{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,18]],"date-time":"2026-06-18T20:02:44Z","timestamp":1781812964393,"version":"3.54.5"},"publisher-location":"New York, NY, USA","reference-count":41,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,12,6]],"date-time":"2021-12-06T00:00:00Z","timestamp":1638748800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,12,6]]},"DOI":"10.1145\/3485832.3485921","type":"proceedings-article","created":{"date-parts":[[2021,12,6]],"date-time":"2021-12-06T13:42:32Z","timestamp":1638798152000},"page":"260-272","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":14,"title":["Try before You Buy: Privacy-preserving Data Evaluation on Cloud-based Machine Learning Data Marketplace"],"prefix":"10.1145","author":[{"given":"Qiyang","family":"Song","sequence":"first","affiliation":[{"name":"George Mason University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiahao","family":"Cao","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kun","family":"Sun","sequence":"additional","affiliation":[{"name":"George Mason University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Qi","family":"Li","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ke","family":"Xu","sequence":"additional","affiliation":[{"name":"Tsinghua University"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,12,6]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"IACR International Workshop on Public Key Cryptography. Springer, 733\u2013751","author":"Abdalla","unstructured":"Abdalla, Michel et al.2015. Simple functional encryption schemes for inner products. In IACR International Workshop on Public Key Cryptography. Springer, 733\u2013751."},{"key":"e_1_3_2_1_2_1","volume-title":"IACR International Workshop on Public Key Cryptography. Springer, 777\u2013798","author":"Agrawal","unstructured":"Agrawal, Shashank et al.2015. On the practical security of inner product functional encryption. In IACR International Workshop on Public Key Cryptography. Springer, 777\u2013798."},{"key":"e_1_3_2_1_3_1","unstructured":"Bdex. 2018. First-ever Data Exchange Platform. https:\/\/www.bdex.com\/"},{"key":"e_1_3_2_1_4_1","volume-title":"Software Grand Exposure:SGX Cache Attacks Are Practical. In 11th USENIX Workshop on Offensive Technologies.","author":"Brasser","unstructured":"Brasser, Ferdinand et al.2017. Software Grand Exposure:SGX Cache Attacks Are Practical. In 11th USENIX Workshop on Offensive Technologies."},{"key":"e_1_3_2_1_5_1","unstructured":"Campbell Colin et al.2000. Query learning with large margin classifiers. In ICML Vol.\u00a020. 0."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.2001.959888"},{"key":"e_1_3_2_1_7_1","volume-title":"Herv\u00e9 et al.2017. Privacy-preserving classification on deep neural network.IACR Cryptology ePrint Archive 2017","author":"Chabanne","year":"2017","unstructured":"Chabanne, Herv\u00e9 et al.2017. Privacy-preserving classification on deep neural network.IACR Cryptology ePrint Archive 2017 (2017), 35."},{"key":"e_1_3_2_1_8_1","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, 668\u2013679","author":"David","unstructured":"David Cash et al.2015. Leakage-Abuse Attacks Against Searchable Encryption. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, 668\u2013679."},{"key":"e_1_3_2_1_9_1","unstructured":"Dawex. 2019. Orchestrate data circulation with Data Exchange technology. https:\/\/www.dawex.com\/"},{"key":"e_1_3_2_1_10_1","unstructured":"Du Simon S et al.2018. On the power of over-parametrization in neural networks with quadratic activation. arXiv preprint arXiv:1803.01206(2018)."},{"key":"e_1_3_2_1_11_1","unstructured":"[11] An end-to-end open source machine\u00a0learning platform.2019. https:\/\/www.tensorflow.org\/"},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, 1322\u20131333","author":"Fredrikson","unstructured":"Fredrikson, Matt et al.2015. Model inversion attacks that exploit confidence information and basic countermeasures. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, 1322\u20131333."},{"key":"e_1_3_2_1_13_1","volume-title":"Yoav et al.1997. Selective sampling using the query by committee algorithm. Machine learning 28, 2-3","author":"Freund","year":"1997","unstructured":"Freund, Yoav et al.1997. Selective sampling using the query by committee algorithm. Machine learning 28, 2-3 (1997), 133\u2013168."},{"key":"e_1_3_2_1_14_1","volume-title":"International Conference on Machine Learning. 201\u2013210","author":"Gilad-Bachrach","unstructured":"Gilad-Bachrach, Ran et al.2016. Cryptonets: Applying neural networks to encrypted data with high throughput and accuracy. In International Conference on Machine Learning. 201\u2013210."},{"key":"e_1_3_2_1_15_1","volume-title":"Speech recognition in noisy environments: A survey. Speech communication 16, 3","author":"Gong Yifan","year":"1995","unstructured":"Yifan Gong. 1995. Speech recognition in noisy environments: A survey. Speech communication 16, 3 (1995), 261\u2013291."},{"key":"e_1_3_2_1_16_1","volume-title":"International Conference on Information Security and Cryptology. Springer.","author":"Graepel","unstructured":"Graepel, Thore et al.2012. ML confidential: Machine learning on encrypted data. In International Conference on Information Security and Cryptology. Springer."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.14778\/3229863.3236266"},{"key":"e_1_3_2_1_18_1","unstructured":"IOTA. 2018. making it possible to securely store and sell. https:\/\/data.iota.org\/"},{"key":"e_1_3_2_1_19_1","volume-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. ACM, 1209\u20131222","author":"Jiang","unstructured":"Jiang, Xiaoqian et al.2018. Secure outsourced matrix computation and application to neural networks. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. ACM, 1209\u20131222."},{"key":"e_1_3_2_1_20_1","volume-title":"2009 IEEE Conference on Computer Vision and Pattern Recognition. IEEE, 2372\u20132379","author":"Ajay J","unstructured":"Joshi, Ajay J et al.2009. Multi-class active learning for image classification. In 2009 IEEE Conference on Computer Vision and Pattern Recognition. IEEE, 2372\u20132379."},{"key":"e_1_3_2_1_21_1","volume-title":"proceedings of the 2013 ACM SIGMOD international conference on management of data. ACM, 613\u2013624","author":"Koutris","unstructured":"Koutris, Paraschos et al.2013. Toward practical query pricing with QueryMarket. In proceedings of the 2013 ACM SIGMOD international conference on management of data. ACM, 613\u2013624."},{"key":"e_1_3_2_1_22_1","volume-title":"Yann et al.1998. Gradient-based learning applied to document recognition. 86, 11","year":"1998","unstructured":"LeCun, Yann et al.1998. Gradient-based learning applied to document recognition. 86, 11 (1998), 2278\u20132324."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.14778\/3297753.3297757"},{"key":"e_1_3_2_1_24_1","unstructured":"[24] The GNU Multiple Precision\u00a0Arithmetic Library.2018. https:\/\/gmplib.org\/"},{"key":"e_1_3_2_1_25_1","unstructured":"[25] The Pairing-Based\u00a0Cryptography Library.2018. https:\/\/crypto.stanford.edu\/pbc\/"},{"key":"e_1_3_2_1_26_1","unstructured":"Livni Roi et al.2014. On the computational efficiency of training neural networks. In Advances in neural information processing systems. 855\u2013863."},{"key":"e_1_3_2_1_27_1","volume-title":"2017 IEEE Symposium on Security and Privacy (SP). IEEE, 19\u201338","author":"Mohassel","unstructured":"Mohassel, Payman et al.2017. Secureml: A system for scalable privacy-preserving machine learning. In 2017 IEEE Symposium on Security and Privacy (SP). IEEE, 19\u201338."},{"key":"e_1_3_2_1_28_1","volume-title":"2014 IEEE Symposium on Security and Privacy. IEEE, 639\u2013654","author":"Naveed","unstructured":"Naveed, Muhammad et al.2014. Dynamic searchable encryption via blind storage. In 2014 IEEE Symposium on Security and Privacy. IEEE, 639\u2013654."},{"key":"e_1_3_2_1_29_1","volume-title":"Mining text data","author":"Nenkova","unstructured":"Nenkova, Ani et al.2012. A survey of text summarization techniques. In Mining text data. Springer, 43\u201376."},{"key":"e_1_3_2_1_30_1","unstructured":"[30] THE MNIST\u00a0DATABASE of\u00a0handwritten digits.2013. http:\/\/yann.lecun.com\/exdb\/mnist\/"},{"key":"e_1_3_2_1_31_1","first-page":"171","article-title":"XONN: XNOR-based Oblivious Deep Neural Network Inference.","volume":"2019","author":"Sadegh M","year":"2019","unstructured":"Riazi, M Sadegh and Samragh, Mohammad et al.2019. XONN: XNOR-based Oblivious Deep Neural Network Inference.IACR Cryptology ePrint Archive 2019 (2019), 171.","journal-title":"IACR Cryptology ePrint Archive"},{"key":"e_1_3_2_1_32_1","volume-title":"Proceedings of the 55th Annual Design Automation Conference. ACM.","unstructured":"Rouhani, Bita Darvish et al.2018. Deepsecure: Scalable provably-secure deep learning. In Proceedings of the 55th Annual Design Automation Conference. ACM."},{"key":"e_1_3_2_1_33_1","article-title":"Encryption Policies for Regulating Access to Outsourced Data","volume":"35","author":"SABRINA DE CAPITANI DI VIMERCATI","year":"2010","unstructured":"SABRINA DE CAPITANI DI VIMERCATI et al.2010. Encryption Policies for Regulating Access to Outsourced Data. ACM Transactions on Database Systems 35, 2 (2010), P.12.1\u201312.46.","journal-title":"ACM Transactions on Database Systems"},{"key":"e_1_3_2_1_34_1","volume-title":"International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment. Springer, 3\u201324","author":"Schwarz","unstructured":"Schwarz, Michael et al.2017. Malware guard extension: Using SGX to conceal cache attacks. In International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment. Springer, 3\u201324."},{"key":"e_1_3_2_1_35_1","volume-title":"International Conference on Machine Learning. PMLR, 9389\u20139398","author":"Schwarzschild Avi","year":"2021","unstructured":"Avi Schwarzschild, Micah Goldblum, Arjun Gupta, John\u00a0P Dickerson, and Tom Goldstein. 2021. Just how toxic is data poisoning? a unified benchmark for backdoor and data poisoning attacks. In International Conference on Machine Learning. PMLR, 9389\u20139398."},{"key":"e_1_3_2_1_36_1","volume-title":"Nicu et al.2005. Machine learning in computer vision. Vol.\u00a029","author":"Sebe","unstructured":"Sebe, Nicu et al.2005. Machine learning in computer vision. Vol.\u00a029. Springer Science & Business Media."},{"key":"e_1_3_2_1_37_1","unstructured":"Burr Settles. 2009. Active learning literature survey. Technical Report. University of Wisconsin-Madison Department of Computer Sciences."},{"key":"e_1_3_2_1_38_1","volume-title":"Nigel P et al.2014. Fully homomorphic SIMD operations. Designs, codes and cryptography 71, 1","author":"Smart","year":"2014","unstructured":"Smart, Nigel P et al.2014. Fully homomorphic SIMD operations. Designs, codes and cryptography 71, 1 (2014), 57\u201381."},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2016.32"},{"key":"e_1_3_2_1_40_1","volume-title":"2015 IEEE Symposium on Security and Privacy. IEEE, 640\u2013656","author":"Xu","unstructured":"Xu, Yuanzhong et al.2015. Controlled-channel attacks: Deterministic side channels for untrusted operating systems. In 2015 IEEE Symposium on Security and Privacy. IEEE, 640\u2013656."},{"key":"e_1_3_2_1_41_1","volume-title":"Zibin et al.2013. Service-generated big data and big data-as-a-service: an overview. In 2013 IEEE international congress on Big Data","author":"Zheng","unstructured":"Zheng, Zibin et al.2013. Service-generated big data and big data-as-a-service: an overview. In 2013 IEEE international congress on Big Data. IEEE, 403\u2013410."}],"event":{"name":"ACSAC '21: Annual Computer Security Applications Conference","location":"Virtual Event USA","acronym":"ACSAC '21"},"container-title":["Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3485832.3485921","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3485832.3485921","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T19:14:16Z","timestamp":1755890056000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3485832.3485921"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,12,6]]},"references-count":41,"alternative-id":["10.1145\/3485832.3485921","10.1145\/3485832"],"URL":"https:\/\/doi.org\/10.1145\/3485832.3485921","relation":{},"subject":[],"published":{"date-parts":[[2021,12,6]]},"assertion":[{"value":"2021-12-06","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}