{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,10]],"date-time":"2026-07-10T20:05:51Z","timestamp":1783713951092,"version":"3.55.0"},"reference-count":134,"publisher":"Association for Computing Machinery (ACM)","issue":"12","license":[{"start":{"date-parts":[[2024,10,3]],"date-time":"2024-10-03T00:00:00Z","timestamp":1727913600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"National Key Research and Development Program of China","award":["2022YFB2701400"],"award-info":[{"award-number":["2022YFB2701400"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2024,12,31]]},"abstract":"<jats:p>Nowadays, with the development of artificial intelligence (AI), privacy issues attract wide attention from society and individuals. It is desirable to make the data available but invisible, i.e., to realize data analysis and calculation without disclosing the data to unauthorized entities. Federated learning (FL) has emerged as a promising privacy-preserving computation method for AI. However, new privacy issues have arisen in FL-based application, because various inference attacks can still infer relevant information about the raw data from local models or gradients. This will directly lead to the privacy disclosure. Therefore, it is critical to resist these attacks to achieve complete privacy-preserving computation. In light of the overwhelming variety and a multitude of privacy-preserving computation protocols, we survey these protocols from a series of perspectives to supply better comprehension for researchers and scholars. Concretely, the classification of attacks is discussed, including four kinds of inference attacks as well as malicious server and poisoning attack. Besides, this article systematically captures the state-of-the-art of privacy-preserving computation protocols by analyzing the design rationale, reproducing the experiment of classic schemes, and evaluating all discussed protocols in terms of efficiency and security properties. Finally, this survey identifies a number of interesting future directions.<\/jats:p>","DOI":"10.1145\/3679013","type":"journal-article","created":{"date-parts":[[2024,7,22]],"date-time":"2024-07-22T10:56:16Z","timestamp":1721645776000},"page":"1-36","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":203,"title":["When Federated Learning Meets Privacy-Preserving Computation"],"prefix":"10.1145","volume":"56","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-7931-7558","authenticated-orcid":false,"given":"Jingxue","family":"Chen","sequence":"first","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-5675-0406","authenticated-orcid":false,"given":"Hang","family":"Yan","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-6243-9118","authenticated-orcid":false,"given":"Zhiyuan","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-5618-9148","authenticated-orcid":false,"given":"Min","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6137-6667","authenticated-orcid":false,"given":"Hu","family":"Xiong","sequence":"additional","affiliation":[{"name":"School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4485-6743","authenticated-orcid":false,"given":"Shui","family":"Yu","sequence":"additional","affiliation":[{"name":"School of Computer Science, University of Technology Sydney, Sydney, Australia"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,10,3]]},"reference":[{"key":"e_1_3_1_2_2","volume-title":"Artificial Intelligence a Modern Approach","author":"Russell Stuart J.","year":"2010","unstructured":"Stuart J. Russell. 2010. Artificial Intelligence a Modern Approach. Pearson Education, Inc."},{"key":"e_1_3_1_3_2","first-page":"1273","volume-title":"Proceedings of the 2017 Artificial Intelligence and Statistics","author":"McMahan Brendan","year":"2017","unstructured":"Brendan McMahan, Eider Moore, Daniel Ramage, Seth Hampson, and Blaise Aguera y Arcas. 2017. Communication-efficient learning of deep networks from decentralized data. In Proceedings of the 2017 Artificial Intelligence and Statistics. JMLR, 1273\u20131282. arXiv preprint arXiv:1602.05629."},{"key":"e_1_3_1_4_2","doi-asserted-by":"publisher","unstructured":"Jakub Kone\u010dn\u1ef3 H. Brendan McMahan Felix X. Yu Peter Richt\u00e1rik Ananda Theertha Suresh and Dave Bacon. 2017. Federated learning: Strategies for improving communication efficiency. DOI:10.48550\/arXiv.1610.05492","DOI":"10.48550\/arXiv.1610.05492"},{"key":"e_1_3_1_5_2","first-page":"374","article-title":"Towards federated learning at scale: System design","volume":"1","year":"2019","unstructured":"Keith Bonawitz, Hubert Eichner, Wolfgang Grieskamp, Dzmitry Huba, Alex Ingerman, Vladimir Ivanov, Chloe Kiddon, Jakub Konecny, Stefano Mazzocchi, H. Brendan McMahan, Timon Van Overveldt, David Petrou, Daniel Ramage, and Jason Roselander. 2019. Towards federated learning at scale: System design. Proc. Mach. Learn. Syst. 1 (2019), 374\u2013388.","journal-title":"Proc. Mach. Learn. Syst."},{"key":"e_1_3_1_6_2","doi-asserted-by":"crossref","first-page":"567","DOI":"10.1145\/3579856.3590327","volume-title":"Proceedings of the ACM Asia Conference on Computer and Communications Security","author":"Wang Weiqi","year":"2023","unstructured":"Weiqi Wang, Zhiyi Tian, Chenhan Zhang, An Liu, and Shui Yu. 2023. BFU: Bayesian federated unlearning with parameter self-sharing. In Proceedings of the ACM Asia Conference on Computer and Communications Security. 567\u2013578."},{"key":"e_1_3_1_7_2","first-page":"603","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Hitaj Briland","year":"2017","unstructured":"Briland Hitaj, Giuseppe Ateniese, and Fernando Perez-Cruz. 2017. Deep models under the GAN: Information leakage from collaborative deep learning. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 603\u2013618."},{"issue":"5","key":"e_1_3_1_8_2","doi-asserted-by":"crossref","first-page":"1333","DOI":"10.1109\/TIFS.2017.2787987","article-title":"Privacy-preserving deep learning via additively homomorphic encryption","volume":"13","author":"Phong Le Trieu","year":"2017","unstructured":"Le Trieu Phong, Yoshinori Aono, Takuya Hayashi, Lihua Wang, Shiho Moriai, et\u00a0al. 2017. Privacy-preserving deep learning via additively homomorphic encryption. IEEE Trans. Inf. Forens. Secur. 13, 5 (2017), 1333\u20131345.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"key":"e_1_3_1_9_2","first-page":"2512","volume-title":"Proceedings of the IEEE Conference on Computer Communications","author":"Wang Zhibo","year":"2019","unstructured":"Zhibo Wang, Mengkai Song, Zhifei Zhang, Yang Song, Qian Wang, and Hairong Qi. 2019. Beyond inferring class representatives: User-level privacy leakage from federated learning. In Proceedings of the IEEE Conference on Computer Communications. IEEE, 2512\u20132520."},{"key":"e_1_3_1_10_2","first-page":"691","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Melis Luca","year":"2019","unstructured":"Luca Melis, Congzheng Song, Emiliano De Cristofaro, and Vitaly Shmatikov. 2019. Exploiting unintended feature leakage in collaborative learning. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 691\u2013706."},{"key":"e_1_3_1_11_2","first-page":"739","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Nasr Milad","year":"2019","unstructured":"Milad Nasr, Reza Shokri, and Amir Houmansadr. 2019. Comprehensive privacy analysis of deep learning: Passive and active white-box inference attacks against centralized and federated learning. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 739\u2013753."},{"issue":"4","key":"e_1_3_1_12_2","doi-asserted-by":"crossref","first-page":"242","DOI":"10.1109\/MNET.001.1900506","article-title":"On safeguarding privacy and security in the framework of federated learning","volume":"34","author":"Ma Chuan","year":"2020","unstructured":"Chuan Ma, Jun Li, Ming Ding, Howard H. Yang, Feng Shu, Tony Q. S. Quek, and H. Vincent Poor. 2020. On safeguarding privacy and security in the framework of federated learning. IEEE Netw. 34, 4 (2020), 242\u2013248.","journal-title":"IEEE Netw."},{"issue":"3152676","key":"e_1_3_1_13_2","first-page":"10","article-title":"The EU general data protection regulation (GDPR)","volume":"10","author":"Voigt Paul","year":"2017","unstructured":"Paul Voigt and Axel Von dem Bussche. 2017. The EU general data protection regulation (GDPR). A Practical Guide, 1st Ed., Cham: Springer International Publishing 10, 3152676 (2017), 10\u20135555. https:\/\/gdpr-info.eu\/","journal-title":"A Practical Guide, 1st Ed., Cham: Springer International Publishing"},{"issue":"5","key":"e_1_3_1_14_2","doi-asserted-by":"crossref","first-page":"554","DOI":"10.1016\/j.clsr.2013.07.010","article-title":"The Singapore personal data protection act and an assessment of future trends in data privacy reform","volume":"29","author":"Chik Warren B.","year":"2013","unstructured":"Warren B. Chik. 2013. The Singapore personal data protection act and an assessment of future trends in data privacy reform. Comput. Law .Secur. Rev. 29, 5 (2013), 554\u2013575.","journal-title":"Comput. Law .Secur. Rev."},{"key":"e_1_3_1_15_2","unstructured":"Big Data UN Global Working Group. 2019. UN Handbook on Privacy-preserving Computation Techniques. http:\/\/publications.officialstatistics.org\/handbooks\/privacy-preserving-techniques-handbook\/UN%20Handbook%20for%20Privacy-Preserving%20Techniques.pdf"},{"issue":"6","key":"e_1_3_1_16_2","doi-asserted-by":"crossref","first-page":"1179","DOI":"10.1016\/j.eng.2019.09.002","article-title":"Privacy computing: Concept, computing framework, and future development trends","volume":"5","author":"Li Fenghua","year":"2019","unstructured":"Fenghua Li, Hui Li, Ben Niu, and Jinjun Chen. 2019. Privacy computing: Concept, computing framework, and future development trends. Engineering 5, 6 (2019), 1179\u20131192.","journal-title":"Engineering"},{"key":"e_1_3_1_17_2","first-page":"1","volume-title":"Proceedings of the CHI Conference on Human Factors in Computing Systems","author":"Agrawal Nitin","year":"2021","unstructured":"Nitin Agrawal, Reuben Binns, Max Van Kleek, Kim Laine, and Nigel Shadbolt. 2021. Exploring design and governance challenges in the development of privacy-preserving computation. In Proceedings of the CHI Conference on Human Factors in Computing Systems. 1\u201313."},{"issue":"4","key":"e_1_3_1_18_2","doi-asserted-by":"crossref","first-page":"2384","DOI":"10.1109\/COMST.2021.3108618","article-title":"Security and privacy for 6G: A survey on prospective technologies and challenges","volume":"23","author":"Nguyen Vanlinh","year":"2021","unstructured":"Vanlinh Nguyen, Poching Lin, Bochao Cheng, Renhung Hwang, and Yingdar Lin. 2021. Security and privacy for 6G: A survey on prospective technologies and challenges. IEEE Commun. Surv. Tutor. 23, 4 (2021), 2384\u20132428.","journal-title":"IEEE Commun. Surv. Tutor."},{"issue":"3","key":"e_1_3_1_19_2","doi-asserted-by":"crossref","first-page":"8","DOI":"10.1109\/MCE.2019.2959108","article-title":"Preserving data privacy via federated learning: Challenges and solutions","volume":"9","author":"Li Zengpeng","year":"2020","unstructured":"Zengpeng Li, Vishal Sharma, and Saraju P. Mohanty. 2020. Preserving data privacy via federated learning: Challenges and solutions. IEEE Consum. Electron. Mag. 9, 3 (2020), 8\u201316.","journal-title":"IEEE Consum. Electron. Mag."},{"issue":"6","key":"e_1_3_1_20_2","first-page":"1","article-title":"A comprehensive survey of privacy-preserving federated learning: A taxonomy, review, and future directions","volume":"54","author":"Yin Xuefei","year":"2021","unstructured":"Xuefei Yin, Yanming Zhu, and Jiankun Hu. 2021. A comprehensive survey of privacy-preserving federated learning: A taxonomy, review, and future directions. Comput. Surv. 54, 6 (2021), 1\u201336.","journal-title":"Comput. Surv."},{"key":"e_1_3_1_21_2","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1016\/j.eng.2021.12.002","article-title":"Federated learning for 6G: Applications, challenges, and opportunities","volume":"8","author":"Yang Zhaohui","year":"2022","unstructured":"Zhaohui Yang, Mingzhe Chen, Kai-Kit Wong, H. Vincent Poor, and Shuguang Cui. 2022. Federated learning for 6G: Applications, challenges, and opportunities. Engineering 8 (2022), 33\u201341.","journal-title":"Engineering"},{"issue":"4","key":"e_1_3_1_22_2","doi-asserted-by":"crossref","first-page":"2694","DOI":"10.1109\/COMST.2020.3011561","article-title":"When machine learning meets privacy in 6G: A survey","volume":"22","author":"Sun Yuanyuan","year":"2020","unstructured":"Yuanyuan Sun, Jiajia Liu, Jiadai Wang, Yurui Cao, and Nei Kato. 2020. When machine learning meets privacy in 6G: A survey. IEEE Commun. Surv. Tutor. 22, 4 (2020), 2694\u20132724.","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"e_1_3_1_23_2","first-page":"191","article-title":"Health insurance portability and accountability act of 1996","volume":"104","author":"Act Accountability","year":"1996","unstructured":"Accountability Act. 1996. Health insurance portability and accountability act of 1996. Pub. Law 104 (1996), 191.","journal-title":"Pub. Law"},{"issue":"12","key":"e_1_3_1_24_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3571156","article-title":"A comprehensive review of the state-of-the-art on security and privacy issues in healthcare","volume":"55","author":"Mart\u00ednez Antonio L\u00f3pez","year":"2023","unstructured":"Antonio L\u00f3pez Mart\u00ednez, Manuel Gil P\u00e9rez, and Antonio Ruiz-Mart\u00ednez. 2023. A comprehensive review of the state-of-the-art on security and privacy issues in healthcare. Comput. Surv. 55, 12 (2023), 1\u201338.","journal-title":"Comput. Surv."},{"key":"e_1_3_1_25_2","doi-asserted-by":"crossref","first-page":"101824","DOI":"10.1016\/j.inffus.2023.101824","article-title":"Privacy protection in intelligent vehicle networking: A novel federated learning algorithm based on information fusion","volume":"98","author":"Qu Zhiguo","year":"2023","unstructured":"Zhiguo Qu, Yang Tang, Ghulam Muhammad, and Prayag Tiwari. 2023. Privacy protection in intelligent vehicle networking: A novel federated learning algorithm based on information fusion. Inf. Fusion 98 (2023), 101824.","journal-title":"Inf. Fusion"},{"issue":"4","key":"e_1_3_1_26_2","doi-asserted-by":"crossref","first-page":"2170","DOI":"10.1109\/TETC.2020.2974183","article-title":"Lightweight privacy-preserving raw data publishing scheme","volume":"9","author":"Chen Jingxue","year":"2020","unstructured":"Jingxue Chen, Gao Liu, and Yining Liu. 2020. Lightweight privacy-preserving raw data publishing scheme. IEEE Trans. Emerg. Topics Comput. 9, 4 (2020), 2170\u20132174.","journal-title":"IEEE Trans. Emerg. Topics Comput."},{"issue":"4","key":"e_1_3_1_27_2","doi-asserted-by":"crossref","first-page":"9624","DOI":"10.1007\/s11356-022-22772-9","article-title":"Analysing the influence of foreign direct investment and urbanization on the development of private financial system and its ecological footprint","volume":"30","author":"Ponce Pablo","year":"2023","unstructured":"Pablo Ponce, Jos\u00e9 \u00c1lvarez-Garc\u00eda, Viviana \u00c1lvarez, and Muhammad Irfan. 2023. Analysing the influence of foreign direct investment and urbanization on the development of private financial system and its ecological footprint. Environ. Sci. Pollut. Res. 30, 4 (2023), 9624\u20139641.","journal-title":"Environ. Sci. Pollut. Res."},{"issue":"1","key":"e_1_3_1_28_2","doi-asserted-by":"crossref","first-page":"2899","DOI":"10.1038\/s41467-023-38569-4","article-title":"Decentralized federated learning through proxy model sharing","volume":"14","author":"Kalra Shivam","year":"2023","unstructured":"Shivam Kalra, Junfeng Wen, Jesse C. Cresswell, Maksims Volkovs, and Hamid R. Tizhoosh. 2023. Decentralized federated learning through proxy model sharing. Nat. Commun. 14, 1 (2023), 2899.","journal-title":"Nat. Commun."},{"key":"e_1_3_1_29_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3233519"},{"key":"e_1_3_1_30_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3329426"},{"key":"e_1_3_1_31_2","doi-asserted-by":"crossref","first-page":"1322","DOI":"10.1145\/2810103.2813677","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"Fredrikson Matt","year":"2015","unstructured":"Matt Fredrikson, Somesh Jha, and Thomas Ristenpart. 2015. Model inversion attacks that exploit confidence information and basic countermeasures. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. 1322\u20131333."},{"issue":"11","key":"e_1_3_1_32_2","doi-asserted-by":"crossref","first-page":"139","DOI":"10.1145\/3422622","article-title":"Generative adversarial networks","volume":"63","author":"Goodfellow Ian","year":"2020","unstructured":"Ian Goodfellow, Jean Pouget-Abadie, Mehdi Mirza, Bing Xu, David Warde-Farley, Sherjil Ozair, Aaron Courville, and Yoshua Bengio. 2020. Generative adversarial networks. Commun. ACM 63, 11 (2020), 139\u2013144.","journal-title":"Commun. ACM"},{"key":"e_1_3_1_33_2","first-page":"3","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Shokri Reza","year":"2017","unstructured":"Reza Shokri, Marco Stronati, Congzheng Song, and Vitaly Shmatikov. 2017. Membership inference attacks against machine learning models. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 3\u201318."},{"key":"e_1_3_1_34_2","doi-asserted-by":"publisher","unstructured":"Hanlin Lu Changchang Liu Ting He Shiqiang Wang and Kevin S. Chan. 2020. Sharing models or coresets: A study based on membership inference attack. DOI:10.48550\/arXiv.2007.02977","DOI":"10.48550\/arXiv.2007.02977"},{"issue":"6","key":"e_1_3_1_35_2","doi-asserted-by":"crossref","first-page":"2073","DOI":"10.1109\/TSC.2019.2897554","article-title":"Demystifying membership inference attacks in machine learning as a service","volume":"14","author":"Truex Stacey","year":"2019","unstructured":"Stacey Truex, Ling Liu, Mehmet Emre Gursoy, Lei Yu, and Wenqi Wei. 2019. Demystifying membership inference attacks in machine learning as a service. IEEE Trans. Serv. Comput. 14, 6 (2019), 2073\u20132089.","journal-title":"IEEE Trans. Serv. Comput."},{"key":"e_1_3_1_36_2","first-page":"825","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Malekzadeh Mohammad","year":"2021","unstructured":"Mohammad Malekzadeh, Anastasia Borovykh, and Deniz G\u00fcnd\u00fcz. 2021. Honest-but-curious nets: Sensitive attributes of private inputs can be secretly coded into the classifiers\u2019 outputs. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 825\u2013844."},{"issue":"3","key":"e_1_3_1_37_2","doi-asserted-by":"crossref","first-page":"137","DOI":"10.1504\/IJSN.2015.071829","article-title":"Hacking smart machines with smarter ones: How to extract meaningful data from machine learning classifiers","volume":"10","author":"Ateniese Giuseppe","year":"2015","unstructured":"Giuseppe Ateniese, Luigi V. Mancini, Angelo Spognardi, Antonio Villani, Domenico Vitali, and Giovanni Felici. 2015. Hacking smart machines with smarter ones: How to extract meaningful data from machine learning classifiers. Int. J. Secur. Netw. 10, 3 (2015), 137\u2013150.","journal-title":"Int. J. Secur. Netw."},{"key":"e_1_3_1_38_2","article-title":"Deep leakage from gradients","volume":"32","author":"Zhu Ligeng","year":"2019","unstructured":"Ligeng Zhu, Zhijian Liu, and Song Han. 2019. Deep leakage from gradients. Adv. Neural Inf. Process. Syst. 32 (2019), 14747\u201314756.","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"e_1_3_1_39_2","doi-asserted-by":"publisher","unstructured":"Akiyoshi Sannai. 2018. Reconstruction of training samples from loss functions. DOI:10.48550\/arXiv.1805.07337","DOI":"10.48550\/arXiv.1805.07337"},{"key":"e_1_3_1_40_2","doi-asserted-by":"publisher","unstructured":"Bo Zhao Konda Reddy Mopuri and Hakan Bilen. 2020. iDLG: Improved deep leakage from gradients. DOI:10.48550\/arXiv.2001.02610","DOI":"10.48550\/arXiv.2001.02610"},{"key":"e_1_3_1_41_2","first-page":"16937","article-title":"Inverting gradients\u2014How easy is it to break privacy in federated learning?","volume":"33","author":"Geiping Jonas","year":"2020","unstructured":"Jonas Geiping, Hartmut Bauermeister, Hannah Dr\u00f6ge, and Michael Moeller. 2020. Inverting gradients\u2014How easy is it to break privacy in federated learning?Adv. Neural Inf. Process. Syst. 33 (2020), 16937\u201316947.","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"e_1_3_1_42_2","first-page":"31","volume-title":"Proceedings of the Workshop on Privacy-preserving Machine Learning in Practice","author":"Xu Xiaoyun","year":"2020","unstructured":"Xiaoyun Xu, Jingzheng Wu, Mutian Yang, Tianyue Luo, Xu Duan, Weiheng Li, Yanjun Wu, and Bin Wu. 2020. Information leakage by model weights on federated learning. In Proceedings of the Workshop on Privacy-preserving Machine Learning in Practice. 31\u201336."},{"issue":"8","key":"e_1_3_1_43_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3551636","article-title":"A comprehensive survey on poisoning attacks and countermeasures in machine learning","volume":"55","author":"Tian Zhiyi","year":"2022","unstructured":"Zhiyi Tian, Lei Cui, Jie Liang, and Shui Yu. 2022. A comprehensive survey on poisoning attacks and countermeasures in machine learning. Comput. Surv. 55, 8 (2022), 1\u201335.","journal-title":"Comput. Surv."},{"key":"e_1_3_1_44_2","first-page":"4873","volume-title":"Proceedings of the IEEE International Conference on Communications (ICC\u201923)","author":"Wang Weiqi","year":"2023","unstructured":"Weiqi Wang, Chenhan Zhang, Shushu Liu, Mingjian Tang, An Liu, and Shui Yu. 2023. FedMC: Federated learning with mode connectivity against distributed backdoor attacks. In Proceedings of the IEEE International Conference on Communications (ICC\u201923). IEEE, 4873\u20134878."},{"key":"e_1_3_1_45_2","article-title":"Threats to federated learning: A survey","author":"Lyu Lingjuan","year":"2020","unstructured":"Lingjuan Lyu, Han Yu, and Qiang Yang. 2020. Threats to federated learning: A survey. arXiv preprint arXiv:2003.02133 (2020).","journal-title":"arXiv preprint arXiv:2003.02133"},{"key":"e_1_3_1_46_2","article-title":"Certified defenses for data poisoning attacks","volume":"30","author":"Steinhardt Jacob","year":"2017","unstructured":"Jacob Steinhardt, Pang Wei W. Koh, and Percy S. Liang. 2017. Certified defenses for data poisoning attacks. Adv. Neural Inf. Process. Syst. 30 (2017), 3517\u20133529.","journal-title":"Adv. Neural Inf. Process. Syst."},{"issue":"5","key":"e_1_3_1_47_2","first-page":"2029","article-title":"Shielding collaborative learning: Mitigating poisoning attacks through client-side detection","volume":"18","author":"Zhao Lingchen","year":"2020","unstructured":"Lingchen Zhao, Shengshan Hu, Qian Wang, Jianlin Jiang, Chao Shen, Xiangyang Luo, and Pengfei Hu. 2020. Shielding collaborative learning: Mitigating poisoning attacks through client-side detection. IEEE Trans. Depend. Secure Comput. 18, 5 (2020), 2029\u20132041.","journal-title":"IEEE Trans. Depend. Secure Comput."},{"key":"e_1_3_1_48_2","doi-asserted-by":"crossref","first-page":"103","DOI":"10.1145\/3128572.3140450","volume-title":"Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security","author":"Baracaldo Nathalie","year":"2017","unstructured":"Nathalie Baracaldo, Bryant Chen, Heiko Ludwig, and Jaehoon Amir Safavi. 2017. Mitigating poisoning attacks on machine learning models: A data provenance based approach. In Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security. 103\u2013110."},{"key":"e_1_3_1_49_2","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume":"30","author":"Blanchard Peva","year":"2017","unstructured":"Peva Blanchard, El Mahdi El Mhamdi, Rachid Guerraoui, and Julien Stainer. 2017. Machine learning with adversaries: Byzantine tolerant gradient descent. Adv. Neural Inf. Process. Syst. 30 (2017), 119\u2013129.","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"e_1_3_1_50_2","article-title":"DETOX: A redundancy-based framework for faster and more robust gradient aggregation","volume":"32","author":"Rajput Shashank","year":"2019","unstructured":"Shashank Rajput, Hongyi Wang, Zachary Charles, and Dimitris Papailiopoulos. 2019. DETOX: A redundancy-based framework for faster and more robust gradient aggregation. Adv. Neural Inf. Process. Syst. 32 (2019), 10320\u201310330.","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"e_1_3_1_51_2","doi-asserted-by":"publisher","unstructured":"Clement Fung Chris J. M. Yoon and Ivan Beschastnikh. 2018. Mitigating sybils in federated learning poisoning. DOI:10.48550\/arXiv.1808.04866","DOI":"10.48550\/arXiv.1808.04866"},{"issue":"2","key":"e_1_3_1_52_2","doi-asserted-by":"crossref","first-page":"72","DOI":"10.1109\/MWC.001.1900119","article-title":"Reliable federated learning for mobile networks","volume":"27","author":"Kang Jiawen","year":"2020","unstructured":"Jiawen Kang, Zehui Xiong, Dusit Niyato, Yuze Zou, Yang Zhang, and Mohsen Guizani. 2020. Reliable federated learning for mobile networks. IEEE Wirel. Commun. 27, 2 (2020), 72\u201380.","journal-title":"IEEE Wirel. Commun."},{"issue":"8","key":"e_1_3_1_53_2","doi-asserted-by":"crossref","first-page":"2074","DOI":"10.1109\/TPDS.2021.3056773","article-title":"Proof of federated learning: A novel energy-recycling consensus algorithm","volume":"32","author":"Qu Xidi","year":"2021","unstructured":"Xidi Qu, Shengling Wang, Qin Hu, and Xiuzhen Cheng. 2021. Proof of federated learning: A novel energy-recycling consensus algorithm. IEEE Trans. Parallel Distrib. Syst. 32, 8 (2021), 2074\u20132085.","journal-title":"IEEE Trans. Parallel Distrib. Syst."},{"issue":"6","key":"e_1_3_1_54_2","doi-asserted-by":"crossref","first-page":"5171","DOI":"10.1109\/JIOT.2020.2977383","article-title":"Decentralized privacy using blockchain-enabled federated learning in fog computing","volume":"7","author":"Qu Youyang","year":"2020","unstructured":"Youyang Qu, Longxiang Gao, Tom H. Luan, Yong Xiang, Shui Yu, Bai Li, and Gavin Zheng. 2020. Decentralized privacy using blockchain-enabled federated learning in fog computing. IEEE Internet Things J. 7, 6 (2020), 5171\u20135183.","journal-title":"IEEE Internet Things J."},{"issue":"4","key":"e_1_3_1_55_2","first-page":"2964","article-title":"A blockchained federated learning framework for cognitive computing in Industry 4.0 networks","volume":"17","author":"Qu Youyang","year":"2020","unstructured":"Youyang Qu, Shiva Raj Pokhrel, Sahil Garg, Longxiang Gao, and Yong Xiang. 2020. A blockchained federated learning framework for cognitive computing in Industry 4.0 networks. IEEE Trans. Industr. Inform. 17, 4 (2020), 2964\u20132973.","journal-title":"IEEE Trans. Industr. Inform."},{"issue":"3","key":"e_1_3_1_56_2","doi-asserted-by":"crossref","first-page":"1817","DOI":"10.1109\/JIOT.2020.3017377","article-title":"Privacy-preserving blockchain-based federated learning for IoT devices","volume":"8","author":"Zhao Yang","year":"2020","unstructured":"Yang Zhao, Jun Zhao, Linshan Jiang, Rui Tan, Dusit Niyato, Zengxiang Li, Lingjuan Lyu, and Yingbo Liu. 2020. Privacy-preserving blockchain-based federated learning for IoT devices. IEEE Internet Things J. 8, 3 (2020), 1817\u20131829.","journal-title":"IEEE Internet Things J."},{"issue":"7862","key":"e_1_3_1_57_2","doi-asserted-by":"crossref","first-page":"265","DOI":"10.1038\/s41586-021-03583-3","article-title":"Swarm learning for decentralized and confidential clinical machine learning","volume":"594","year":"2021","unstructured":"Stefanie Warnat-Herresthal, Hartmut Schultze, Krishnaprasad Lingadahalli Shastry, Sathyanarayanan Manamohan, Saikat Mukherjee, Vishesh Garg, Ravi Sarveswara, Kristian H\u00e4ndler, Peter Pickkers, N. Ahmad Aziz, Sofia Ktena, Florian Tran, Michael Bitzer, Stephan Ossowski, Nicolas Casadei, Christian Herr, Daniel Petersheim, Uta Behrends, Fabian Kern, Tobias Fehlmann, Philipp Schommers, Clara Lehmann, Max Augustin, Jan Rybniker, Janine Altm\u00fcller, Neha Mishra, Joana P. Bernardes, Benjamin Kr\u00e4mer, Lorenzo Bonaguro, Jonas Schulte-Schrepping, Elena De Domenico, Christian Siever, Michael Kraut, Milind Desai, Bruno Monnet, Maria Saridaki, Charles Martin Siegel, Anna Drews, Melanie Nuesch-Germano, Heidi Theis, Jan Heyckendorf, Stefan Schreiber, Sarah Kim-Hellmuth, Jacob Nattermann, Dirk Skowasch, Ingo Kurth, Andreas Keller, Robert Bals, Peter N\u00fcrnberg, Olaf Rie\u00df, Philip Rosenstiel, Mihai G. Netea, Fabian Theis, Sach Mukherjee, Michael Backes, Anna C. Aschenbrenner, Thomas Ulas, Monique M. B. Breteler, Evangelos J. Giamarellos-Bourboulis, Matthijs Kox, Matthias Becker, Sorin Cheran, Michael S. Woodacre, Eng Lim Goh, and Joachim L. Schultze. 2021. Swarm learning for decentralized and confidential clinical machine learning. Nature 594, 7862 (2021), 265\u2013270.","journal-title":"Nature"},{"issue":"07","key":"e_1_3_1_58_2","doi-asserted-by":"crossref","first-page":"1513","DOI":"10.1109\/TPDS.2020.3044223","article-title":"Biscotti: A blockchain system for private and secure federated learning","volume":"32","author":"Shayan Muhammad","year":"2021","unstructured":"Muhammad Shayan, Clement Fung, Chris J. M. Yoon, and Ivan Beschastnikh. 2021. Biscotti: A blockchain system for private and secure federated learning. IEEE Trans. Parallel Distrib. Syst. 32, 07 (2021), 1513\u20131525.","journal-title":"IEEE Trans. Parallel Distrib. Syst."},{"key":"e_1_3_1_59_2","first-page":"100593","article-title":"Industrial blockchain threshold signatures in federated learning for unified space-air-ground-sea model training","author":"Chen Jingxue","year":"2024","unstructured":"Jingxue Chen, Zengxiang Wang, Gautam Srivastava, Turki Ali Alghamdi, Fazlullah Khan, Saru Kumari, and Hu Xiong. 2024. Industrial blockchain threshold signatures in federated learning for unified space-air-ground-sea model training. J. Industr. Inf. Integ. 39 (2024), 100593.","journal-title":"J. Industr. Inf. Integ."},{"key":"e_1_3_1_60_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3176191"},{"issue":"5","key":"e_1_3_1_61_2","doi-asserted-by":"crossref","first-page":"1092","DOI":"10.1109\/TC.2021.3072033","article-title":"BAFL: A blockchain-based asynchronous federated learning framework","volume":"71","author":"Feng Lei","year":"2022","unstructured":"Lei Feng, Yiqi Zhao, Shaoyong Guo, Xuesong Qiu, Wenjing Li, and Peng Yu. 2022. BAFL: A blockchain-based asynchronous federated learning framework. IEEE Trans. Comput. 71, 5 (2022), 1092\u20131103.","journal-title":"IEEE Trans. Comput."},{"key":"e_1_3_1_62_2","first-page":"162","volume-title":"Proceedings of the 27th Annual Symposium on Foundations of Computer Science","author":"Yao Andrew Chi-Chih","year":"1986","unstructured":"Andrew Chi-Chih Yao. 1986. How to generate and exchange secrets. In Proceedings of the 27th Annual Symposium on Foundations of Computer Science. IEEE, 162\u2013167."},{"key":"e_1_3_1_63_2","doi-asserted-by":"crossref","first-page":"591","DOI":"10.1145\/2810103.2813705","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"Mohassel Payman","year":"2015","unstructured":"Payman Mohassel, Mike Rosulek, and Ye Zhang. 2015. Fast and secure three-party computation: The garbled circuit approach. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. 591\u2013602."},{"key":"e_1_3_1_64_2","first-page":"565","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Ball Marshall","year":"2016","unstructured":"Marshall Ball, Tal Malkin, and Mike Rosulek. 2016. Garbling gadgets for boolean and arithmetic circuits. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 565\u2013577."},{"key":"e_1_3_1_65_2","doi-asserted-by":"crossref","first-page":"307","DOI":"10.1145\/3335741","volume-title":"Providing Sound Foundations for Cryptography: On the Work of Shafi Goldwasser and Silvio Micali","author":"Goldreich Oded","year":"2019","unstructured":"Oded Goldreich, Silvio Micali, and Avi Wigderson. 2019. How to play any mental game, or a completeness theorem for protocols with honest majority. In Providing Sound Foundations for Cryptography: On the Work of Shafi Goldwasser and Silvio Micali. ACM, 307\u2013328."},{"key":"e_1_3_1_66_2","first-page":"351","volume-title":"Providing Sound Foundations for Cryptography: On the Work of Shafi Goldwasser and Silvio Micali","author":"Ben-Or Michael","year":"2019","unstructured":"Michael Ben-Or, Shafi Goldwasser, and Avi Wigderson. 2019. Completeness theorems for non-cryptographic fault-tolerant distributed computation. In Providing Sound Foundations for Cryptography: On the Work of Shafi Goldwasser and Silvio Micali. ACM, 351\u2013371."},{"issue":"11","key":"e_1_3_1_67_2","doi-asserted-by":"crossref","first-page":"612","DOI":"10.1145\/359168.359176","article-title":"How to share a secret","volume":"22","author":"Shamir Adi","year":"1979","unstructured":"Adi Shamir. 1979. How to share a secret. Commun. ACM 22, 11 (1979), 612\u2013613.","journal-title":"Commun. ACM"},{"key":"e_1_3_1_68_2","first-page":"531","volume-title":"Proceedings of the 24th USENIX Security Symposium","author":"Buescher Niklas","year":"2015","unstructured":"Niklas Buescher and Stefan Katzenbeisser. 2015. Faster secure computation through automatic parallelization. In Proceedings of the 24th USENIX Security Symposium. 531\u2013546."},{"key":"e_1_3_1_69_2","first-page":"805","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Araki Toshinori","year":"2016","unstructured":"Toshinori Araki, Jun Furukawa, Yehuda Lindell, Ariel Nof, and Kazuma Ohara. 2016. High-throughput semi-honest secure three-party computation with an honest majority. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 805\u2013817."},{"key":"e_1_3_1_70_2","first-page":"843","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Araki Toshinori","year":"2017","unstructured":"Toshinori Araki, Assi Barak, Jun Furukawa, Tamar Lichter, Yehuda Lindell, Ariel Nof, Kazuma Ohara, Adi Watzman, and Or Weinstein. 2017. Optimized honest-majority MPC for malicious adversaries\u2013breaking the 1 billion-gate per second barrier. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 843\u2013862."},{"key":"e_1_3_1_71_2","first-page":"302","volume-title":"Proceedings of the Annual International Cryptology Conference","author":"Boyle Elette","year":"2018","unstructured":"Elette Boyle, Yuval Ishai, and Antigoni Polychroniadou. 2018. Limits of practical sublinear secure computation. In Proceedings of the Annual International Cryptology Conference. Springer, 302\u2013332."},{"key":"e_1_3_1_72_2","volume-title":"Proceedings of the Network and Distributed System Security Symposium","author":"Chaudhari Harsh","year":"2019","unstructured":"Harsh Chaudhari, Rahul Rachuri, and Ajith Suresh. 2019. Trident: Efficient 4PC framework for privacy preserving machine learning. In Proceedings of the Network and Distributed System Security Symposium. DOI:10.48550\/arXiv.1912.02631"},{"key":"e_1_3_1_73_2","first-page":"1231","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Agrawal Nitin","year":"2019","unstructured":"Nitin Agrawal, Ali Shahin Shamsabadi, Matt J. Kusner, and Adri\u00e0 Gasc\u00f3n. 2019. QUOTIENT: Two-party secure neural network training and prediction. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 1231\u20131247."},{"key":"e_1_3_1_74_2","first-page":"1","volume-title":"Proceedings of the 55th Annual Design Automation Conference","author":"Rouhani Bita Darvish","year":"2018","unstructured":"Bita Darvish Rouhani, M. Sadegh Riazi, and Farinaz Koushanfar. 2018. DeepSecure: Scalable provably-secure deep learning. In Proceedings of the 55th Annual Design Automation Conference. 1\u20136."},{"key":"e_1_3_1_75_2","first-page":"19","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Mohassel Payman","year":"2017","unstructured":"Payman Mohassel and Yupeng Zhang. 2017. SecureML: A system for scalable privacy-preserving machine learning. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 19\u201338."},{"key":"e_1_3_1_76_2","doi-asserted-by":"publisher","unstructured":"Keith Bonawitz Vladimir Ivanov Ben Kreuter Antonio Marcedone H. Brendan McMahan Sarvar Patel Daniel Ramage Aaron Segal and Karn Seth. 2016. Practical secure aggregation for federated learning on user-held data. DOI:10.48550\/arXiv.1611.04482","DOI":"10.48550\/arXiv.1611.04482"},{"key":"e_1_3_1_77_2","first-page":"1175","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Bonawitz Keith","year":"2017","unstructured":"Keith Bonawitz, Vladimir Ivanov, Ben Kreuter, Antonio Marcedone, H. Brendan McMahan, Sarvar Patel, Daniel Ramage, Aaron Segal, and Karn Seth. 2017. Practical secure aggregation for privacy-preserving machine learning. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 1175\u20131191."},{"key":"e_1_3_1_78_2","first-page":"1736","article-title":"VeriFL: Communication-efficient and fast verifiable aggregation for federated learning","volume":"16","author":"Guo Xiaojie","year":"2020","unstructured":"Xiaojie Guo, Zheli Liu, Jin Li, Jiqiang Gao, Boyu Hou, Changyu Dong, and Thar Baker. 2020. VeriFL: Communication-efficient and fast verifiable aggregation for federated learning. IEEE Trans. Inf. Forens. Secur. 16 (2020), 1736\u20131751.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"key":"e_1_3_1_79_2","first-page":"911","article-title":"VerifyNet: Secure and verifiable federated learning","volume":"15","author":"Xu Guowen","year":"2019","unstructured":"Guowen Xu, Hongwei Li, Sen Liu, Kan Yang, and Xiaodong Lin. 2019. VerifyNet: Secure and verifiable federated learning. IEEE Trans. Inf. Forens. Secur. 15 (2019), 911\u2013926.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"key":"e_1_3_1_80_2","first-page":"1253","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Bell James Henry","year":"2020","unstructured":"James Henry Bell, Kallista A. Bonawitz, Adri\u00e0 Gasc\u00f3n, Tancr\u00e8de Lepoint, and Mariana Raykova. 2020. Secure single-server aggregation with (poly) logarithmic overhead. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 1253\u20131269. Retrieved from https:\/\/eprint.iacr.org\/2020\/704"},{"key":"e_1_3_1_81_2","first-page":"1442","volume-title":"Proceedings of the IEEE 37th International Conference on Distributed Computing Systems","author":"Zhang Xinyang","year":"2017","unstructured":"Xinyang Zhang, Shouling Ji, Hui Wang, and Ting Wang. 2017. Private, yet practical, multiparty deep learning. In Proceedings of the IEEE 37th International Conference on Distributed Computing Systems. IEEE, 1442\u20131452."},{"key":"e_1_3_1_82_2","volume-title":"Proceedings of the NeurIPS Workshop on Robust AI in Financial Services","author":"Mugunthan Vaikkunth","year":"2019","unstructured":"Vaikkunth Mugunthan, Antigoni Polychroniadou, David Byrd, and Tucker Hybinette Balch. 2019. SMPAI: Secure multi-party computation for federated learning. In Proceedings of the NeurIPS Workshop on Robust AI in Financial Services."},{"key":"e_1_3_1_83_2","article-title":"A hybrid approach to privacy-preserving federated learning","author":"Truex Nathalie Baracaldo, Stacey","year":"2019","unstructured":"Nathalie Baracaldo, Stacey Truex, Thomas Steinke, Ali Anwar, Rui Zhang, Heiko Ludwig, and Yi Zhou. 2019. A hybrid approach to privacy-preserving federated learning. In Proceedings of the 12th ACM Workshop on Artificial Intelligence and Security.","journal-title":"Proceedings of the 12th ACM Workshop on Artificial Intelligence and Security"},{"key":"e_1_3_1_84_2","doi-asserted-by":"crossref","first-page":"3085","DOI":"10.1145\/3340531.3412771","volume-title":"Proceedings of the 29th ACM International Conference on Information & Knowledge Management","author":"Mugunthan Vaikkunth","year":"2020","unstructured":"Vaikkunth Mugunthan, Anton Peraire-Bueno, and Lalana Kagal. 2020. PrivacyFL: A simulator for privacy-preserving and secure federated learning. In Proceedings of the 29th ACM International Conference on Information & Knowledge Management. 3085\u20133092."},{"key":"e_1_3_1_85_2","first-page":"477","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy (SP\u201923)","author":"Ma Yiping","year":"2023","unstructured":"Yiping Ma, Jess Woods, Sebastian Angel, Antigoni Polychroniadou, and Tal Rabin. 2023. Flamingo: Multi-round single-server secure aggregation with applications to private federated learning. In Proceedings of the IEEE Symposium on Security and Privacy (SP\u201923). IEEE, 477\u2013496."},{"issue":"11","key":"e_1_3_1_86_2","first-page":"169","article-title":"On data banks and privacy homomorphisms","volume":"4","author":"Rivest Ronald L.","year":"1978","unstructured":"Ronald L. Rivest, Len Adleman, and Michael L. Dertouzos. 1978. On data banks and privacy homomorphisms. Found. Secure Comput. 4, 11 (1978), 169\u2013180.","journal-title":"Found. Secure Comput."},{"issue":"4","key":"e_1_3_1_87_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3214303","article-title":"A survey on homomorphic encryption schemes: Theory and implementation","volume":"51","author":"Acar Abbas","year":"2018","unstructured":"Abbas Acar, Hidayet Aksu, A. Selcuk Uluagac, and Mauro Conti. 2018. A survey on homomorphic encryption schemes: Theory and implementation. Comput. Surv. 51, 4 (2018), 1\u201335.","journal-title":"Comput. Surv."},{"key":"e_1_3_1_88_2","doi-asserted-by":"crossref","first-page":"4574","DOI":"10.1109\/TIFS.2021.3108434","article-title":"Privacy-enhanced federated learning against poisoning adversaries","volume":"16","author":"Liu Xiaoyuan","year":"2021","unstructured":"Xiaoyuan Liu, Hongwei Li, Guowen Xu, Zongqi Chen, Xiaoming Huang, and Rongxing Lu. 2021. Privacy-enhanced federated learning against poisoning adversaries. IEEE Trans. Inf. Forens. Secur. 16 (2021), 4574\u20134588.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"issue":"5","key":"e_1_3_1_89_2","first-page":"2438","article-title":"DeepChain: Auditable and privacy-preserving deep learning with blockchain-based incentive","volume":"18","author":"Weng Jiasi","year":"2019","unstructured":"Jiasi Weng, Jian Weng, Jilian Zhang, Ming Li, Yue Zhang, and Weiqi Luo. 2019. DeepChain: Auditable and privacy-preserving deep learning with blockchain-based incentive. IEEE Trans. Depend. Secure Comput. 18, 5 (2019), 2438\u20132455.","journal-title":"IEEE Trans. Depend. Secure Comput."},{"issue":"3","key":"e_1_3_1_90_2","doi-asserted-by":"crossref","first-page":"1492","DOI":"10.1109\/TDSC.2020.3026631","article-title":"Achieve efficient and privacy-preserving disease risk assessment over multi-outsourced vertical datasets","volume":"19","author":"Wang Fengwei","year":"2020","unstructured":"Fengwei Wang, Hui Zhu, Rongxing Lu, Yandong Zheng, and Hui Li. 2020. Achieve efficient and privacy-preserving disease risk assessment over multi-outsourced vertical datasets. IEEE Trans. Depend. Secure Comput. 19, 3 (2020), 1492\u20131504.","journal-title":"IEEE Trans. Depend. Secure Comput."},{"issue":"7","key":"e_1_3_1_91_2","first-page":"8423","article-title":"Privacy-preserved federated learning for autonomous driving","volume":"23","author":"Li Yijing","year":"2021","unstructured":"Yijing Li, Xiaofeng Tao, Xuefei Zhang, Junjie Liu, and Jin Xu. 2021. Privacy-preserved federated learning for autonomous driving. IEEE Trans. Intell. Transport. Syst. 23, 7 (2021), 8423\u20138434.","journal-title":"IEEE Trans. Intell. Transport. Syst."},{"key":"e_1_3_1_92_2","first-page":"1","volume-title":"Proceedings of the 15th European Conference on Computer Systems","author":"Lee Dayeol","year":"2020","unstructured":"Dayeol Lee, David Kohlbrenner, Shweta Shinde, Krste Asanovi\u0107, and Dawn Song. 2020. Keystone: An open framework for architecting trusted execution environments. In Proceedings of the 15th European Conference on Computer Systems. 1\u201316."},{"key":"e_1_3_1_93_2","doi-asserted-by":"crossref","first-page":"57","DOI":"10.1109\/Trustcom.2015.357","volume-title":"2015 IEEE Trustcom\/BigDataSE\/ISPA","author":"Sabt Mohamed","year":"2015","unstructured":"Mohamed Sabt, Mohammed Achemlal, and Abdelmadjid Bouabdallah. 2015. Trusted execution environment: What it is, and what it is not. In 2015 IEEE Trustcom\/BigDataSE\/ISPA, Vol. 1. IEEE, 57\u201364."},{"key":"e_1_3_1_94_2","first-page":"1877","volume-title":"Proceedings of the IEEE Conference on Computer Communications (INFOCOM\u201920)","author":"Zhang Xiaoli","year":"2020","unstructured":"Xiaoli Zhang, Fengting Li, Zeyu Zhang, Qi Li, Cong Wang, and Jianping Wu. 2020. Enabling execution assurance of federated learning at untrusted participants. In Proceedings of the IEEE Conference on Computer Communications (INFOCOM\u201920). IEEE, 1877\u20131886."},{"key":"e_1_3_1_95_2","first-page":"55","volume-title":"Proceedings of the IEEE\/ACM Symposium on Edge Computing (SEC\u201921)","author":"Kuznetsov Eugene","year":"2021","unstructured":"Eugene Kuznetsov, Yitao Chen, and Ming Zhao. 2021. SecureFL: Privacy preserving federated learning with SGX and TrustZone. In Proceedings of the IEEE\/ACM Symposium on Edge Computing (SEC\u201921). IEEE, 55\u201367."},{"key":"e_1_3_1_96_2","first-page":"707","volume-title":"Proceedings of the IEEE European Symposium on Security and Privacy (EuroS&P\u201921)","author":"Mondal Arup","year":"2021","unstructured":"Arup Mondal, Yash More, Ruthu Hulikal Rooparaghunath, and Debayan Gupta. 2021. Poster: FLATEE: Federated learning across trusted execution environments. In Proceedings of the IEEE European Symposium on Security and Privacy (EuroS&P\u201921). IEEE, 707\u2013709."},{"key":"e_1_3_1_97_2","first-page":"94","volume-title":"Proceedings of the 19th Annual International Conference on Mobile Systems, Applications, and Services","author":"Mo Fan","year":"2021","unstructured":"Fan Mo, Hamed Haddadi, Kleomenis Katevas, Eduard Marin, Diego Perino, and Nicolas Kourtellis. 2021. PPFL: Privacy-preserving federated learning with trusted execution environments. In Proceedings of the 19th Annual International Conference on Mobile Systems, Applications, and Services. 94\u2013108."},{"key":"e_1_3_1_98_2","doi-asserted-by":"crossref","first-page":"546","DOI":"10.1145\/3472883.3486998","volume-title":"Proceedings of the ACM Symposium on Cloud Computing","author":"Zhang Chengliang","year":"2021","unstructured":"Chengliang Zhang, Junzhe Xia, Baichen Yang, Huancheng Puyang, Wei Wang, Ruichuan Chen, Istemi Ekin Akkus, Paarijaat Aditya, and Feng Yan. 2021. Citadel: Protecting data privacy and model confidentiality for collaborative learning. In Proceedings of the ACM Symposium on Cloud Computing. 546\u2013561."},{"key":"e_1_3_1_99_2","doi-asserted-by":"crossref","first-page":"265","DOI":"10.1007\/11681878_14","volume-title":"Proceedings of the Theory of Cryptography Conference","author":"Dwork Cynthia","year":"2006","unstructured":"Cynthia Dwork, Frank McSherry, Kobbi Nissim, and Adam Smith. 2006. Calibrating noise to sensitivity in private data analysis. In Proceedings of the Theory of Cryptography Conference. Springer, 265\u2013284."},{"key":"e_1_3_1_100_2","first-page":"1","volume-title":"Proceedings of the International Conference on Theory and Applications of Models of Computation","author":"Dwork Cynthia","year":"2008","unstructured":"Cynthia Dwork. 2008. Differential privacy: A survey of results. In Proceedings of the International Conference on Theory and Applications of Models of Computation. Springer, 1\u201319."},{"key":"e_1_3_1_101_2","first-page":"126","volume-title":"Proceedings of the Annual International Cryptology Conference","author":"Mironov Ilya","year":"2009","unstructured":"Ilya Mironov, Omkant Pandey, Omer Reingold, and Salil Vadhan. 2009. Computational differential privacy. In Proceedings of the Annual International Cryptology Conference. Springer, 126\u2013142."},{"key":"e_1_3_1_102_2","doi-asserted-by":"crossref","first-page":"1310","DOI":"10.1145\/2810103.2813687","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"Shokri Reza","year":"2015","unstructured":"Reza Shokri and Vitaly Shmatikov. 2015. Privacy-preserving deep learning. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. 1310\u20131321."},{"key":"e_1_3_1_103_2","first-page":"2650","volume-title":"Proceedings of the IEEE International Conference on Acoustics, Speech and Signal Processing","author":"Kim Muah","year":"2021","unstructured":"Muah Kim, Onur G\u00fcnl\u00fc, and Rafael F. Schaefer. 2021. Federated learning with local differential privacy: Trade-offs between privacy, utility, and communication. In Proceedings of the IEEE International Conference on Acoustics, Speech and Signal Processing. IEEE, 2650\u20132654."},{"key":"e_1_3_1_104_2","doi-asserted-by":"crossref","first-page":"61","DOI":"10.1145\/3378679.3394533","volume-title":"Proceedings of the 3rd ACM International Workshop on Edge Systems, Analytics and Networking","author":"Truex Stacey","year":"2020","unstructured":"Stacey Truex, Ling Liu, Ka-Ho Chow, Mehmet Emre Gursoy, and Wenqi Wei. 2020. LDP-Fed: Federated learning with local differential privacy. In Proceedings of the 3rd ACM International Workshop on Edge Systems, Analytics and Networking. 61\u201366."},{"key":"e_1_3_1_105_2","article-title":"LDP-FL: Practical private aggregation in federated learning with local differential privacy","author":"Sun Lichao","year":"2021","unstructured":"Lichao Sun, Jianwei Qian, and Xun Chen. 2021. LDP-FL: Practical private aggregation in federated learning with local differential privacy. In Proceedings of the 30th International Joint Conference on Artificial Intelligence.","journal-title":"Proceedings of the 30th International Joint Conference on Artificial Intelligence"},{"key":"e_1_3_1_106_2","volume-title":"Proceedings of the 30th International Joint Conference on Artificial Intelligence","author":"Sun Lichao","year":"2021","unstructured":"Lichao Sun and Lingjuan Lyu. 2021. Federated model distillation with noise-free differential privacy. In Proceedings of the 30th International Joint Conference on Artificial Intelligence."},{"key":"e_1_3_1_107_2","first-page":"1379","volume-title":"Proceedings of the 31st USENIX Security Symposium (USENIX Security\u201922)","author":"Stevens Timothy","year":"2022","unstructured":"Timothy Stevens, Christian Skalka, Christelle Vincent, John Ring, Samuel Clark, and Joseph Near. 2022. Efficient differentially private secure aggregation for federated learning via hardness of learning with errors. In Proceedings of the 31st USENIX Security Symposium (USENIX Security\u201922). 1379\u20131395."},{"key":"e_1_3_1_108_2","first-page":"1595","volume-title":"Proceedings of the 32nd USENIX Security Symposium (USENIX Security\u201923)","author":"Yang Yuchen","year":"2023","unstructured":"Yuchen Yang, Bo Hui, Haolin Yuan, Neil Gong, and Yinzhi Cao. 2023. PrivateFL: Accurate, differentially private federated learning via personalized data transformation. In Proceedings of the 32nd USENIX Security Symposium (USENIX Security\u201923). 1595\u20131612."},{"key":"e_1_3_1_109_2","first-page":"24552","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition","author":"Shi Yifan","year":"2023","unstructured":"Yifan Shi, Yingqi Liu, Kang Wei, Li Shen, Xueqian Wang, and Dacheng Tao. 2023. Make landscape flatter in differentially private federated learning. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 24552\u201324562."},{"key":"e_1_3_1_110_2","first-page":"10122","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition","author":"Cheng Anda","year":"2022","unstructured":"Anda Cheng, Peisong Wang, Xi Sheryl Zhang, and Jian Cheng. 2022. Differentially private federated learning with local regularization and sparsification. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 10122\u201310131."},{"key":"e_1_3_1_111_2","first-page":"472","volume-title":"Proceedings of the 19th European Conference on Computer Systems","author":"Jiang Zhifeng","year":"2024","unstructured":"Zhifeng Jiang, Wei Wang, and Ruichuan Chen. 2024. Dordis: Efficient federated learning with dropout-resilient differential privacy. In Proceedings of the 19th European Conference on Computer Systems. 472\u2013488."},{"issue":"1","key":"e_1_3_1_112_2","doi-asserted-by":"crossref","first-page":"186","DOI":"10.1137\/0218012","article-title":"The knowledge complexity of interactive proof systems","volume":"18","author":"Goldwasser Shafi","year":"1989","unstructured":"Shafi Goldwasser, Silvio Micali, and Charles Rackoff. 1989. The knowledge complexity of interactive proof systems. SIAM J. Comput. 18, 1 (1989), 186\u2013208.","journal-title":"SIAM J. Comput."},{"key":"e_1_3_1_113_2","first-page":"37","volume-title":"Proceedings of the Conference on the Theory and Application of Cryptography","author":"Ben-Or Michael","year":"1988","unstructured":"Michael Ben-Or, Oded Goldreich, Shafi Goldwasser, Johan H\u00e5stad, Joe Kilian, Silvio Micali, and Phillip Rogaway. 1988. Everything provable is provable in zero-knowledge. In Proceedings of the Conference on the Theory and Application of Cryptography. Springer, 37\u201356."},{"key":"e_1_3_1_114_2","first-page":"628","volume-title":"Proceedings of the Conference on the Theory and Application of Cryptology","author":"Quisquater Jean-Jacques","year":"1989","unstructured":"Jean-Jacques Quisquater, Myriam Quisquater, Muriel Quisquater, Micha\u00ebl Quisquater, Louis Guillou, Marie Annick Guillou, Ga\u00efd Guillou, Anna Guillou, Gwenol\u00e9 Guillou, and Soazig Guillou. 1989. How to explain zero-knowledge protocols to your children. In Proceedings of the Conference on the Theory and Application of Cryptology. Springer, 628\u2013631."},{"issue":"2","key":"e_1_3_1_115_2","doi-asserted-by":"crossref","first-page":"77","DOI":"10.1007\/BF02351717","article-title":"Zero-knowledge proofs of identity","volume":"1","author":"Feige Uriel","year":"1988","unstructured":"Uriel Feige, Amos Fiat, and Adi Shamir. 1988. Zero-knowledge proofs of identity. J. Cryptol. 1, 2 (1988), 77\u201394.","journal-title":"J. Cryptol."},{"issue":"3","key":"e_1_3_1_116_2","doi-asserted-by":"crossref","first-page":"690","DOI":"10.1145\/116825.116852","article-title":"Proofs that yield nothing but their validity or all languages in NP have zero-knowledge proof systems","volume":"38","author":"Goldreich Oded","year":"1991","unstructured":"Oded Goldreich, Silvio Micali, and Avi Wigderson. 1991. Proofs that yield nothing but their validity or all languages in NP have zero-knowledge proof systems. J. ACM 38, 3 (1991), 690\u2013728.","journal-title":"J. ACM"},{"key":"e_1_3_1_117_2","first-page":"519","volume-title":"Proceedings of the 30th USENIX Security Symposium","author":"Grassi Lorenzo","year":"2021","unstructured":"Lorenzo Grassi, Dmitry Khovratovich, Christian Rechberger, Arnab Roy, and Markus Schofnegger. 2021. Poseidon: A new hash function for zero-knowledge proof systems. In Proceedings of the 30th USENIX Security Symposium. 519\u2013535."},{"key":"e_1_3_1_118_2","first-page":"92","volume-title":"Proceedings of the Annual International Cryptology Conference","author":"Baum Carsten","year":"2021","unstructured":"Carsten Baum, Alex J. Malozemoff, Marc B. Rosen, and Peter Scholl. 2021. Mac\u2019n\u2019Cheese : Zero-knowledge proofs for boolean and arithmetic circuits with nested disjunctions. In Proceedings of the Annual International Cryptology Conference. Springer, 92\u2013122."},{"key":"e_1_3_1_119_2","first-page":"167","volume-title":"Foundations of Security Analysis and Design VII","author":"Bernhard David","year":"2013","unstructured":"David Bernhard and Bogdan Warinschi. 2013. Cryptographic voting\u2014A gentle introduction. In Foundations of Security Analysis and Design VII. Springer, 167\u2013211."},{"key":"e_1_3_1_120_2","first-page":"315","volume-title":"Proceedings of the IACR International Workshop on Public Key Cryptography","author":"Fuchsbauer Georg","year":"2018","unstructured":"Georg Fuchsbauer. 2018. Subversion-zero-knowledge SNARKs. In Proceedings of the IACR International Workshop on Public Key Cryptography. Springer, 315\u2013347."},{"key":"e_1_3_1_121_2","first-page":"459","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy","author":"Sasson Eli Ben","year":"2014","unstructured":"Eli Ben Sasson, Alessandro Chiesa, Christina Garman, Matthew Green, Ian Miers, Eran Tromer, and Madars Virza. 2014. Zerocash: Decentralized anonymous payments from bitcoin. In Proceedings of the IEEE Symposium on Security and Privacy. IEEE, 459\u2013474."},{"key":"e_1_3_1_122_2","first-page":"2968","volume-title":"Proceedings of the ACM SIGSAC Conference on Computer and Communications Security","author":"Liu Tianyi","year":"2021","unstructured":"Tianyi Liu, Xiang Xie, and Yupeng Zhang. 2021. zkCNN: Zero knowledge proofs for convolutional neural network predictions and accuracy. In Proceedings of the ACM SIGSAC Conference on Computer and Communications Security. 2968\u20132985."},{"key":"e_1_3_1_123_2","first-page":"501","volume-title":"Proceedings of the 30th USENIX Security Symposium","author":"Weng Chenkai","year":"2021","unstructured":"Chenkai Weng, Kang Yang, Xiang Xie, Jonathan Katz, and Xiao Wang. 2021. Mystique: Efficient conversions for zero-knowledge proofs with applications to machine learning. In Proceedings of the 30th USENIX Security Symposium. 501\u2013518."},{"key":"e_1_3_1_124_2","first-page":"143","volume-title":"Secure Communications and Asymmetric Cryptosystems","author":"Diffie Whitfield","year":"2019","unstructured":"Whitfield Diffie and Martin E. Hellman. 2019. New directions in cryptography. In Secure Communications and Asymmetric Cryptosystems. Routledge, 143\u2013180."},{"key":"e_1_3_1_125_2","first-page":"265","volume-title":"Proceedings of the 12th USENIX Symposium on Operating Systems Design and Implementation","year":"2016","unstructured":"Mart\u00edn Abadi, Paul Barham, Jianmin Chen, Zhifeng Chen, Andy Davis, Jeffrey Dean, Matthieu Devin, Sanjay Ghemawat, Geoffrey Irving, Michael Isard, Manjunath Kudlur, Josh Levenberg, Rajat Monga, Sherry Moore, Derek G. Murray, Benoit Steiner, Paul Tucker, Vijay Vasudevan, Pete Warden, Martin Wicke, Yuan Yu, and Xiaoqiang Zheng, Google Brain. 2016. TensorFlow: A system for large-scale machine learning. In Proceedings of the 12th USENIX Symposium on Operating Systems Design and Implementation. 265\u2013283."},{"key":"e_1_3_1_126_2","doi-asserted-by":"crossref","first-page":"3454","DOI":"10.1109\/TIFS.2020.2988575","article-title":"Federated learning with differential privacy: Algorithms and performance analysis","volume":"15","author":"Wei Kang","year":"2020","unstructured":"Kang Wei, Jun Li, Ming Ding, Chuan Ma, Howard H. Yang, Farhad Farokhi, Shi Jin, Tony Q. S. Quek, and H. Vincent Poor. 2020. Federated learning with differential privacy: Algorithms and performance analysis. IEEE Trans. Inf. Forens. Secur. 15 (2020), 3454\u20133469.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"key":"e_1_3_1_127_2","unstructured":"Zhangshuang Guan Yulin Zhao Zhiguo Wan and Jinsong Han. 2024. OPSA: Efficient and verifiable one-pass secure aggregation with TEE for federated learning. Cryptology ePrint Archive Paper 2024\/476. https:\/\/eprint.iacr.org\/2024\/476"},{"key":"e_1_3_1_128_2","article-title":"Pencil: Private and extensible collaborative learning without the non-colluding assumption","author":"Liu Xuanqi","year":"2024","unstructured":"Xuanqi Liu, Zhuotao Liu, Qi Li, Ke Xu, and Mingwei Xu. 2024. Pencil: Private and extensible collaborative learning without the non-colluding assumption. arXiv preprint arXiv:2403.11166 (2024).","journal-title":"arXiv preprint arXiv:2403.11166"},{"issue":"1","key":"e_1_3_1_129_2","first-page":"290","article-title":"Low-latency federated learning over wireless channels with differential privacy","volume":"40","author":"Wei Kang","year":"2021","unstructured":"Kang Wei, Jun Li, Chuan Ma, Ming Ding, Cailian Chen, Shi Jin, Zhu Han, and H. Vincent Poor. 2021. Low-latency federated learning over wireless channels with differential privacy. IEEE J. Select. Areas Commun. 40, 1 (2021), 290\u2013307.","journal-title":"IEEE J. Select. Areas Commun."},{"key":"e_1_3_1_130_2","doi-asserted-by":"crossref","first-page":"365","DOI":"10.1109\/TIFS.2022.3221899","article-title":"LSFL: A lightweight and secure federated learning scheme for edge computing","volume":"18","author":"Zhang Zhuangzhuang","year":"2022","unstructured":"Zhuangzhuang Zhang, Libing Wu, Chuanguo Ma, Jianxin Li, Jing Wang, Qian Wang, and Shui Yu. 2022. LSFL: A lightweight and secure federated learning scheme for edge computing. IEEE Trans. Inf. Forens. Secur. 18 (2022), 365\u2013379.","journal-title":"IEEE Trans. Inf. Forens. Secur."},{"issue":"11","key":"e_1_3_1_131_2","doi-asserted-by":"crossref","first-page":"2278","DOI":"10.1109\/5.726791","article-title":"Gradient-based learning applied to document recognition","volume":"86","author":"LeCun Yann","year":"1998","unstructured":"Yann LeCun, L\u00e9on Bottou, Yoshua Bengio, and Patrick Haffner. 1998. Gradient-based learning applied to document recognition. Proc. IEEE 86, 11 (1998), 2278\u20132324.","journal-title":"Proc. IEEE"},{"key":"e_1_3_1_132_2","unstructured":"Alex Krizhevsky and Geoffrey Hinton. 2009. Learning multiple layers of features from tiny images. (2009)."},{"key":"e_1_3_1_133_2","first-page":"130","volume-title":"Proceedings of the International Conference on Smart Technologies in Computing, Electrical and Electronics (ICSTCEE\u201920)","author":"Giraddi Shantala","year":"2020","unstructured":"Shantala Giraddi, Shivanand Seeri, P. S. Hiremath, and G. N. Jayalaxmi. 2020. Flower classification using deep learning models. In Proceedings of the International Conference on Smart Technologies in Computing, Electrical and Electronics (ICSTCEE\u201920). IEEE, 130\u2013133."},{"issue":"7","key":"e_1_3_1_134_2","first-page":"3","article-title":"Tiny ImageNet visual recognition challenge","volume":"7","author":"Le Ya","year":"2015","unstructured":"Ya Le and Xuan Yang. 2015. Tiny ImageNet visual recognition challenge. Comput. Sci. 231N 7, 7 (2015), 3.","journal-title":"Comput. Sci. 231N"},{"key":"e_1_3_1_135_2","first-page":"770","volume-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","author":"He Kaiming","year":"2016","unstructured":"Kaiming He, Xiangyu Zhang, Shaoqing Ren, and Jian Sun. 2016. Deep residual learning for image recognition. In Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition. 770\u2013778."}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3679013","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3679013","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T00:58:15Z","timestamp":1750294695000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3679013"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10,3]]},"references-count":134,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2024,12,31]]}},"alternative-id":["10.1145\/3679013"],"URL":"https:\/\/doi.org\/10.1145\/3679013","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"value":"0360-0300","type":"print"},{"value":"1557-7341","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,10,3]]},"assertion":[{"value":"2023-07-16","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-07-05","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-10-03","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}