{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,15]],"date-time":"2026-01-15T23:11:04Z","timestamp":1768518664805,"version":"3.49.0"},"reference-count":60,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"10","license":[{"start":{"date-parts":[[2024,10,1]],"date-time":"2024-10-01T00:00:00Z","timestamp":1727740800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,10,1]],"date-time":"2024-10-01T00:00:00Z","timestamp":1727740800000},"content-version":"am","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,10,1]],"date-time":"2024-10-01T00:00:00Z","timestamp":1727740800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,10,1]],"date-time":"2024-10-01T00:00:00Z","timestamp":1727740800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62106114"],"award-info":[{"award-number":["62106114"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Major Key Project of PCL","award":["PCL2023A09"],"award-info":[{"award-number":["PCL2023A09"]}]},{"DOI":"10.13039\/501100001381","name":"National Research Foundation Singapore","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001381","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Knowl. Data Eng."],"published-print":{"date-parts":[[2024,10]]},"DOI":"10.1109\/tkde.2023.3334821","type":"journal-article","created":{"date-parts":[[2023,11,20]],"date-time":"2023-11-20T19:36:05Z","timestamp":1700508965000},"page":"5066-5079","source":"Crossref","is-referenced-by-count":3,"title":["Data Provenance via Differential Auditing"],"prefix":"10.1109","volume":"36","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-2747-5677","authenticated-orcid":false,"given":"Xin","family":"Mu","sequence":"first","affiliation":[{"name":"Department of Strategic and Advanced Interdisciplinary Research, Peng Cheng Laboratory, Shenzhen, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0454-0808","authenticated-orcid":false,"given":"Ming","family":"Pang","sequence":"additional","affiliation":[{"name":"JD.com Inc., Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6077-4356","authenticated-orcid":false,"given":"Feida","family":"Zhu","sequence":"additional","affiliation":[{"name":"School of Computing and Information Systems, Singapore Management University, Singapore"}]}],"member":"263","reference":[{"key":"ref1","article-title":"GPT-4 technical report","year":"2023"},{"key":"ref2","first-page":"8821","article-title":"Zero-shot text-to-image generation","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Ramesh"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3470818"},{"key":"ref4","article-title":"SoK: Machine learning governance","author":"Chandrasekaran","year":"2021"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3292500.3330885"},{"issue":"1","key":"ref7","first-page":"61","article-title":"Membership inference attack against differentially private deep learning model","volume":"11","author":"Rahman","year":"2018","journal-title":"Trans. Data Privacy"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-63076-8"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134077"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2019.23119"},{"key":"ref12","article-title":"Membership inference attacks against NLP classification models","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst. Workshop Privacy Mach. Learn.","author":"Shejwalkar"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3523273"},{"key":"ref14","article-title":"Towards demystifying membership inference attacks","author":"Truex","year":"2018"},{"key":"ref15","first-page":"1964","article-title":"Label-only membership inference attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Choquette-Choo"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00095"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484770"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3406473"},{"key":"ref19","article-title":"Dataset inference: Ownership resolution in machine learning","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Maini"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0008"},{"key":"ref21","article-title":"Understanding membership inferences on well-generalized learning models","author":"Long","year":"2018"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484575"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417270"},{"key":"ref24","doi-asserted-by":"crossref","DOI":"10.1145\/3446776","article-title":"Understanding deep learning requires rethinking generalization","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Zhang"},{"key":"ref25","first-page":"267","article-title":"The secret sharer: Evaluating and testing unintended memorization in neural networks","volume-title":"Proc. USENIX Assoc.","author":"Carlini"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"ref27","article-title":"Differential privacy and machine learning: A survey and review","author":"Ji","year":"2014"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/WI-IAT.2013.80"},{"key":"ref29","first-page":"998","article-title":"Near-optimal differentially private principal components","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Chaudhuri"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.29012\/jpc.v4i1.612"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/ICDMW.2009.93"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1561\/2200000083"},{"key":"ref35","article-title":"Differentially private federated learning: A client level perspective","author":"Geyer","year":"2017"},{"key":"ref36","volume-title":"Machine Learning - An Artificial Intelligence Approach, ser. Symbolic computation","author":"Michalski","year":"1984"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1007\/BF00153759"},{"key":"ref38","article-title":"Sensitivity and generalization in neural networks: An empirical study","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Novak"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33014943"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/ICPR48806.2021.9412496"},{"key":"ref41","first-page":"11611","article-title":"Uniform convergence may be unable to explain generalization in deep learning","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Nagarajan"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3357713.3384290"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.4324\/9781410605337-29"},{"key":"ref44","first-page":"1106","article-title":"Imagenet classification with deep convolutional neural networks","volume-title":"Proc. Int. Conf. Neural Inf. Process. Syst.","author":"Krizhevsky"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2017\/497"},{"key":"ref46","article-title":"Activation functions: Comparison of trends in practice and research for deep learning","author":"Nwankpa","year":"2018"},{"key":"ref47","article-title":"Adversarial attacks and defences: A survey","author":"Chakraborty","year":"2018"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1201\/9781351251389-8"},{"key":"ref49","article-title":"Adversarial machine learning at scale","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Kurakin"},{"key":"ref50","article-title":"Explaining and harnessing adversarial examples","volume-title":"Proc. Int. Conf. Learn. Representations","author":"Goodfellow"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2017.2691702"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1007\/BF00994018"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1023\/A:1018628609742"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2017.2761849"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1109\/BigData.2018.8621891"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2014.2359646"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.5244\/C.29.41"},{"key":"ref59","first-page":"233","article-title":"A closer look at memorization in deep networks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Arpit"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1007\/s10115-007-0114-2"}],"container-title":["IEEE Transactions on Knowledge and Data Engineering"],"original-title":[],"link":[{"URL":"https:\/\/ieeexplore.ieee.org\/ielam\/69\/10679113\/10323535-aam.pdf","content-type":"application\/pdf","content-version":"am","intended-application":"syndication"},{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/69\/10679113\/10323535.pdf?arnumber=10323535","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,9,13]],"date-time":"2024-09-13T18:49:16Z","timestamp":1726253356000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10323535\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10]]},"references-count":60,"journal-issue":{"issue":"10"},"URL":"https:\/\/doi.org\/10.1109\/tkde.2023.3334821","relation":{},"ISSN":["1041-4347","1558-2191","2326-3865"],"issn-type":[{"value":"1041-4347","type":"print"},{"value":"1558-2191","type":"electronic"},{"value":"2326-3865","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,10]]}}}