{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T03:20:59Z","timestamp":1778210459383,"version":"3.51.4"},"reference-count":61,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100012166","name":"National Key Research and Development Program of China","doi-asserted-by":"publisher","award":["2022YFB4501500"],"award-info":[{"award-number":["2022YFB4501500"]}],"id":[{"id":"10.13039\/501100012166","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3547308","type":"journal-article","created":{"date-parts":[[2025,3,3]],"date-time":"2025-03-03T18:29:37Z","timestamp":1741026577000},"page":"2793-2806","source":"Crossref","is-referenced-by-count":10,"title":["Swift: Fast Secure Neural Network Inference With Fully Homomorphic Encryption"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9895-3816","authenticated-orcid":false,"given":"Yu","family":"Fu","sequence":"first","affiliation":[{"name":"School of Cyber Science and Technology and Anhui Province Key Laboratory of Digital Security, University of Science and Technology of China, Hefei, Anhui, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu","family":"Tong","sequence":"additional","affiliation":[{"name":"School of Cyber Science and Technology and Anhui Province Key Laboratory of Digital Security, University of Science and Technology of China, Hefei, Anhui, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0006-6534-4260","authenticated-orcid":false,"given":"Yijing","family":"Ning","sequence":"additional","affiliation":[{"name":"School of Cyber Science and Technology and Anhui Province Key Laboratory of Digital Security, University of Science and Technology of China, Hefei, Anhui, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-7832-828X","authenticated-orcid":false,"given":"Tianshi","family":"Xu","sequence":"additional","affiliation":[{"name":"School of Integrated Circuits, Peking University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7212-2264","authenticated-orcid":false,"given":"Meng","family":"Li","sequence":"additional","affiliation":[{"name":"Institute for Artificial Intelligence and the School of Integrated Circuits, Peking University, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1508-4879","authenticated-orcid":false,"given":"Jingqiang","family":"Lin","sequence":"additional","affiliation":[{"name":"School of Cyber Science and Technology and Anhui Province Key Laboratory of Digital Security, University of Science and Technology of China, Hefei, Anhui, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8515-7124","authenticated-orcid":false,"given":"Dengguo","family":"Feng","sequence":"additional","affiliation":[{"name":"Institute of Software, Chinese Academy of Sciences, Beijing, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1016\/j.qref.2007.04.001"},{"key":"ref2","first-page":"201","article-title":"CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Gilad-Bachrach"},{"key":"ref3","first-page":"1","article-title":"CryptoDL: Towards deep learning over encrypted data","volume-title":"Proc. Annu. Comput. Secur. Appl. Conf.","volume":"11","author":"Hesamifard"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196522"},{"key":"ref7","first-page":"1651","article-title":"GAZELLE: A low latency framework for secure neural network inference","volume-title":"Proc. 27th USENIX Secur. Symp. (USENIX Security)","author":"Juvekar"},{"key":"ref8","first-page":"2505","article-title":"Delphi: A cryptographic inference service for neural networks","volume-title":"Proc. 29th USENIX Secur. Symp.","author":"Srinivasan"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3310273.3323047"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3338469.3358944"},{"key":"ref11","first-page":"812","article-title":"Low latency privacy preserving inference","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Brutzkus"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417274"},{"key":"ref13","first-page":"809","article-title":"Cheetah: Lean and fast secure two-party deep neural network inference","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Huang"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/DAC.2018.8465894"},{"key":"ref15","first-page":"1501","article-title":"XONN: XNOR-based oblivious deep neural network inference","volume-title":"Proc. 28th USENIX Secur. Symp.","author":"Riazi"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00092"},{"key":"ref17","first-page":"35","article-title":"ABY3: A mixed protocol framework for machine learning","volume-title":"Proc. ACM SIGSAC Conf. Comput. Commun. Security","author":"Mohassel"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.24202"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0035"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.23005"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3292500.3330920"},{"key":"ref22","first-page":"1939","article-title":"Scalable multi-party computation protocols for machine learning in the honest-majority setting","volume-title":"Proc. 33rd USENIX Secur. Symp.","author":"Liu"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1007\/s10623-012-9720-4"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"},{"key":"ref25","article-title":"Somewhat practical fully homomorphic encryption","author":"Fan","year":"2012"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/2633600"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70694-8_15"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1007\/s00145-019-09319-x"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-46800-5_24"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1515\/jmc-2019-0026"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00043"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3263631"},{"key":"ref33","article-title":"Intel SGX explained","author":"Costan","year":"2016"},{"key":"ref34","first-page":"1041","article-title":"Telling your secrets without page faults: Stealthy page table-based attacks on enclaved execution","volume-title":"Proc. 26th USENIX Secur. Symp.","author":"Bulck"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.45"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66787-4_4"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.5555\/3277203.3277277"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00020"},{"key":"ref39","article-title":"NeuJeans: Private neural network inference with joint optimization of convolution and FHE bootstrapping","author":"Hyung Ju","year":"2023","journal-title":"arXiv:2312.04356"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.3390\/fi15120407"},{"key":"ref41","first-page":"12403","article-title":"Low-complexity deep convolutional neural networks on fully homomorphic encryption using multiplexed parallel convolutions","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Lee"},{"key":"ref42","first-page":"347","article-title":"A full RNS variant of approximate homomorphic encryption","author":"Cheon","year":"2018","journal-title":"Selected Areas in Cryptography\u2014SAC"},{"key":"ref43","volume-title":"Microsoft SEAL (Release 3.7)","year":"2021"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TC.1972.5009071"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-57048-8_6"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1561\/9781680835090"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-17140-6_7"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_21"},{"key":"ref50","article-title":"Homomorphic encryption security standard","author":"Albrecht","year":"2018"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2022.3159694"},{"key":"ref52","article-title":"Toward scalable fully homomorphic encryption through light trusted computing assistance","author":"Wang","year":"2019","journal-title":"arXiv:1905.07766"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24119"},{"key":"ref54","article-title":"BumbleBee: Secure two-party inference framework for large transformers","author":"Lu","year":"2023"},{"key":"ref55","first-page":"2201","article-title":"Muse: Secure inference resilient to malicious clients","volume-title":"Proc. 30th USENIX Secur. Symp.","author":"Lehmkuhl"},{"key":"ref56","first-page":"1361","article-title":"SIMC: ML inference secure against malicious clients at semi-honest cost","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Chandran"},{"key":"ref57","volume-title":"OpenCheetah","year":"2022"},{"key":"ref58","volume-title":"EMP-Toolkit: Efficient Multiparty Computation Toolkit","author":"Wang","year":"2016"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/3407023.3407045"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23113"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/28395.28420"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10810755\/10908996.pdf?arnumber=10908996","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,14]],"date-time":"2025-03-14T17:46:35Z","timestamp":1741974395000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10908996\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":61,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3547308","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]}}}