{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,2]],"date-time":"2026-04-02T15:53:28Z","timestamp":1775145208983,"version":"3.50.1"},"reference-count":66,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U2469205"],"award-info":[{"award-number":["U2469205"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100012226","name":"Fundamental Research Funds for the Central Universities","doi-asserted-by":"publisher","award":["JKF-20240769"],"award-info":[{"award-number":["JKF-20240769"]}],"id":[{"id":"10.13039\/501100012226","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3621008","type":"journal-article","created":{"date-parts":[[2025,10,14]],"date-time":"2025-10-14T17:39:25Z","timestamp":1760463565000},"page":"1-1","source":"Crossref","is-referenced-by-count":2,"title":["Dual Dependency Disentangling for Defending Model Inversion Attacks in Split Federated Learning"],"prefix":"10.1109","author":[{"ORCID":"https:\/\/orcid.org\/0009-0007-8496-1819","authenticated-orcid":false,"given":"Tong","family":"Chen","sequence":"first","affiliation":[{"name":"State Key Laboratory of Complex and Critical Software Environment (CCSE), Beihang University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5884-3412","authenticated-orcid":false,"given":"Jiakai","family":"Wang","sequence":"additional","affiliation":[{"name":"Zhongguancun Laboratory, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6892-9906","authenticated-orcid":false,"given":"Jiejie","family":"Zhao","sequence":"additional","affiliation":[{"name":"Zhongguancun Laboratory, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0975-2367","authenticated-orcid":false,"given":"Bowen","family":"Du","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Complex and Critical Software Environment (CCSE), Beihang University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1745-9814","authenticated-orcid":false,"given":"Haiquan","family":"Wang","sequence":"additional","affiliation":[{"name":"School of Software, Beihang University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9754-3479","authenticated-orcid":false,"given":"Xiaoshan","family":"Bai","sequence":"additional","affiliation":[{"name":"School of Software, Beihang University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8057-4949","authenticated-orcid":false,"given":"Zheng","family":"Lin","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Technology, Beijing National Research Center for Information Science and Technology (BNRist), Tsinghua University, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8425-4195","authenticated-orcid":false,"given":"Xianglong","family":"Liu","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Complex and Critical Software Environment (CCSE), Beihang University, Beijing, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW56347.2022.00377"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1080\/09540091.2021.1936455"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467185"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3324747"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3428412"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2023.3237014"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW59228.2023.00553"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-25075-0_24"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3403176"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3404835.3462825"},{"key":"ref11","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. Artif. Intell. Statist.","author":"McMahan"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2018.05.003"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i8.20825"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2023.3310103"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2025.3554710"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00995"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3022358"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.522"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354261"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00033"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01587"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3005909"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/LCOMM.2023.3269768"},{"key":"ref25","first-page":"493","article-title":"BatchCrypt: Efficient homomorphic encryption for cross-silo federated learning","volume-title":"Proc. USENIX Annu. Tech. Conf.","author":"Zhang"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3336977"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3340994"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref29","article-title":"Practical defences against model inversion attacks for split neural networks","author":"Titcombe","year":"2021","journal-title":"arXiv:2104.05743"},{"key":"ref30","first-page":"5201","article-title":"The distributed discrete Gaussian mechanism for federated learning with secure aggregation","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Kairouz"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00988"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.155"},{"key":"ref33","first-page":"72181","article-title":"Dynamic personalized federated learning with adaptive differential privacy","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"36","author":"Yang"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/3378679.3394533"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6930"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01195"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.01404"},{"key":"ref38","article-title":"Mocosfl: Enabling cross-client collaborative self-supervised learning","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Li"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/TWC.2024.3369170"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467371"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3485259"},{"key":"ref42","first-page":"1964","article-title":"Label-only membership inference attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Choquette-Choo"},{"key":"ref43","article-title":"Membership inference attacks against NLP classification models","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Shejwalkar"},{"key":"ref44","article-title":"Unsupervised membership inference attacks against machine learning models","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Peng"},{"key":"ref45","article-title":"Efficient passive membership inference attack in federated learning","volume-title":"Proc. Neural Inf. Process. Syst.","author":"Zari"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243834"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417270"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560662"},{"key":"ref49","first-page":"14747","article-title":"Deep leakage from gradients","volume-title":"Proc. 33rd Conf. Neural Inf. Process. Syst.","author":"Zhu"},{"key":"ref50","article-title":"IDLG: Improved deep leakage from gradients","author":"Zhao","year":"2020","journal-title":"arXiv:2001.02610"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1145\/3422622"},{"key":"ref52","article-title":"Modelling and automatically analysing privacy properties for honest-but-curious adversaries","author":"Paverd","year":"2014"},{"key":"ref53","article-title":"SNAS: Stochastic neural architecture search","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Xie"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00239"},{"key":"ref55","first-page":"351","article-title":"Dropout training as adaptive regularization","volume-title":"Proc. Neural Inf. Process. Syst.","volume":"26","author":"Wager"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.5555\/2969033.2969125"},{"key":"ref57","article-title":"Deep inside convolutional networks: Visualising image classification models and saliency maps","volume-title":"Proc. Int. Conf. Learn. Represent. (ICLR)","author":"Simonyan"},{"key":"ref58","article-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1109\/ICIP.2014.7025068"},{"key":"ref60","article-title":"Diffusion convolutional recurrent neural network: Data-driven traffic forecasting","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Li"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2024\/611"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/ITSC45102.2020.9294453"},{"key":"ref63","doi-asserted-by":"publisher","DOI":"10.1109\/mnet.2025.3547760"},{"key":"ref64","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3372815"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1145\/3292500.3330887"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/264"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/4358835\/11202568.pdf?arnumber=11202568","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T04:44:44Z","timestamp":1761367484000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11202568\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":66,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3621008","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025]]}}}