{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:30:38Z","timestamp":1750221038307,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":20,"publisher":"ACM","license":[{"start":{"date-parts":[[2018,11,5]],"date-time":"2018-11-05T00:00:00Z","timestamp":1541376000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"ONR","award":["N00014-17-1-2500"],"award-info":[{"award-number":["N00014-17-1-2500"]}]},{"name":"NSF Trust-Hub","award":["CNS-1649423"],"award-info":[{"award-number":["CNS-1649423"]}]},{"name":"MURI- SUB 141414","award":["FA9550-14-1-0351"],"award-info":[{"award-number":["FA9550-14-1-0351"]}]},{"name":"NSF GC@Scale","award":["CNS-1619261"],"award-info":[{"award-number":["CNS-1619261"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2018,11,5]]},"DOI":"10.1145\/3240765.3274560","type":"proceedings-article","created":{"date-parts":[[2018,11,6]],"date-time":"2018-11-06T13:36:57Z","timestamp":1541511417000},"page":"1-4","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["Privacy-preserving deep learning and inference"],"prefix":"10.1145","author":[{"given":"M. Sadegh","family":"Riazi","sequence":"first","affiliation":[{"name":"University of California San Diego"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Farinaz","family":"Koushanfar","sequence":"additional","affiliation":[{"name":"University of California San Diego"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2018,11,5]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","unstructured":"Keith Bonawitz Vladimir Ivanov Ben Kreuter Antonio Marcedone H Brendan McMahan Sarvar Patel Daniel Ramage Aaron Segal and Karn Seth. 2017. Practical Secure Aggregation for Privacy-Preserving Machine Learning. In CCS. ACM. 10.1145\/3133956.3133982","DOI":"10.1145\/3133956.3133982"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-45239-0_4"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1137\/120868669"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","unstructured":"Nathan Dowlin Ran Gilad-Bachrach Kim Laine Kristin Lauter Michael Naehrig and John Wernsing. 2016. CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy. In ICML.","DOI":"10.5555\/3045390.3045413"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.5555\/2567709.2567741"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","unstructured":"Matt Fredrikson Somesh Jha and Thomas Ristenpart. 2015. Model inversion attacks that exploit confidence information and basic countermeasures. In CCS. ACM. 10.1145\/2810103.2813677","DOI":"10.1145\/2810103.2813677"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","unstructured":"Oded Goldreich Silvio Micali and Avi Wigderson. 1987. How to play any mental game. In STOC. 10.1145\/28395.28420","DOI":"10.1145\/28395.28420"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","unstructured":"Briland Hitaj Giuseppe Ateniese and Fernando P\u00e9rez-Cruz. 2017. Deep models under the GAN: information leakage from collaborative deep learning. In CCS. ACM. 10.1145\/3133956.3134012","DOI":"10.1145\/3133956.3134012"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","unstructured":"Jian Liu Mika Juuti Yao Lu and N. Asokan. 2017. Oblivious Neural Network Predictions via MiniONN transformations. In CCS. ACM. 10.1145\/3133956.3134056","DOI":"10.1145\/3133956.3134056"},{"key":"e_1_3_2_1_12_1","volume-title":"Innovative instructions and software model for isolated execution. HASP@ ISCA 10","author":"McKeen Frank","year":"2013","unstructured":"Frank McKeen, Ilya Alexandrovich, Alex Berenzon, Carlos V Rozas, Hisham Shafi, Vedvyas Shanbhogue, and Uday R Savagaonkar. 2013. Innovative instructions and software model for isolated execution. HASP@ ISCA 10 (2013)."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/2897937.2898060"},{"volume-title":"SecureML: A System for Scalable Privacy-Preserving Machine Learning","author":"Mohassel Payman","key":"e_1_3_2_1_14_1","unstructured":"Payman Mohassel and Yupeng Zhang. 2017. SecureML: A System for Scalable Privacy-Preserving Machine Learning.. In IEEE S&P."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.5555\/3241094.3241143"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196522"},{"volume-title":"DeepSecure: Scalable Provably-Secure Deep Learning","author":"Rouhani Bita Darvish","key":"e_1_3_2_1_17_1","unstructured":"Bita Darvish Rouhani, M Sadegh Riazi, and Farinaz Koushanfar. 2018. DeepSecure: Scalable Provably-Secure Deep Learning. In DAC. IEEE."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"crossref","unstructured":"Reza Shokri Marco Stronati Congzheng Song and Vitaly Shmatikov. 2017. Membership inference attacks against machine learning models. In S&P. IEEE.","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_2_1_20_1","unstructured":"Florian Tram\u00e8r Fan Zhang Ari Juels Michael K Reiter and Thomas Ristenpart. 2016. Stealing Machine Learning Models via Prediction APIs.. In USENIX Security."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","unstructured":"Andrew Yao. 1986. How to generate and exchange secrets. In FOCS. 10.1109\/SFCS.1986.25","DOI":"10.1109\/SFCS.1986.25"}],"event":{"name":"ICCAD '18: IEEE\/ACM INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN","sponsor":["IEEE-EDS Electronic Devices Society","IEEE CAS","IEEE CEDA"],"location":"San Diego California","acronym":"ICCAD '18"},"container-title":["Proceedings of the International Conference on Computer-Aided Design"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3240765.3274560","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3240765.3274560","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3240765.3274560","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T00:43:44Z","timestamp":1750207424000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3240765.3274560"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,11,5]]},"references-count":20,"alternative-id":["10.1145\/3240765.3274560","10.1145\/3240765"],"URL":"https:\/\/doi.org\/10.1145\/3240765.3274560","relation":{},"subject":[],"published":{"date-parts":[[2018,11,5]]},"assertion":[{"value":"2018-11-05","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}