{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,4]],"date-time":"2026-03-04T17:20:05Z","timestamp":1772644805676,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":96,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,9,5]],"date-time":"2021-09-05T00:00:00Z","timestamp":1630800000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021,9,5]]},"DOI":"10.1145\/3473856.3473869","type":"proceedings-article","created":{"date-parts":[[2021,9,13]],"date-time":"2021-09-13T13:51:52Z","timestamp":1631541112000},"page":"520-546","source":"Crossref","is-referenced-by-count":15,"title":["\u201cI Never Thought About Securing My Machine Learning Systems\u201d: A Study of Security and Privacy Awareness of Machine Learning Practitioners"],"prefix":"10.1145","author":[{"given":"Franziska","family":"Boenisch","sequence":"first","affiliation":[{"name":"Fraunhofer AISEC, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Verena","family":"Battis","sequence":"additional","affiliation":[{"name":"Fraunhofer SIT, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Nicolas","family":"Buchmann","sequence":"additional","affiliation":[{"name":"Freie Universit\u00e4t Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Maija","family":"Poikela","sequence":"additional","affiliation":[{"name":"Fraunhofer AISEC, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2021,9,13]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Mart\u00edn Abadi Ashish Agarwal Paul Barham Eugene Brevdo and Zhifeng\u00a0Chen et al.. 2015. TensorFlow: Large-Scale Machine Learning on Heterogeneous Systems. https:\/\/www.tensorflow.org\/ Software available from tensorflow.org.  Mart\u00edn Abadi Ashish Agarwal Paul Barham Eugene Brevdo and Zhifeng\u00a0Chen et al.. 2015. TensorFlow: Large-Scale Machine Learning on Heterogeneous Systems. https:\/\/www.tensorflow.org\/ Software available from tensorflow.org."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.5555\/3235924.3235932"},{"key":"e_1_3_2_1_3_1","unstructured":"Dario Amodei Chris Olah Jacob Steinhardt Paul\u00a0F. Christiano John Schulman and Dan Man\u00e9. 2016. Concrete Problems in AI Safety. arXiv:1606.06565v2http:\/\/arxiv.org\/abs\/1606.06565  Dario Amodei Chris Olah Jacob Steinhardt Paul\u00a0F. Christiano John Schulman and Dan Man\u00e9. 2016. Concrete Problems in AI Safety. arXiv:1606.06565v2http:\/\/arxiv.org\/abs\/1606.06565"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2014.70"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.14722\/usec.2014.23006"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-010-5188-5"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/1128817.1128824"},{"key":"e_1_3_2_1_8_1","first-page":"337","article-title":"The effect of standardization on a \u03c7 2 approximation in factor analysis","volume":"38","author":"Bartlett S","year":"1951","journal-title":"Biometrika"},{"key":"e_1_3_2_1_9_1","volume-title":"AI Report","author":"Benaich Nathan","year":"2019"},{"key":"e_1_3_2_1_10_1","volume-title":"AI Report","author":"Benaich Nathan","year":"2020"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1111\/j.2517-6161.1995.tb02031.x"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.5555\/1018434.1021576"},{"key":"e_1_3_2_1_13_1","volume-title":"Advanced Information Systems Engineering. Vol.\u00a07908","author":"Biggio Battista"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.5555\/3042573.3042761"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23241"},{"key":"e_1_3_2_1_16_1","volume-title":"Federated Learning: Collaborative Machine Learning without Centralized Training Data","author":"McMahan Brendan","year":"2017"},{"key":"e_1_3_2_1_17_1","volume-title":"German IT Security Certificates. https:\/\/www.bsi.bund.de\/EN\/Topics\/Certification\/certification_node.html, last accessed on: April 7th","author":"BSI.","year":"2021"},{"key":"e_1_3_2_1_18_1","volume-title":"A survey of data mining and machine learning methods for cyber security intrusion detection","author":"Buczak L","year":"2015"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.5555\/645504.656274"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2683467.2683472"},{"key":"e_1_3_2_1_21_1","volume-title":"A coefficient of agreement for nominal scales. Educational and psychological measurement 20, 1","author":"Cohen Jacob","year":"1960"},{"key":"e_1_3_2_1_22_1","volume-title":"Coefficient alpha and the internal structure of tests. psychometrika 16, 3","author":"Cronbach J","year":"1951"},{"key":"e_1_3_2_1_23_1","unstructured":"Morten Dahl Jason Mancuso Yann Dupis Ben Decoste Morgan Giraud Ian Livingstone Justin Patriquin and Gavin Uhma. 2018. Private Machine Learning in TensorFlow using Secure Computation. CoRR abs\/1810.08130(2018) 6. arxiv:1810.08130http:\/\/arxiv.org\/abs\/1810.08130  Morten Dahl Jason Mancuso Yann Dupis Ben Decoste Morgan Giraud Ian Livingstone Justin Patriquin and Gavin Uhma. 2018. Private Machine Learning in TensorFlow using Secure Computation. CoRR abs\/1810.08130(2018) 6. arxiv:1810.08130http:\/\/arxiv.org\/abs\/1810.08130"},{"key":"e_1_3_2_1_24_1","volume-title":"Ensemble learning. The handbook of brain theory and neural networks 2","author":"G Dietterich","year":"2002"},{"key":"e_1_3_2_1_25_1","unstructured":"Gavin\u00a0Weiguang Ding Luyu Wang and Xiaomeng Jin. 2019. AdverTorch v0.1: An Adversarial Robustness Toolbox based on PyTorch. https:\/\/github.com\/BorealisAI\/advertorch.  Gavin\u00a0Weiguang Ding Luyu Wang and Xiaomeng Jin. 2019. AdverTorch v0.1: An Adversarial Robustness Toolbox based on PyTorch. https:\/\/github.com\/BorealisAI\/advertorch."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"crossref","unstructured":"Cynthia Dwork Aaron Roth 2014. The algorithmic foundations of differential privacy.Foundations and Trends in Theoretical Computer Science 9 3-4(2014) 211\u2013407.  Cynthia Dwork Aaron Roth 2014. The algorithmic foundations of differential privacy.Foundations and Trends in Theoretical Computer Science 9 3-4(2014) 211\u2013407.","DOI":"10.1561\/0400000042"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1214\/09-SS051"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/986655.986664"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"crossref","volume-title":"Statistical Methods for Rates and Proportions","author":"Fleiss L.","DOI":"10.1002\/0471445428"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"e_1_3_2_1_32_1","volume-title":"2nd","author":"Andrew Galen","year":"2021"},{"key":"e_1_3_2_1_33_1","unstructured":"Timnit Gebru Jamie Morgenstern Briana Vecchione Jennifer\u00a0Wortman Vaughan Hanna\u00a0M. Wallach Hal\u00a0Daum\u00e9 III and Kate Crawford. 2018. Datasheets for Datasets. arxiv:1803.09010http:\/\/arxiv.org\/abs\/1803.09010  Timnit Gebru Jamie Morgenstern Briana Vecchione Jennifer\u00a0Wortman Vaughan Hanna\u00a0M. Wallach Hal\u00a0Daum\u00e9 III and Kate Crawford. 2018. Datasheets for Datasets. arxiv:1803.09010http:\/\/arxiv.org\/abs\/1803.09010"},{"key":"e_1_3_2_1_34_1","unstructured":"Limesurvey GmbH. 2006\u20132021. LimeSurvey: An Open Source Survey Tool. http:\/\/www.limesurvey.org last accessed on: Feb. 2nd 2021.  Limesurvey GmbH. 2006\u20132021. LimeSurvey: An Open Source Survey Tool. http:\/\/www.limesurvey.org last accessed on: Feb. 2nd 2021."},{"key":"e_1_3_2_1_35_1","unstructured":"Morgane Goibert and Elvis Dohmatob. 2019. Adversarial Robustness via Adversarial Label-Smoothing. arXiv:1906.11567http:\/\/arxiv.org\/abs\/1906.11567  Morgane Goibert and Elvis Dohmatob. 2019. Adversarial Robustness via Adversarial Label-Smoothing. arXiv:1906.11567http:\/\/arxiv.org\/abs\/1906.11567"},{"key":"e_1_3_2_1_36_1","unstructured":"Ian\u00a0J. Goodfellow Jonathon Shlens and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. arxiv:1412.6572\u00a0[cs stat] http:\/\/arxiv.org\/abs\/1412.6572  Ian\u00a0J. Goodfellow Jonathon Shlens and Christian Szegedy. 2015. Explaining and Harnessing Adversarial Examples. arxiv:1412.6572\u00a0[cs stat] http:\/\/arxiv.org\/abs\/1412.6572"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-37682-5_1"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"crossref","unstructured":"Bartlomiej Hanus John\u00a0C Windsor and Yu Wu. 2018. Definition and multidimensionality of security awareness: Close encounters of the second order. ACM SIGMIS Database: the DATABASE for Advances in Information Systems 49 SI(2018) 103\u2013133.  Bartlomiej Hanus John\u00a0C Windsor and Yu Wu. 2018. Definition and multidimensionality of security awareness: Close encounters of the second order. ACM SIGMIS Database: the DATABASE for Advances in Information Systems 49 SI(2018) 103\u2013133.","DOI":"10.1145\/3210530.3210538"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1023\/A:1026586415054"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046684.2046692"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.14722\/usec.2014.23045"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"crossref","unstructured":"Xin Jin and Jiawei Han. 2010. K-Means Clustering. Springer US Boston MA 563\u2013564. https:\/\/doi.org\/10.1007\/978-0-387-30164-8_425  Xin Jin and Jiawei Han. 2010. K-Means Clustering. Springer US Boston MA 563\u2013564. https:\/\/doi.org\/10.1007\/978-0-387-30164-8_425","DOI":"10.1007\/978-0-387-30164-8_425"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/3187009.3177733"},{"key":"e_1_3_2_1_44_1","volume-title":"State of Machine Learning and Data Science","year":"2020"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1007\/BF02291817"},{"key":"e_1_3_2_1_46_1","volume-title":"Little jiffy, mark IV. Educational and psychological measurement 34, 1","author":"Kaiser F","year":"1974"},{"key":"e_1_3_2_1_47_1","first-page":"90","article-title":"Review on determining number of Cluster in K-Means Clustering","volume":"1","author":"Kodinariya M","year":"2013","journal-title":"International Journal"},{"key":"e_1_3_2_1_48_1","unstructured":"Jakub Kone\u010dn\u1ef3 H\u00a0Brendan McMahan Felix\u00a0X Yu Peter Richt\u00e1rik Ananda\u00a0Theertha Suresh and Dave Bacon. 2016. Federated learning: Strategies for improving communication efficiency. arXiv:1610.05492https:\/\/arxiv.org\/abs\/1610.05492  Jakub Kone\u010dn\u1ef3 H\u00a0Brendan McMahan Felix\u00a0X Yu Peter Richt\u00e1rik Ananda\u00a0Theertha Suresh and Dave Bacon. 2016. Federated learning: Strategies for improving communication efficiency. arXiv:1610.05492https:\/\/arxiv.org\/abs\/1610.05492"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1080\/01621459.1952.10483441"},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW50608.2020.00028"},{"key":"e_1_3_2_1_51_1","first-page":"40","article-title":"Secure Multiparty Computation for Privacy-Preserving Data Mining","volume":"1","author":"Lindell Yehuda","year":"2009","journal-title":"J. Priv. Confidentiality"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2805680"},{"key":"e_1_3_2_1_53_1","volume-title":"2nd","author":"Loukides Ben\u00a0Lorica","year":"2021"},{"key":"e_1_3_2_1_54_1","unstructured":"H.\u00a0Brendan McMahan Galen Andrew Ulfar Erlingsson Steve Chien Ilya Mironov Nicolas Papernot and Peter Kairouz. 2019. A General Approach to Adding Differential Privacy to Iterative Training Procedures. arxiv:arXiv:1812.06210\u00a0[cs.LG] https:\/\/github.com\/tensorflow\/privacy.  H.\u00a0Brendan McMahan Galen Andrew Ulfar Erlingsson Steve Chien Ilya Mironov Nicolas Papernot and Peter Kairouz. 2019. A General Approach to Adding Differential Privacy to Iterative Training Procedures. arxiv:arXiv:1812.06210\u00a0[cs.LG] https:\/\/github.com\/tensorflow\/privacy."},{"key":"e_1_3_2_1_55_1","volume-title":"2nd","author":"Research Microsoft","year":"2021"},{"key":"e_1_3_2_1_56_1","volume-title":"2nd","author":"Molnar Christoph","year":"2021"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/2884781.2884790"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1007\/s13735-018-0147-1"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134082"},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.5555\/3291228.3291252"},{"key":"e_1_3_2_1_61_1","unstructured":"Maria-Irina Nicolae Mathieu Sinn Minh\u00a0Ngoc Tran Beat Buesser and Ambrish\u00a0Rawat et al.. 2019. Adversarial Robustness Toolbox v1.0.0. arxiv:1807.01069\u00a0[cs.LG] https:\/\/github.com\/Trusted-AI\/adversarial-robustness-toolbox.  Maria-Irina Nicolae Mathieu Sinn Minh\u00a0Ngoc Tran Beat Buesser and Ambrish\u00a0Rawat et al.. 2019. Adversarial Robustness Toolbox v1.0.0. arxiv:1807.01069\u00a0[cs.LG] https:\/\/github.com\/Trusted-AI\/adversarial-robustness-toolbox."},{"key":"e_1_3_2_1_62_1","unstructured":"Office of the Privacy\u00a0Commissioner of Canada. 2012. Seizing Opportunity: Good Privacy Practices for Developing Mobile Apps. https:\/\/www.priv.gc.ca\/en\/privacy-topics\/technology\/mobile-and-digital-devices\/mobile-apps\/gd_app_201210\/ https:\/\/www.priv.gc.ca\/en\/privacy-topics\/technology\/mobile-and-digital-devices\/mobile-apps\/gd_app_201210\/ last accessed on: Feb. 2nd 2021.  Office of the Privacy\u00a0Commissioner of Canada. 2012. Seizing Opportunity: Good Privacy Practices for Developing Mobile Apps. https:\/\/www.priv.gc.ca\/en\/privacy-topics\/technology\/mobile-and-digital-devices\/mobile-apps\/gd_app_201210\/ https:\/\/www.priv.gc.ca\/en\/privacy-topics\/technology\/mobile-and-digital-devices\/mobile-apps\/gd_app_201210\/ last accessed on: Feb. 2nd 2021."},{"key":"e_1_3_2_1_63_1","volume-title":"2nd","author":"Office of the Privacy\u00a0Commission","year":"2021"},{"key":"e_1_3_2_1_64_1","unstructured":"Office of\u00a0the Australian Information Commissioner\u00a0(OAIC). 2014. Mobile Privacy: A Better Practice Guide for Mobile App Developers. https:\/\/www.oaic.gov.au\/privacy\/guidance-and-advice\/mobile-privacy-a-better-practice-guide-for-mobile-app-developers\/ last accessed on: Feb. 2nd 2021.  Office of\u00a0the Australian Information Commissioner\u00a0(OAIC). 2014. Mobile Privacy: A Better Practice Guide for Mobile App Developers. https:\/\/www.oaic.gov.au\/privacy\/guidance-and-advice\/mobile-privacy-a-better-practice-guide-for-mobile-app-developers\/ last accessed on: Feb. 2nd 2021."},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.5555\/951949.952071"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1145\/3270101.3270102"},{"key":"e_1_3_2_1_67_1","unstructured":"Nicolas Papernot Fartash Faghri Nicholas Carlini Ian Goodfellow and Reuben\u00a0Feinman et al.. 2018. Technical Report on the CleverHans v2.1.0 Adversarial Examples Library. arXiv:arXiv:1610.007682https:\/\/github.com\/cleverhans-lab\/cleverhans.  Nicolas Papernot Fartash Faghri Nicholas Carlini Ian Goodfellow and Reuben\u00a0Feinman et al.. 2018. Technical Report on the CleverHans v2.1.0 Adversarial Examples Library. arXiv:arXiv:1610.007682https:\/\/github.com\/cleverhans-lab\/cleverhans."},{"key":"e_1_3_2_1_68_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2018.00035"},{"key":"e_1_3_2_1_69_1","unstructured":"Nicolas Papernot and Patrick\u00a0D. McDaniel. 2018. Deep K-Nearest Neighbors: Towards Confident Interpretable and Robust Deep Learning. arxiv:1803.04765http:\/\/arxiv.org\/abs\/1803.04765  Nicolas Papernot and Patrick\u00a0D. McDaniel. 2018. Deep K-Nearest Neighbors: Towards Confident Interpretable and Robust Deep Learning. arxiv:1803.04765http:\/\/arxiv.org\/abs\/1803.04765"},{"key":"e_1_3_2_1_70_1","doi-asserted-by":"publisher","DOI":"10.5555\/1953048.2078195"},{"key":"e_1_3_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.1145\/3171533.3171539"},{"key":"e_1_3_2_1_72_1","doi-asserted-by":"crossref","unstructured":"Jonas Rauber Roland Zimmermann Matthias Bethge and Wieland Brendel. 2020. Foolbox Native: Fast adversarial attacks to benchmark the robustness of machine learning models in PyTorch TensorFlow and JAX. In Journal of Open Source Software Vol.\u00a05 53. The Open Journal [] 2607. https:\/\/doi.org\/10.21105\/joss.02607 https:\/\/github.com\/bethgelab\/foolbox.  Jonas Rauber Roland Zimmermann Matthias Bethge and Wieland Brendel. 2020. Foolbox Native: Fast adversarial attacks to benchmark the robustness of machine learning models in PyTorch TensorFlow and JAX. In Journal of Open Source Software Vol.\u00a05 53. The Open Journal [] 2607. https:\/\/doi.org\/10.21105\/joss.02607 https:\/\/github.com\/bethgelab\/foolbox.","DOI":"10.21105\/joss.02607"},{"key":"e_1_3_2_1_73_1","unstructured":"Theo Ryffel Andrew Trask Morten Dahl Bobby Wagner Jason Mancuso Daniel Rueckert and Jonathan Passerat-Palmbach. 2018. A generic framework for privacy preserving deep learning. arxiv:1811.04017\u00a0[cs.LG] https:\/\/github.com\/OpenMined\/PySyft.  Theo Ryffel Andrew Trask Morten Dahl Bobby Wagner Jason Mancuso Daniel Rueckert and Jonathan Passerat-Palmbach. 2018. A generic framework for privacy preserving deep learning. arxiv:1811.04017\u00a0[cs.LG] https:\/\/github.com\/OpenMined\/PySyft."},{"key":"e_1_3_2_1_74_1","doi-asserted-by":"publisher","DOI":"10.5555\/2818754.2818836"},{"key":"e_1_3_2_1_75_1","doi-asserted-by":"publisher","DOI":"10.1109\/35.312842"},{"key":"e_1_3_2_1_76_1","unstructured":"Educational\u00a0Testing Service. 2019. factor_analyzer: Open source Python module to perform exploratory and factor analysis. https:\/\/factor-analyzer.readthedocs.io\/en\/latest\/index.html\/.  Educational\u00a0Testing Service. 2019. factor_analyzer: Open source Python module to perform exploratory and factor analysis. https:\/\/factor-analyzer.readthedocs.io\/en\/latest\/index.html\/."},{"key":"e_1_3_2_1_77_1","doi-asserted-by":"publisher","DOI":"10.1109\/THS.2018.8574124"},{"key":"e_1_3_2_1_78_1","doi-asserted-by":"publisher","DOI":"10.1145\/2786805.2786812"},{"key":"e_1_3_2_1_79_1","doi-asserted-by":"publisher","DOI":"10.5555\/2028996"},{"key":"e_1_3_2_1_80_1","volume-title":"2nd","author":"State of California Department of Justice. 2018.","year":"2021"},{"key":"e_1_3_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1145\/1453101.1453117"},{"key":"e_1_3_2_1_82_1","doi-asserted-by":"publisher","DOI":"10.1145\/3442188.3445934"},{"key":"e_1_3_2_1_83_1","doi-asserted-by":"publisher","DOI":"10.1145\/1414004.1414055"},{"key":"e_1_3_2_1_84_1","doi-asserted-by":"publisher","DOI":"10.1145\/3078971.3078974"},{"key":"e_1_3_2_1_85_1","doi-asserted-by":"publisher","DOI":"10.5555\/1593511"},{"key":"e_1_3_2_1_86_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.is.2012.11.005"},{"key":"e_1_3_2_1_87_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.is.2012.11.005"},{"key":"e_1_3_2_1_88_1","unstructured":"Michael Veale Reuben Binns and Lilian Edwards. 2018. Algorithms that Remember: Model Inversion Attacks and Data Protection Law. CoRR abs\/1807.04644(2018) 15. arxiv:1807.04644http:\/\/arxiv.org\/abs\/1807.04644  Michael Veale Reuben Binns and Lilian Edwards. 2018. Algorithms that Remember: Model Inversion Attacks and Data Protection Law. CoRR abs\/1807.04644(2018) 15. arxiv:1807.04644http:\/\/arxiv.org\/abs\/1807.04644"},{"key":"e_1_3_2_1_89_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2006.103"},{"key":"e_1_3_2_1_90_1","doi-asserted-by":"publisher","DOI":"10.1038\/s41592-019-0686-2"},{"key":"e_1_3_2_1_91_1","doi-asserted-by":"publisher","DOI":"10.5555\/3152676"},{"key":"e_1_3_2_1_92_1","volume-title":"What is the best programming language for Machine Learning?https:\/\/towardsdatascience.com\/what-is-the-best-programming-language-for-machine-learning-a745c156d6b7, last accessed on: April 7th","author":"Voskoglou Christina","year":"2021"},{"key":"e_1_3_2_1_93_1","unstructured":"Christopher Waites. 2019. PyVacy: Towards Practical Differential Privacy for Deep Learning. http:\/\/hdl.handle.net\/1853\/61412 last accessed on: Feb. 2nd 2021.  Christopher Waites. 2019. PyVacy: Towards Practical Differential Privacy for Deep Learning. http:\/\/hdl.handle.net\/1853\/61412 last accessed on: Feb. 2nd 2021."},{"key":"e_1_3_2_1_94_1","unstructured":"Royce\u00a0J Wilson Celia\u00a0Yuxin Zhang William Lam Damien Desfontaines Daniel Simmons-Marengo and Bryant Gipson. 2019. Differentially Private SQL with Bounded User Contribution. arxiv:1909.01917\u00a0[cs.CR] https:\/\/github.com\/google\/differential-privacy.  Royce\u00a0J Wilson Celia\u00a0Yuxin Zhang William Lam Damien Desfontaines Daniel Simmons-Marengo and Bryant Gipson. 2019. Differentially Private SQL with Bounded User Contribution. arxiv:1909.01917\u00a0[cs.CR] https:\/\/github.com\/google\/differential-privacy."},{"key":"e_1_3_2_1_95_1","doi-asserted-by":"publisher","DOI":"10.1145\/1595676.1595691"},{"key":"e_1_3_2_1_96_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0034-4257(02)00197-9"}],"event":{"name":"MuC '21: Mensch und Computer 2021","location":"Ingolstadt Germany","acronym":"MuC '21"},"container-title":["Mensch und Computer 2021"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3473856.3473869","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3473856.3473869","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T21:31:26Z","timestamp":1750195886000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3473856.3473869"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,9,5]]},"references-count":96,"alternative-id":["10.1145\/3473856.3473869","10.1145\/3473856"],"URL":"https:\/\/doi.org\/10.1145\/3473856.3473869","relation":{},"subject":[],"published":{"date-parts":[[2021,9,5]]}}}