{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,22]],"date-time":"2026-04-22T20:20:17Z","timestamp":1776889217654,"version":"3.51.2"},"publisher-location":"New York, NY, USA","reference-count":53,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,7,1]],"date-time":"2024-07-01T00:00:00Z","timestamp":1719792000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["OAC-2320999"],"award-info":[{"award-number":["OAC-2320999"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["CNS-2120279"],"award-info":[{"award-number":["CNS-2120279"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["CNS-2153358"],"award-info":[{"award-number":["CNS-2153358"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["DUE-2153358"],"award-info":[{"award-number":["DUE-2153358"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"name":"DoD Center of Excellence in AI and Machine Learning (CoE-AIML)","award":["W911NF-20-2-0277"],"award-info":[{"award-number":["W911NF-20-2-0277"]}]},{"name":"Commonwealth Cyber Initiative"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,7]]},"DOI":"10.1145\/3634737.3637680","type":"proceedings-article","created":{"date-parts":[[2024,6,28]],"date-time":"2024-06-28T11:51:38Z","timestamp":1719575498000},"page":"1034-1048","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["MOSAIC: A Prune-and-Assemble Approach for Efficient Model Pruning in Privacy-Preserving Deep Learning"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1372-656X","authenticated-orcid":false,"given":"Yifei","family":"Cai","sequence":"first","affiliation":[{"name":"Old Dominion University, Norfolk, VA, United States of America"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7752-0528","authenticated-orcid":false,"given":"Qiao","family":"Zhang","sequence":"additional","affiliation":[{"name":"Chongqing University, Chongqin, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4050-6252","authenticated-orcid":false,"given":"Rui","family":"Ning","sequence":"additional","affiliation":[{"name":"Old Dominion University, Norfolk, VA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5575-2849","authenticated-orcid":false,"given":"Chunsheng","family":"Xin","sequence":"additional","affiliation":[{"name":"Old Dominion University, Norfolk, VA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6112-9313","authenticated-orcid":false,"given":"Hongyi","family":"Wu","sequence":"additional","affiliation":[{"name":"University of Arizona, Tucson, AZ, United States of America"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"crossref","unstructured":"Martin Albrecht Melissa Chase Hao Chen Jintai Ding Shafi Goldwasser Sergey Gorbunov Shai Halevi Jeffrey Hoffstein Kim Laine Kristin Lauter et al. 2021. Homomorphic encryption standard. Protecting privacy through homomorphic encryption (2021) 31--62.","DOI":"10.1007\/978-3-030-77287-1_2"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382279"},{"key":"e_1_3_2_1_3_1","volume-title":"Proceedings of the ARES. 1--10","author":"Boemer Fabian","year":"2020","unstructured":"Fabian Boemer, Rosario Cammarota, Daniel Demmler, Thomas Schneider, and Hossein Yalame. 2020. MP2ML: a mixed-protocol machine learning framework for private inference. In Proceedings of the ARES. 1--10."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-32009-5_50"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-36362-7_1"},{"key":"e_1_3_2_1_6_1","volume-title":"Proceedings of the EUROCRYPT. 234--238","author":"Brassard Gilles","year":"1986","unstructured":"Gilles Brassard, Claude Cr\u00e9peau, and Jean-Marc Robert. 1986. All-or-nothing disclosure of secrets. In Proceedings of the EUROCRYPT. 234--238."},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of the 2022 ACM on Asia Conference on Computer and Communications Security. 931--945","author":"Cai Yifei","year":"2022","unstructured":"Yifei Cai, Qiao Zhang, Rui Ning, Chunsheng Xin, and Hongyi Wu. 2022. Hunter: He-friendly structured pruning for efficient privacy-preserving deep learning. In Proceedings of the 2022 ACM on Asia Conference on Computer and Communications Security. 931--945."},{"key":"e_1_3_2_1_8_1","first-page":"19637","article-title":"Only train once: A one-shot neural network training and pruning framework","volume":"34","author":"Chen Tianyi","year":"2021","unstructured":"Tianyi Chen, Bo Ji, Tianyu Ding, Biyi Fang, Guanyi Wang, Zhihui Zhu, Luming Liang, Yixin Shi, Sheng Yi, and Xiao Tu. 2021. Only train once: A one-shot neural network training and pruning framework. Advances in Neural Information Processing Systems 34 (2021), 19637--19651.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-70694-8_15"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23113"},{"key":"e_1_3_2_1_11_1","unstructured":"Junfeng Fan and Frederik Vercauteren. 2012. Somewhat practical fully homomorphic encryption. IACR Cryptol. ePrint Arch. (2012) 144."},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the ICML. 201--210","author":"Gilad-Bachrach Ran","year":"2016","unstructured":"Ran Gilad-Bachrach, Nathan Dowlin, Kim Laine, Kristin Lauter, Michael Naehrig, and John Wernsing. 2016. Cryptonets: Applying neural networks to encrypted data with high throughput and accuracy. In Proceedings of the ICML. 201--210."},{"key":"e_1_3_2_1_13_1","volume-title":"Dynamic network surgery for efficient dnns. arXiv preprint arXiv:1608.04493","author":"Guo Yiwen","year":"2016","unstructured":"Yiwen Guo, Anbang Yao, and Yurong Chen. 2016. Dynamic network surgery for efficient dnns. arXiv preprint arXiv:1608.04493 (2016)."},{"key":"e_1_3_2_1_14_1","volume-title":"Llama: A low latency math library for secure inference. Cryptology ePrint Archive","author":"Gupta Kanav","year":"2022","unstructured":"Kanav Gupta, Deepak Kumaraswamy, Nishanth Chandran, and Divya Gupta. 2022. Llama: A low latency math library for secure inference. Cryptology ePrint Archive (2022)."},{"key":"e_1_3_2_1_15_1","volume-title":"Efficient methods and hardware for deep learning. Ph. D. Dissertation","author":"Han Song","unstructured":"Song Han. 2017. Efficient methods and hardware for deep learning. Ph. D. Dissertation. Stanford University."},{"key":"e_1_3_2_1_16_1","volume-title":"Learning both weights and connections for efficient neural networks. arXiv preprint arXiv:1506.02626","author":"Han Song","year":"2015","unstructured":"Song Han, Jeff Pool, John Tran, and William J Dally. 2015. Learning both weights and connections for efficient neural networks. arXiv preprint arXiv:1506.02626 (2015)."},{"key":"e_1_3_2_1_17_1","first-page":"15718","article-title":"Iron: Private inference on transformers","volume":"35","author":"Hao Meng","year":"2022","unstructured":"Meng Hao, Hongwei Li, Hanxiao Chen, Pengzhi Xing, Guowen Xu, and Tianwei Zhang. 2022. Iron: Private inference on transformers. Advances in Neural Information Processing Systems 35 (2022), 15718--15731.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_3_2_1_19_1","volume-title":"31st USENIX Security Symposium (USENIX Security 22)","author":"Huang Zhicong","year":"2022","unstructured":"Zhicong Huang, Wen-jie Lu, Cheng Hong, and Jiansheng Ding. 2022. Cheetah: Lean and fast secure {two-party} deep neural network inference. In 31st USENIX Security Symposium (USENIX Security 22). 809--826."},{"key":"e_1_3_2_1_20_1","unstructured":"Huelse. 2023. Microsoft SEAL 4.X For Python. https:\/\/github.com\/Huelse\/SEAL-Python"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243837"},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of the USENIX Security. 1651--1669","author":"Juvekar Chiraag","year":"2018","unstructured":"Chiraag Juvekar, Vinod Vaikuntanathan, and Anantha Chandrakasan. 2018. {GAZELLE}: A low latency framework for secure neural network inference. In Proceedings of the USENIX Security. 1651--1669."},{"key":"e_1_3_2_1_23_1","unstructured":"Alex Krizhevsky Geoffrey Hinton et al. 2009. Learning multiple layers of features from tiny images. (2009)."},{"key":"e_1_3_2_1_24_1","first-page":"1097","article-title":"Imagenet classification with deep convolutional neural networks","volume":"25","author":"Krizhevsky Alex","year":"2012","unstructured":"Alex Krizhevsky, Ilya Sutskever, and Geoffrey E Hinton. 2012. Imagenet classification with deep convolutional neural networks. Proceedings of the NeurIPS 25 (2012), 1097--1105.","journal-title":"Proceedings of the NeurIPS"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00092"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.298"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the USENIX Security. 2505--2522","author":"Mishra Pratyush","year":"2020","unstructured":"Pratyush Mishra, Ryan Lehmkuhl, Akshayaram Srinivasan, Wenting Zheng, and Raluca Ada Popa. 2020. Delphi: A Cryptographic Inference Service for Neural Networks. In Proceedings of the USENIX Security. 2505--2522."},{"key":"e_1_3_2_1_30_1","volume-title":"Proceedings of the ACM SIGSAC. 35--52","author":"Mohassel Payman","year":"2018","unstructured":"Payman Mohassel and Peter Rindal. 2018. ABY3: A mixed protocol framework for machine learning. In Proceedings of the ACM SIGSAC. 35--52."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"e_1_3_2_1_32_1","volume-title":"Seal-embedded: A homomorphic encryption library for the internet of things. IACR Transactions on Cryptographic Hardware and Embedded Systems","author":"Natarajan Deepika","year":"2021","unstructured":"Deepika Natarajan and Wei Dai. 2021. Seal-embedded: A homomorphic encryption library for the internet of things. IACR Transactions on Cryptographic Hardware and Embedded Systems (2021), 756--779."},{"key":"e_1_3_2_1_33_1","volume-title":"Proceedings of the USENIX Security.","author":"Ng Lucien KL","year":"2021","unstructured":"Lucien KL Ng and Sherman SM Chow. 2021. GForce: GPU-Friendly Oblivious and Rapid Neural Network Inference. In Proceedings of the USENIX Security."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-48910-X_16"},{"key":"e_1_3_2_1_35_1","volume-title":"Chanan","author":"Paszke Adam","year":"2019","unstructured":"Adam Paszke, Sam Gross, Francisco Massa, Adam Lerer, James Bradbury, and et al Chanan. 2019. PyTorch: An Imperative Style, High-Performance Deep Learning Library. In Advances in Neural Information Processing Systems 32. Curran Associates, Inc., 8024--8035. http:\/\/papers.neurips.cc\/paper\/9015-pytorch-an-imperative-style-high-performance-deep-learning-library.pdf"},{"key":"e_1_3_2_1_36_1","volume-title":"Proceedings of the USENIX Security.","author":"Patra Arpita","year":"2021","unstructured":"Arpita Patra, Thomas Schneider, Ajith Suresh, and Hossein Yalame. 2021. ABY2. 0: Improved mixed-protocol secure two-party computation. In Proceedings of the USENIX Security."},{"key":"e_1_3_2_1_37_1","volume-title":"BLAZE: blazing fast privacy-preserving machine learning. arXiv preprint arXiv:2005.09042","author":"Patra Arpita","year":"2020","unstructured":"Arpita Patra and Ajith Suresh. 2020. BLAZE: blazing fast privacy-preserving machine learning. arXiv preprint arXiv:2005.09042 (2020)."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417274"},{"key":"e_1_3_2_1_39_1","volume-title":"USENIX Security Symposium. 1501--1518","author":"Riazi M Sadegh","year":"2019","unstructured":"M Sadegh Riazi, Mohammad Samragh, Hao Chen, Kim Laine, Kristin E Lauter, and Farinaz Koushanfar. 2019. XONN: XNOR-based Oblivious Deep Neural Network Inference.. In USENIX Security Symposium. 1501--1518."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196522"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3195970.3196023"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298682"},{"key":"e_1_3_2_1_43_1","volume-title":"https:\/\/github.com\/Microsoft\/SEAL. Microsoft Research","author":"SEAL","unstructured":"SEAL 2019. Microsoft SEAL (release 3.3). https:\/\/github.com\/Microsoft\/SEAL. Microsoft Research, Redmond, WA.."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/359168.359176"},{"key":"e_1_3_2_1_45_1","volume-title":"Very deep convolutional networks for large-scale image recognition. arXiv preprint arXiv:1409.1556","author":"Simonyan Karen","year":"2014","unstructured":"Karen Simonyan and Andrew Zisserman. 2014. Very deep convolutional networks for large-scale image recognition. arXiv preprint arXiv:1409.1556 (2014)."},{"key":"e_1_3_2_1_46_1","unstructured":"Stanford.edu. 2015. Tiny ImageNet Dataset. http:\/\/cs231n.stanford.edu"},{"key":"e_1_3_2_1_47_1","volume-title":"CRYPTGPU: Fast Privacy-Preserving Machine Learning on the GPU. arXiv preprint arXiv:2104.10949","author":"Tan Sijun","year":"2021","unstructured":"Sijun Tan, Brian Knott, Yuan Tian, and David J Wu. 2021. CRYPTGPU: Fast Privacy-Preserving Machine Learning on the GPU. arXiv preprint arXiv:2104.10949 (2021)."},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0035"},{"key":"e_1_3_2_1_49_1","volume-title":"Falcon: Honest-majority maliciously secure framework for private deep learning. arXiv preprint arXiv:2004.02229","author":"Wagh Sameer","year":"2020","unstructured":"Sameer Wagh, Shruti Tople, Fabrice Benhamouda, Eyal Kushilevitz, Prateek Mittal, and Tal Rabin. 2020. Falcon: Honest-majority maliciously secure framework for private deep learning. arXiv preprint arXiv:2004.02229 (2020)."},{"key":"e_1_3_2_1_50_1","volume-title":"Teck Khim Ng, and Beng Chin Ooi","author":"Wang Wei","year":"2018","unstructured":"Wei Wang, Sheng Wang, Jinyang Gao, Meihui Zhang, Gang Chen, Teck Khim Ng, and Beng Chin Ooi. 2018. Rafiki: Machine learning as an analytics service system. arXiv preprint arXiv:1804.06087 (2018)."},{"key":"e_1_3_2_1_51_1","first-page":"2074","article-title":"Learning structured sparsity in deep neural networks","volume":"29","author":"Wen Wei","year":"2016","unstructured":"Wei Wen, Chunpeng Wu, Yandan Wang, Yiran Chen, and Hai Li. 2016. Learning structured sparsity in deep neural networks. Proceedings of the NeurIPS 29 (2016), 2074--2082.","journal-title":"Proceedings of the NeurIPS"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2018\/547"},{"key":"e_1_3_2_1_53_1","volume-title":"GALA: Greedy ComputAtion for Linear Algebra in Privacy-Preserved Neural Networks. arXiv preprint arXiv:2105.01827","author":"Zhang Qiao","year":"2021","unstructured":"Qiao Zhang, Chunsheng Xin, and Hongyi Wu. 2021. GALA: Greedy ComputAtion for Linear Algebra in Privacy-Preserved Neural Networks. arXiv preprint arXiv:2105.01827 (2021)."}],"event":{"name":"ASIA CCS '24: 19th ACM Asia Conference on Computer and Communications Security","location":"Singapore Singapore","acronym":"ASIA CCS '24","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 19th ACM Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3634737.3637680","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T23:44:06Z","timestamp":1750290246000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3634737.3637680"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,7]]},"references-count":53,"alternative-id":["10.1145\/3634737.3637680","10.1145\/3634737"],"URL":"https:\/\/doi.org\/10.1145\/3634737.3637680","relation":{},"subject":[],"published":{"date-parts":[[2024,7]]},"assertion":[{"value":"2024-07-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}