":"Jayaraman"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/TSUSC.2019.2930526"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1145\/3460427"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484756"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1145\/3457607"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00934"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/9652463\/09724248.pdf?arnumber=9724248","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,17]],"date-time":"2024-01-17T23:17:06Z","timestamp":1705533426000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9724248\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022]]},"references-count":53,"URL":"https:\/\/doi.org\/10.1109\/tifs.2022.3155921","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022]]}}}