{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,19]],"date-time":"2026-05-19T12:38:02Z","timestamp":1779194282808,"version":"3.51.4"},"reference-count":38,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62202051"],"award-info":[{"award-number":["62202051"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62102028"],"award-info":[{"award-number":["62102028"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62102027"],"award-info":[{"award-number":["62102027"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2021YFB2700503"],"award-info":[{"award-number":["2021YFB2700503"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["2021TQ0042"],"award-info":[{"award-number":["2021TQ0042"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["2021M700434"],"award-info":[{"award-number":["2021M700434"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["2021M700435"],"award-info":[{"award-number":["2021M700435"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["2021TQ0041"],"award-info":[{"award-number":["2021TQ0041"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["2022M710007"],"award-info":[{"award-number":["2022M710007"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002858","name":"China Post-Doctoral Science Foundation","doi-asserted-by":"publisher","award":["BX20220029"],"award-info":[{"award-number":["BX20220029"]}],"id":[{"id":"10.13039\/501100002858","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Cryptographic Application Industry Chain Supply and Demand Docking Platform of New Energy and Intelligent Connected Vehicle Industry","award":["2021-0181-1-1"],"award-info":[{"award-number":["2021-0181-1-1"]}]},{"name":"Shandong Provincial Key Research and Development Program","award":["2021CXGC010106"],"award-info":[{"award-number":["2021CXGC010106"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2023]]},"DOI":"10.1109\/tifs.2023.3302161","type":"journal-article","created":{"date-parts":[[2023,8,4]],"date-time":"2023-08-04T17:20:59Z","timestamp":1691169659000},"page":"4984-4995","source":"Crossref","is-referenced-by-count":39,"title":["EGIA: An External Gradient Inversion Attack in Federated Learning"],"prefix":"10.1109","volume":"18","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2575-731X","authenticated-orcid":false,"given":"Haotian","family":"Liang","sequence":"first","affiliation":[{"name":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3867-5997","authenticated-orcid":false,"given":"Youqi","family":"Li","sequence":"additional","affiliation":[{"name":"School of Computer Science and Technology, Beijing Institute of Technology, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7684-8540","authenticated-orcid":false,"given":"Chuan","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4238-3295","authenticated-orcid":false,"given":"Ximeng","family":"Liu","sequence":"additional","affiliation":[{"name":"College of Computer and Data Science, Fuzhou University, Fuzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3277-3887","authenticated-orcid":false,"given":"Liehuang","family":"Zhu","sequence":"additional","affiliation":[{"name":"School of Cyberspace Science and Technology, Beijing Institute of Technology, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102378"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2929409"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ICPADS56603.2022.00044"},{"key":"ref34","article-title":"Variance-based gradient compression for efficient distributed deep learning","author":"tsuzuku","year":"2018","journal-title":"arXiv 1802 06058"},{"key":"ref15","article-title":"Highly scalable deep learning training system with mixed-precision: Training ImageNet in four minutes","author":"jia","year":"2018","journal-title":"arXiv 1807 11205"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2787987"},{"key":"ref14","article-title":"Accurate, large minibatch SGD: Training ImageNet in 1 hour","author":"goyal","year":"2017","journal-title":"arXiv 1706 02677"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560681"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2019.2945367"},{"key":"ref30","author":"goodfellow","year":"2016","journal-title":"Deep Learning"},{"key":"ref11","first-page":"3989","article-title":"Exploring the security boundary of data reconstruction via neuron exclusivity analysis","author":"pan","year":"2022","journal-title":"Proc 31st USENIX Secur Symp (USENIX Secur )"},{"key":"ref33","article-title":"Deep gradient compression: Reducing the communication bandwidth for distributed training","author":"lin","year":"2017","journal-title":"arXiv 1712 01887"},{"key":"ref10","first-page":"16937","article-title":"Inverting gradients-how easy is it to break privacy in federated learning?","volume":"33","author":"geiping","year":"2020","journal-title":"Proc Adv Neural Inf Process Syst"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2020.2988575"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3501296"},{"key":"ref1","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"mcmahan","year":"2017","journal-title":"Proc Artif Intell Statist"},{"key":"ref17","article-title":"ChainerMN: Scalable distributed deep learning framework","author":"akiba","year":"2017","journal-title":"arXiv 1710 11351"},{"key":"ref16","article-title":"MXNet: A flexible and efficient machine learning library for heterogeneous distributed systems","author":"chen","year":"2015","journal-title":"arXiv 1512 01274"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"ref19","first-page":"29898","article-title":"Gradient inversion with generative image prior","volume":"34","author":"jeon","year":"2021","journal-title":"Proc Adv Neural Inf Process Syst"},{"key":"ref18","article-title":"A framework for evaluating gradient leakage attacks in federated learning","author":"wei","year":"2020","journal-title":"arXiv 2004 10397"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/3523273"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3196274"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3140687"},{"key":"ref20","first-page":"7232","article-title":"Evaluating gradient inversion attacks and defenses in federated learning","volume":"34","author":"huang","year":"2021","journal-title":"Proc Adv Neural Inf Process Syst"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3169918"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3174394"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2020.3000372"},{"key":"ref27","first-page":"2672","article-title":"Generative adversarial nets","volume":"27","author":"goodfellow","year":"2014","journal-title":"Proc Adv Neural Inf Process Syst"},{"key":"ref29","first-page":"112","article-title":"Finite difference methods for differential equations","volume":"585","author":"leveque","year":"1998","journal-title":"Draft version for use in AMath"},{"key":"ref8","article-title":"IDLG: Improved deep leakage from gradients","author":"zhao","year":"2020","journal-title":"arXiv 2001 02610"},{"key":"ref7","first-page":"994","article-title":"Catastrophic data leakage in vertical federated learning","volume":"34","author":"jin","year":"2021","journal-title":"Proc Adv Neural Inf Process Syst"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01607"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1080\/09540091.2021.1936455"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2021.3130906"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134012"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-63076-8_2"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/9970396\/10209197.pdf?arnumber=10209197","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,4]],"date-time":"2023-09-04T17:54:27Z","timestamp":1693850067000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10209197\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"references-count":38,"URL":"https:\/\/doi.org\/10.1109\/tifs.2023.3302161","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023]]}}}