{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,11]],"date-time":"2026-07-11T17:30:40Z","timestamp":1783791040879,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":59,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,12,5]],"date-time":"2022-12-05T00:00:00Z","timestamp":1670198400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"National Science Foundation","award":["CCF-2006748"],"award-info":[{"award-number":["CCF-2006748"]}]},{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["CCF-2011236"],"award-info":[{"award-number":["CCF-2011236"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,12,5]]},"DOI":"10.1145\/3564625.3567986","type":"proceedings-article","created":{"date-parts":[[2022,12,3]],"date-time":"2022-12-03T01:01:29Z","timestamp":1670029289000},"page":"669-683","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":6,"title":["NeuGuard: Lightweight Neuron-Guided Defense against Membership Inference Attacks"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6148-2830","authenticated-orcid":false,"given":"Nuo","family":"Xu","sequence":"first","affiliation":[{"name":"Lehigh University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5616-060X","authenticated-orcid":false,"given":"Binghui","family":"Wang","sequence":"additional","affiliation":[{"name":"Illinois Institute of Technology, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6112-5013","authenticated-orcid":false,"given":"Ran","family":"Ran","sequence":"additional","affiliation":[{"name":"Lehigh University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3440-1905","authenticated-orcid":false,"given":"Wujie","family":"Wen","sequence":"additional","affiliation":[{"name":"Lehigh University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0999-3331","authenticated-orcid":false,"given":"Parv","family":"Venkitasubramaniam","sequence":"additional","affiliation":[{"name":"Lehigh University, United States of America"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,12,5]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"e_1_3_2_1_2_1","volume-title":"International conference on machine learning. PMLR, 274\u2013283","author":"Athalye Anish","year":"2018","unstructured":"Anish Athalye , Nicholas Carlini , and David Wagner . 2018 . Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples . In International conference on machine learning. PMLR, 274\u2013283 . Anish Athalye, Nicholas Carlini, and David Wagner. 2018. Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples. In International conference on machine learning. PMLR, 274\u2013283."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"crossref","unstructured":"Nicholas Carlini and David Wagner. 2017. Towards evaluating the robustness of neural networks. In 2017 ieee symposium on security and privacy (sp).  Nicholas Carlini and David Wagner. 2017. Towards evaluating the robustness of neural networks. In 2017 ieee symposium on security and privacy (sp).","DOI":"10.1109\/SP.2017.49"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417238"},{"key":"e_1_3_2_1_5_1","volume-title":"International Conference on Machine Learning. PMLR","author":"Choquette-Choo A","year":"2021","unstructured":"Christopher\u00a0 A Choquette-Choo , Florian Tramer , Nicholas Carlini , and Nicolas Papernot . 2021 . Label-only membership inference attacks . In International Conference on Machine Learning. PMLR , 1964\u20131974. Christopher\u00a0A Choquette-Choo, Florian Tramer, Nicholas Carlini, and Nicolas Papernot. 2021. Label-only membership inference attacks. In International Conference on Machine Learning. PMLR, 1964\u20131974."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2022-0050"},{"key":"e_1_3_2_1_7_1","volume-title":"Theory of cryptography conference","author":"Dwork Cynthia","unstructured":"Cynthia Dwork , Frank McSherry , Kobbi Nissim , and Adam Smith . 2006. Calibrating noise to sensitivity in private data analysis . In Theory of cryptography conference . Springer , 265\u2013284. Cynthia Dwork, Frank McSherry, Kobbi Nissim, and Adam Smith. 2006. Calibrating noise to sensitivity in private data analysis. In Theory of cryptography conference. Springer, 265\u2013284."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"e_1_3_2_1_9_1","volume-title":"23rd {USENIX} Security Symposium.","author":"Fredrikson Matthew","unstructured":"Matthew Fredrikson , Eric Lantz , Somesh Jha , Simon Lin , David Page , and Thomas Ristenpart . 2014. Privacy in pharmacogenetics: An end-to-end case study of personalized warfarin dosing . In 23rd {USENIX} Security Symposium. Matthew Fredrikson, Eric Lantz, Somesh Jha, Simon Lin, David Page, and Thomas Ristenpart. 2014. Privacy in pharmacogenetics: An end-to-end case study of personalized warfarin dosing. In 23rd {USENIX} Security Symposium."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0008"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.14778\/3407790.3407794"},{"key":"e_1_3_2_1_12_1","unstructured":"Geoffrey Hinton Oriol Vinyals and Jeff Dean. 2015. Distilling the knowledge in a neural network. arXiv preprint arXiv:1503.02531(2015).  Geoffrey Hinton Oriol Vinyals and Jeff Dean. 2015. Distilling the knowledge in a neural network. arXiv preprint arXiv:1503.02531(2015)."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24293"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00001"},{"key":"e_1_3_2_1_15_1","volume-title":"28th {USENIX} Security Symposium.","author":"Jayaraman Bargav","unstructured":"Bargav Jayaraman and David Evans . 2019. Evaluating differentially private machine learning in practice . In 28th {USENIX} Security Symposium. Bargav Jayaraman and David Evans. 2019. Evaluating differentially private machine learning in practice. In 28th {USENIX} Security Symposium."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363201"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3038912.3052695"},{"key":"e_1_3_2_1_18_1","volume-title":"International Conference on Machine Learning. PMLR, 5345\u20135355","author":"Kaya Yigitcan","year":"2021","unstructured":"Yigitcan Kaya and Tudor Dumitras . 2021 . When Does Data Augmentation Help With Membership Inference Attacks? . In International Conference on Machine Learning. PMLR, 5345\u20135355 . Yigitcan Kaya and Tudor Dumitras. 2021. When Does Data Augmentation Help With Membership Inference Attacks?. In International Conference on Machine Learning. PMLR, 5345\u20135355."},{"key":"e_1_3_2_1_19_1","unstructured":"Nikos Komodakis and Sergey Zagoruyko. 2017. Paying more attention to attention: improving the performance of convolutional neural networks via attention transfer. In ICLR.  Nikos Komodakis and Sergey Zagoruyko. 2017. Paying more attention to attention: improving the performance of convolutional neural networks via attention transfer. In ICLR."},{"key":"e_1_3_2_1_20_1","unstructured":"Alex Krizhevsky Geoffrey Hinton 2009. Learning multiple layers of features from tiny images. (2009).  Alex Krizhevsky Geoffrey Hinton 2009. Learning multiple layers of features from tiny images. (2009)."},{"key":"e_1_3_2_1_21_1","volume-title":"Imagenet classification with deep convolutional neural networks. Advances in neural information processing systems 25","author":"Krizhevsky Alex","year":"2012","unstructured":"Alex Krizhevsky , Ilya Sutskever , and Geoffrey\u00a0 E Hinton . 2012. Imagenet classification with deep convolutional neural networks. Advances in neural information processing systems 25 ( 2012 ), 1097\u20131105. Alex Krizhevsky, Ilya Sutskever, and Geoffrey\u00a0E Hinton. 2012. Imagenet classification with deep convolutional neural networks. Advances in neural information processing systems 25 (2012), 1097\u20131105."},{"key":"e_1_3_2_1_22_1","volume-title":"29th {USENIX} Security Symposium ({USENIX} Security 20). 1605\u20131622.","author":"Leino Klas","unstructured":"Klas Leino and Matt Fredrikson . 2020. Stolen memories: Leveraging model memorization for calibrated white-box membership inference . In 29th {USENIX} Security Symposium ({USENIX} Security 20). 1605\u20131622. Klas Leino and Matt Fredrikson. 2020. Stolen memories: Leveraging model memorization for calibrated white-box membership inference. In 29th {USENIX} Security Symposium ({USENIX} Security 20). 1605\u20131622."},{"issue":"2","key":"e_1_3_2_1_23_1","first-page":"48","article-title":"Markov chains and mixing times. Vol.\u00a0107. 2nd. rev. ed. (AMS, 2017)","volume":"4","author":"Levin A","year":"2017","unstructured":"David\u00a0 A Levin and Yuval Peres . 2017 . Markov chains and mixing times. Vol.\u00a0107. 2nd. rev. ed. (AMS, 2017) , Proposition 4 . 2 , p. 48 . American Mathematical Soc. David\u00a0A Levin and Yuval Peres. 2017. Markov chains and mixing times. Vol.\u00a0107. 2nd. rev. ed. (AMS, 2017), Proposition 4.2, p. 48. American Mathematical Soc.","journal-title":"Proposition"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484575"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDM.2019.00056"},{"key":"e_1_3_2_1_26_1","volume-title":"Information theory, inference and learning algorithms","author":"MacKay JC","unstructured":"David\u00a0 JC MacKay and David\u00a0 JC Mac\u00a0Kay . 2003. Information theory, inference and learning algorithms . Cambridge university press . David\u00a0JC MacKay and David\u00a0JC Mac\u00a0Kay. 2003. Information theory, inference and learning algorithms. Cambridge university press."},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00029"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"e_1_3_2_1_29_1","volume-title":"When does label smoothing help?Advances in Neural Information Processing Systems","author":"M\u00fcller Rafael","year":"2019","unstructured":"Rafael M\u00fcller , Simon Kornblith , and Geoffrey\u00a0 E Hinton . 2019. When does label smoothing help?Advances in Neural Information Processing Systems ( 2019 ). Rafael M\u00fcller, Simon Kornblith, and Geoffrey\u00a0E Hinton. 2019. When does label smoothing help?Advances in Neural Information Processing Systems (2019)."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243855"},{"key":"e_1_3_2_1_31_1","volume-title":"2019 IEEE symposium on security and privacy (SP). IEEE, 739\u2013753","author":"Shokri Milad","year":"2019","unstructured":"Nasr, Milad and Shokri , Reza and Houmansadr , Amir. 2019 . Comprehensive privacy analysis of deep learning: Passive and active white-box inference attacks against centralized and federated learning . In 2019 IEEE symposium on security and privacy (SP). IEEE, 739\u2013753 . Nasr, Milad and Shokri, Reza and Houmansadr, Amir. 2019. Comprehensive privacy analysis of deep learning: Passive and active white-box inference attacks against centralized and federated learning. In 2019 IEEE symposium on security and privacy (SP). IEEE, 739\u2013753."},{"key":"e_1_3_2_1_32_1","unstructured":"NDIA. 2022. National Defense Magazine. https:\/\/www.nationaldefensemagazine.org.  NDIA. 2022. National Defense Magazine. https:\/\/www.nationaldefensemagazine.org."},{"key":"e_1_3_2_1_33_1","volume-title":"Impact of Adversarial Examples on Deep Learning Models for Biomedical Image Segmentation. In International Conference on Medical Image Computing and Computer-Assisted Intervention. Springer, 300\u2013308","author":"Ozbulak Utku","year":"2019","unstructured":"Utku Ozbulak , Arnout Van\u00a0Messem , and Wesley De\u00a0Neve . 2019 . Impact of Adversarial Examples on Deep Learning Models for Biomedical Image Segmentation. In International Conference on Medical Image Computing and Computer-Assisted Intervention. Springer, 300\u2013308 . Utku Ozbulak, Arnout Van\u00a0Messem, and Wesley De\u00a0Neve. 2019. Impact of Adversarial Examples on Deep Learning Models for Biomedical Image Segmentation. In International Conference on Medical Image Computing and Computer-Assisted Intervention. Springer, 300\u2013308."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/ASP-DAC47756.2020.9045662"},{"key":"e_1_3_2_1_35_1","volume-title":"Pytorch: An imperative style, high-performance deep learning library. Advances in neural information processing systems 32","author":"Paszke Adam","year":"2019","unstructured":"Adam Paszke , Sam Gross , Francisco Massa , Adam Lerer , James Bradbury , Gregory Chanan , Trevor Killeen , Zeming Lin , Natalia Gimelshein , Luca Antiga , 2019 . Pytorch: An imperative style, high-performance deep learning library. Advances in neural information processing systems 32 (2019), 8026\u20138037. Adam Paszke, Sam Gross, Francisco Massa, Adam Lerer, James Bradbury, Gregory Chanan, Trevor Killeen, Zeming Lin, Natalia Gimelshein, Luca Antiga, 2019. Pytorch: An imperative style, high-performance deep learning library. Advances in neural information processing systems 32 (2019), 8026\u20138037."},{"key":"e_1_3_2_1_36_1","first-page":"61","article-title":"Membership Inference Attack against Differentially Private Deep Learning","volume":"11","author":"Rahman Md\u00a0Atiqur","year":"2018","unstructured":"Md\u00a0Atiqur Rahman , Tanzila Rahman , Robert Lagani\u00e8re , Noman Mohammed , and Yang Wang . 2018 . Membership Inference Attack against Differentially Private Deep Learning Model.Trans. Data Priv. 11 , 1 (2018), 61 \u2013 79 . Md\u00a0Atiqur Rahman, Tanzila Rahman, Robert Lagani\u00e8re, Noman Mohammed, and Yang Wang. 2018. Membership Inference Attack against Differentially Private Deep Learning Model.Trans. Data Priv. 11, 1 (2018), 61\u201379.","journal-title":"Model.Trans. Data Priv."},{"key":"e_1_3_2_1_37_1","volume-title":"Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. arXiv preprint arXiv:1806.01246(2018).","author":"Salem Ahmed","year":"2018","unstructured":"Ahmed Salem , Yang Zhang , Mathias Humbert , Pascal Berrang , Mario Fritz , and Michael Backes . 2018 . Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. arXiv preprint arXiv:1806.01246(2018). Ahmed Salem, Yang Zhang, Mathias Humbert, Pascal Berrang, Mario Fritz, and Michael Backes. 2018. Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. arXiv preprint arXiv:1806.01246(2018)."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i11.17150"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_2_1_40_1","volume-title":"30th {USENIX} Security Symposium.","author":"Song Liwei","unstructured":"Liwei Song and Prateek Mittal . 2021. Systematic evaluation of privacy risks of machine learning models . In 30th {USENIX} Security Symposium. Liwei Song and Prateek Mittal. 2021. Systematic evaluation of privacy risks of machine learning models. In 30th {USENIX} Security Symposium."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2019.00021"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354211"},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/GlobalSIP.2013.6736861"},{"key":"e_1_3_2_1_44_1","volume-title":"Dropout: a simple way to prevent neural networks from overfitting. The journal of machine learning research 15, 1","author":"Srivastava Nitish","year":"2014","unstructured":"Nitish Srivastava , Geoffrey Hinton , Alex Krizhevsky , Ilya Sutskever , and Ruslan Salakhutdinov . 2014. Dropout: a simple way to prevent neural networks from overfitting. The journal of machine learning research 15, 1 ( 2014 ), 1929\u20131958. Nitish Srivastava, Geoffrey Hinton, Alex Krizhevsky, Ilya Sutskever, and Ruslan Salakhutdinov. 2014. Dropout: a simple way to prevent neural networks from overfitting. The journal of machine learning research 15, 1 (2014), 1929\u20131958."},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.308"},{"key":"e_1_3_2_1_46_1","volume-title":"Geometry: the language of space and form","author":"Tabak John","unstructured":"John Tabak . 2014. Geometry: the language of space and form . Infobase Publishing . John Tabak. 2014. Geometry: the language of space and form. Infobase Publishing."},{"key":"e_1_3_2_1_47_1","unstructured":"Xinyu Tang Saeed Mahloujifar Liwei Song Virat Shejwalkar Milad Nasr Amir Houmansadr and Prateek Mittal. 2021. Mitigating Membership Inference Attacks by Self-Distillation Through a Novel Ensemble Architecture. arXiv preprint arXiv:2110.08324(2021).  Xinyu Tang Saeed Mahloujifar Liwei Song Virat Shejwalkar Milad Nasr Amir Houmansadr and Prateek Mittal. 2021. Mitigating Membership Inference Attacks by Self-Distillation Through a Novel Ensemble Architecture. arXiv preprint arXiv:2110.08324(2021)."},{"key":"e_1_3_2_1_48_1","unstructured":"Texas. 2017. Texas hospital stays dataset.https:\/\/www.dshs.texas.gov\/THCIC\/Hospitals\/Download.shtm.  Texas. 2017. Texas hospital stays dataset.https:\/\/www.dshs.texas.gov\/THCIC\/Hospitals\/Download.shtm."},{"key":"e_1_3_2_1_49_1","volume-title":"25th {USENIX} Security Symposium ({USENIX} Security 16). 601\u2013618.","author":"Tram\u00e8r Florian","unstructured":"Florian Tram\u00e8r , Fan Zhang , Ari Juels , Michael\u00a0 K Reiter , and Thomas Ristenpart . 2016. Stealing machine learning models via prediction apis . In 25th {USENIX} Security Symposium ({USENIX} Security 16). 601\u2013618. Florian Tram\u00e8r, Fan Zhang, Ari Juels, Michael\u00a0K Reiter, and Thomas Ristenpart. 2016. Stealing machine learning models via prediction apis. In 25th {USENIX} Security Symposium ({USENIX} Security 16). 601\u2013618."},{"key":"e_1_3_2_1_50_1","unstructured":"Stacey Truex Ling Liu Mehmet\u00a0Emre Gursoy Lei Yu and Wenqi Wei. 2018. Towards demystifying membership inference attacks. arXiv preprint arXiv:1807.09173(2018).  Stacey Truex Ling Liu Mehmet\u00a0Emre Gursoy Lei Yu and Wenqi Wei. 2018. Towards demystifying membership inference attacks. arXiv preprint arXiv:1807.09173(2018)."},{"key":"e_1_3_2_1_51_1","volume-title":"Demystifying membership inference attacks in machine learning as a service","author":"Truex Stacey","year":"2019","unstructured":"Stacey Truex , Ling Liu , Mehmet\u00a0Emre Gursoy , Lei Yu , and Wenqi Wei . 2019. Demystifying membership inference attacks in machine learning as a service . IEEE Transactions on Services Computing( 2019 ). Stacey Truex, Ling Liu, Mehmet\u00a0Emre Gursoy, Lei Yu, and Wenqi Wei. 2019. Demystifying membership inference attacks in machine learning as a service. IEEE Transactions on Services Computing(2019)."},{"key":"e_1_3_2_1_52_1","unstructured":"Allyson Versprille. 2015. Researchers hack into driverless car system take control of vehicle. National Defense Magazine(2015).  Allyson Versprille. 2015. Researchers hack into driverless car system take control of vehicle. National Defense Magazine(2015)."},{"key":"e_1_3_2_1_53_1","unstructured":"Huan Wang Can Qin Yulun Zhang and Yun Fu. 2020. Neural pruning via growing regularization. arXiv preprint arXiv:2012.09243(2020).  Huan Wang Can Qin Yulun Zhang and Yun Fu. 2020. Neural pruning via growing regularization. arXiv preprint arXiv:2012.09243(2020)."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1109\/HiPC.2019.00037"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00019"},{"key":"e_1_3_2_1_57_1","unstructured":"Xiaoyong Yuan and Lan Zhang. 2022. Membership Inference Attacks and Defenses in Neural Network Pruning. In Usenix Security.  Xiaoyong Yuan and Lan Zhang. 2022. Membership Inference Attacks and Defenses in Neural Network Pruning. In Usenix Security."},{"key":"e_1_3_2_1_58_1","unstructured":"Chiyuan Zhang Samy Bengio Moritz Hardt Benjamin Recht and Oriol Vinyals. 2016. Understanding deep learning requires rethinking generalization. arXiv preprint arXiv:1611.03530(2016).  Chiyuan Zhang Samy Bengio Moritz Hardt Benjamin Recht and Oriol Vinyals. 2016. Understanding deep learning requires rethinking generalization. arXiv preprint arXiv:1611.03530(2016)."},{"key":"e_1_3_2_1_59_1","unstructured":"Tao Zhuang Zhixuan Zhang Yuheng Huang Xiaoyi Zeng Kai Shuang and Xiang Li. 2020. Neuron-level Structured Pruning using Polarization Regularizer.. In NeurIPS.  Tao Zhuang Zhixuan Zhang Yuheng Huang Xiaoyi Zeng Kai Shuang and Xiang Li. 2020. Neuron-level Structured Pruning using Polarization Regularizer.. In NeurIPS."}],"event":{"name":"ACSAC: Annual Computer Security Applications Conference","location":"Austin TX USA","acronym":"ACSAC"},"container-title":["Proceedings of the 38th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3564625.3567986","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3564625.3567986","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3564625.3567986","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T18:09:12Z","timestamp":1750183752000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3564625.3567986"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,12,5]]},"references-count":59,"alternative-id":["10.1145\/3564625.3567986","10.1145\/3564625"],"URL":"https:\/\/doi.org\/10.1145\/3564625.3567986","relation":{},"subject":[],"published":{"date-parts":[[2022,12,5]]},"assertion":[{"value":"2022-12-05","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}