{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,29]],"date-time":"2026-05-29T16:23:35Z","timestamp":1780071815750,"version":"3.54.0"},"reference-count":36,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"11","license":[{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T00:00:00Z","timestamp":1761955200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"China Postdoctoral Science Foundation, PR China","award":["2024M752210"],"award-info":[{"award-number":["2024M752210"]}]},{"name":"Ministry of Education in China"},{"name":"Social Sciences Foundation","award":["24XJCZH004"],"award-info":[{"award-number":["24XJCZH004"]}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62272328"],"award-info":[{"award-number":["62272328"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Key R&amp;D Program of Sichuan Province, China","award":["2023YFG0115"],"award-info":[{"award-number":["2023YFG0115"]}]},{"name":"Key R&amp;D Program of Sichuan Province, China","award":["2023YFG0112"],"award-info":[{"award-number":["2023YFG0112"]}]},{"name":"Sichuan Science and Technology Program","award":["2024NSFJQ0026"],"award-info":[{"award-number":["2024NSFJQ0026"]}]},{"name":"basic research projects of The Sichuan Provincial Industrial Development Fund"},{"name":"Next-generation Big Data Visualization-Based Decision-making and Analysis Platform","award":["2023JB06"],"award-info":[{"award-number":["2023JB06"]}]},{"name":"Cooperative Program of Sichuan University and Zigong, PR China","award":["2022CDZG-6"],"award-info":[{"award-number":["2022CDZG-6"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Ind. Inf."],"published-print":{"date-parts":[[2025,11]]},"DOI":"10.1109\/tii.2025.3586056","type":"journal-article","created":{"date-parts":[[2025,7,18]],"date-time":"2025-07-18T17:48:39Z","timestamp":1752860919000},"page":"8717-8726","source":"Crossref","is-referenced-by-count":1,"title":["PGAI-Audit: A Precise and General Method to Audit Privacy Budget of Differentially Private Artificial Intelligence Models"],"prefix":"10.1109","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5040-8125","authenticated-orcid":false,"given":"Weixin","family":"Zhao","sequence":"first","affiliation":[{"name":"College of Computer Science, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zhishuo","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7682-4354","authenticated-orcid":false,"given":"Wen","family":"Huang","sequence":"additional","affiliation":[{"name":"College of Computer Science, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5831-2240","authenticated-orcid":false,"given":"Jian","family":"Peng","sequence":"additional","affiliation":[{"name":"College of Computer Science, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8396-6825","authenticated-orcid":false,"given":"Wenzheng","family":"Xu","sequence":"additional","affiliation":[{"name":"College of Computer Science, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3139-8528","authenticated-orcid":false,"given":"Yongjian","family":"Liao","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Chang","family":"Liu","sequence":"additional","affiliation":[{"name":"College of Computer Science, Sichuan University, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833649"},{"key":"ref2","first-page":"267","article-title":"The secret sharer: Evaluating and testing unintended memorization in neural networks","volume-title":"Proc. 28th USENIX Conf. Secur. Symp.","author":"Carlini","year":"2019"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2023.3254651"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/s11071-024-09631-7"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2023.3249212"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/sp.2017.41"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/MNET.002.2100510"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2020.3014246"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2014.2368363"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417282"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/lics52264.2021.9470708"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3075843"},{"key":"ref14","doi-asserted-by":"crossref","DOI":"10.1016\/j.neucom.2024.128756","article-title":"Auditing privacy budget of differentially private neural network models","volume":"614","author":"Huang","year":"2025","journal-title":"Neurocomputing"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/2783258.2783379"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/2623330.2623723"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3576915.3616607"},{"key":"ref18","article-title":"Diffprivlib: The ibm differential privacy library","author":"Holohan","year":"2019"},{"key":"ref19","article-title":"Opacus: User-friendly differential privacy library in pytorch","author":"Yousefpour","year":"2021"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.14778\/3055330.3055331"},{"key":"ref21","first-page":"22205","article-title":"Auditing differentially private machine learning: How private is private SGD?","volume-title":"Proc. 34th Int. Conf. Neural Inf. Process. Syst.","author":"Jagielski","year":"2020"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00069"},{"key":"ref23","first-page":"4165","article-title":"A general framework for auditing differentially private machine learning","volume-title":"Proc. 36th Int. Conf. Neural Inf. Process. Syst.","author":"Lu","year":"2022"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1561\/9781601988195"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref26","article-title":"Uncertainty in deep learning","author":"Gal","year":"2016"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4612-0745-0"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833689"},{"key":"ref29","volume-title":"Minimax Optimal Estimation of Approximate Differential Privacy on Neighboring Databases","author":"Liu","year":"2019"},{"key":"ref30","article-title":"Rnyi differential privacy of the sampled gaussian mechanism","author":"Mironov","year":"2019"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/11681878_14"},{"key":"ref32","first-page":"1895","article-title":"Evaluating differentially private machine learning in practice","volume-title":"Proc. 28th USENIX Conf. Secur. Symp.","author":"Jayaraman","year":"2019"},{"key":"ref33","article-title":"Acquire valued shoppers challenge","year":"2020"},{"key":"ref34","article-title":"CINIC-10 is not imagenet or CIFAR-10","author":"Darlow","year":"2018"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/WI-IAT.2013.80"},{"key":"ref36","first-page":"1069","article-title":"Differentially private empirical risk minimization","volume":"12","author":"Chaudhuri","year":"2011","journal-title":"J. Mach. Learn. Res."}],"container-title":["IEEE Transactions on Industrial Informatics"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/9424\/11206732\/11085050.pdf?arnumber=11085050","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,7]],"date-time":"2025-11-07T18:14:18Z","timestamp":1762539258000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11085050\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11]]},"references-count":36,"journal-issue":{"issue":"11"},"URL":"https:\/\/doi.org\/10.1109\/tii.2025.3586056","relation":{},"ISSN":["1551-3203","1941-0050"],"issn-type":[{"value":"1551-3203","type":"print"},{"value":"1941-0050","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,11]]}}}