{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T21:58:32Z","timestamp":1761429512047,"version":"3.40.3"},"reference-count":57,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100017691","name":"Xizang Key Research and Development Program","doi-asserted-by":"publisher","award":["XZ202501ZY0064"],"award-info":[{"award-number":["XZ202501ZY0064"]}],"id":[{"id":"10.13039\/501100017691","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62301346"],"award-info":[{"award-number":["62301346"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Sichuan Science and Technology Program","award":["2024NSFSC1424"],"award-info":[{"award-number":["2024NSFSC1424"]}]},{"name":"Chengdu Technology Innovation Research and Development Project","award":["2024-YF05-00652-SN"],"award-info":[{"award-number":["2024-YF05-00652-SN"]}]},{"name":"Chengdu Major Technology Application Demonstration Project","award":["2023-YF09-00019-SN"],"award-info":[{"award-number":["2023-YF09-00019-SN"]}]},{"DOI":"10.13039\/501100018561","name":"Talent Introduction and Scientific Research Start-Up Project of Sichuan University","doi-asserted-by":"publisher","award":["YJ202326"],"award-info":[{"award-number":["YJ202326"]}],"id":[{"id":"10.13039\/501100018561","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3550066","type":"journal-article","created":{"date-parts":[[2025,3,11]],"date-time":"2025-03-11T17:33:04Z","timestamp":1741714384000},"page":"3131-3145","source":"Crossref","is-referenced-by-count":1,"title":["A Stable and Efficient Data-Free Model Attack With Label-Noise Data Generation"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3933-5401","authenticated-orcid":false,"given":"Zhixuan","family":"Zhang","sequence":"first","affiliation":[{"name":"School of Cyber Science and Engineering, Sichuan University, Chengdu, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-0762-9067","authenticated-orcid":false,"given":"Xingjian","family":"Zheng","sequence":"additional","affiliation":[{"name":"Frost Drill Intellectual Software Pte., Ltd., International Plaza, Singapore"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3555-0005","authenticated-orcid":false,"given":"Linbo","family":"Qing","sequence":"additional","affiliation":[{"name":"School of Cyber Science and Engineering, Sichuan University, Chengdu, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5378-6404","authenticated-orcid":false,"given":"Qi","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Future Technology, South China University of Technology, Guangzhou, China"}]},{"given":"Pingyu","family":"Wang","sequence":"additional","affiliation":[{"name":"College of Electronics and Information Engineering, Sichuan University, Chengdu, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-2318-0386","authenticated-orcid":false,"given":"Yu","family":"Liu","sequence":"additional","affiliation":[{"name":"College of Electronics and Information Engineering, Sichuan University, Chengdu, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0007-3646-7840","authenticated-orcid":false,"given":"Jiyang","family":"Liao","sequence":"additional","affiliation":[{"name":"College of Electronics and Information Engineering, Sichuan University, Chengdu, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2013.6639344"},{"key":"ref3","first-page":"26462","article-title":"Learning from inside: Self-driven Siamese sampling and reasoning for video question answering","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"34","author":"Yu"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01070"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2021.3114208"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2021.3129503"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/LSP.2021.3059172"},{"key":"ref8","first-page":"1","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Goodfellow"},{"key":"ref9","first-page":"1","article-title":"Intriguing properties of neural networks","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Szegedy"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3222963"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3310352"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3348232"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140448"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.3301742"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00509"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2021.3128560"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00031"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01396"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01492"},{"key":"ref26","first-page":"1","article-title":"Towards principled methods for training generative adversarial networks","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Arjovsky"},{"key":"ref27","first-page":"5769","article-title":"Improved training of Wasserstein GANs","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"30","author":"Gulrajani"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.48550\/arXiv.1511.06434"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01469"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i7.28510"},{"key":"ref31","article-title":"Data-free knowledge distillation for deep neural networks","author":"Gontijo Lopes","year":"2017","journal-title":"arXiv:1710.07535"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00874"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00361"},{"key":"ref34","first-page":"1","article-title":"Dual Student networks for data-free model stealing","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Beetham"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00473"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV51070.2023.00439"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2024.3469952"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00474"},{"key":"ref39","first-page":"1","article-title":"IDEAL: Query-efficient data-free learning from black-box models","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Zhang"},{"key":"ref40","first-page":"1","article-title":"Ensemble adversarial training: Attacks and defenses","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Tram\u00e8r"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00059"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00034"},{"key":"ref43","first-page":"1","article-title":"Countering adversarial images using input transformations","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Guo"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23198"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2022.3211736"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.21437\/Interspeech.2021-599"},{"key":"ref47","article-title":"Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms","author":"Xiao","year":"2017","journal-title":"arXiv:1708.07747"},{"key":"ref48","first-page":"1","article-title":"Reading digits in natural images with unsupervised feature learning","volume-title":"Proc. NIPS Workshop","author":"Netzer"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"article-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref50"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1145\/3065386"},{"key":"ref52","first-page":"1","article-title":"Very deep convolutional networks for large-scale image recognition","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Simonyan"},{"issue":"7","key":"ref53","first-page":"3","article-title":"Tiny ImageNet visual recognition challenge","volume":"7","author":"Le","year":"2015","journal-title":"CS 231N"},{"key":"ref54","first-page":"1","article-title":"PyTorch: An imperative style, high-performance deep learning library","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Paszke"},{"issue":"11","key":"ref55","first-page":"1","article-title":"Visualizing data using t-SNE","volume":"9","author":"Van der Maaten","year":"2008","journal-title":"J. Mach. Learn. Res."},{"key":"ref56","article-title":"A note on the inception score","author":"Barratt","year":"2018","journal-title":"arXiv:1801.01973"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10810755\/10922152.pdf?arnumber=10922152","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,28]],"date-time":"2025-03-28T03:25:44Z","timestamp":1743132344000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10922152\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":57,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3550066","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"type":"print","value":"1556-6013"},{"type":"electronic","value":"1556-6021"}],"subject":[],"published":{"date-parts":[[2025]]}}}