{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,15]],"date-time":"2025-08-15T02:37:35Z","timestamp":1755225455577,"version":"3.43.0"},"reference-count":197,"publisher":"Association for Computing Machinery (ACM)","issue":"8","funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"crossref","award":["92270123 and 62072390"],"award-info":[{"award-number":["92270123 and 62072390"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"crossref"}]},{"name":"Research Grants Council, Hong Kong SAR, China","award":["15203120 and 15226221"],"award-info":[{"award-number":["15203120 and 15226221"]}]},{"name":"Scientific and Technological Research Program of Chongqing Municipal Education Commission","award":["KJZD-K202300601"],"award-info":[{"award-number":["KJZD-K202300601"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Trans. Multimedia Comput. Commun. Appl."],"published-print":{"date-parts":[[2025,8,31]]},"abstract":"<jats:p>Facing enormous data generated at the network edge, edge intelligence (EI) emerges as the fusion of edge computing and AI, revolutionizing edge data processing and intelligent decision-making. Nonetheless, this emergent mode presents a complex array of security challenges, particularly prominent in image-centric applications due to the sheer volume of visual data and its direct connection to user privacy. These challenges include safeguarding model\/image privacy and ensuring model integrity against various security threats, such as model poisoning. Essentially, those threats originate from data attacks, suggesting data protection as a promising solution. Although data protection measures are well-established in other domains, image-centric EI necessitates focused research. This survey examines the security issues inherent to image-centric EI and outlines the protection efforts, providing a comprehensive overview of the landscape. We begin by introducing EI, detailing its operational mechanics and associated security issues. We then explore the technologies facilitating security enhancement (e.g., differential privacy) and EI (e.g., compact networks and distributed learning frameworks). Next, we categorize security strategies by their application in data preparation, training, and inference, with a focus on image-based contexts. Despite these efforts on security, our investigation identifies research gaps. We also outline promising research directions to bridge these gaps, bolstering security frameworks in image-centric EI applications.<\/jats:p>","DOI":"10.1145\/3700792","type":"journal-article","created":{"date-parts":[[2024,12,18]],"date-time":"2024-12-18T07:45:31Z","timestamp":1734507931000},"page":"1-35","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["A Survey on Securing Image-Centric Edge Intelligence"],"prefix":"10.1145","volume":"21","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-0123-1364","authenticated-orcid":false,"given":"Tang","family":"Li","sequence":"first","affiliation":[{"name":"National Pilot School of Software, Yunnan University, Kunming, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9008-2112","authenticated-orcid":false,"given":"Haibo","family":"Hu","sequence":"additional","affiliation":[{"name":"The Hong Kong Polytechnic University, Kowloon, Hong Kong"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9788-2323","authenticated-orcid":false,"given":"Moncef","family":"Gabbouj","sequence":"additional","affiliation":[{"name":"Tampere University, Tampere, Finland"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1547-2847","authenticated-orcid":false,"given":"Qingqing","family":"Ye","sequence":"additional","affiliation":[{"name":"The Hong Kong Polytechnic University, Hongkong, Hongkong"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5252-0831","authenticated-orcid":false,"given":"Xiang","family":"Yang","sequence":"additional","affiliation":[{"name":"Swinburne University of Technology, Melbourne, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0385-8793","authenticated-orcid":false,"given":"Jin","family":"Li","sequence":"additional","affiliation":[{"name":"Guangzhou University, Guangzhou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4178-9442","authenticated-orcid":false,"given":"Lang","family":"Li","sequence":"additional","affiliation":[{"name":"Hainan University, Haikou, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,8,13]]},"reference":[{"key":"e_1_3_1_2_2","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"e_1_3_1_3_2","first-page":"1615","volume-title":"Proceedings of 27th USENIX Security Symposium (USENIX Security \u201918)","author":"Adi Yossi","year":"2018","unstructured":"Yossi Adi, Carsten Baum, Moustapha Cisse, Benny Pinkas, and Joseph Keshet. 2018. Turning your weakness into a strength: Watermarking deep neural networks by backdooring. In Proceedings of 27th USENIX Security Symposium (USENIX Security \u201918), 1615\u20131631."},{"key":"e_1_3_1_4_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2022.3155447"},{"key":"e_1_3_1_5_2","doi-asserted-by":"publisher","DOI":"10.1145\/3510831"},{"issue":"6","key":"e_1_3_1_6_2","doi-asserted-by":"crossref","first-page":"4004","DOI":"10.1109\/JIOT.2020.3015432","article-title":"A survey on security and privacy issues in edge-computing-assisted internet of things","volume":"8","author":"Alwarafy Abdulmalik","year":"2020","unstructured":"Abdulmalik Alwarafy, Khaled A. Al-Thelaya, Mohamed Abdallah, Jens Schneider, and Mounir Hamdi. 2020. A survey on security and privacy issues in edge-computing-assisted internet of things. IEEE Internet Things Journal 8, 6 (2020), 4004\u20134022.","journal-title":"IEEE Internet Things Journal"},{"key":"e_1_3_1_7_2","first-page":"214","volume-title":"Proceedings of International Conference on Machine Learning","author":"Arjovsky Martin","year":"2017","unstructured":"Martin Arjovsky, Soumith Chintala, and L\u00e9on Bottou. 2017. Wasserstein generative adversarial networks. In Proceedings of International Conference on Machine Learning. PMLR, 214\u2013223."},{"key":"e_1_3_1_8_2","first-page":"2938","volume-title":"Proceedings of International Conference on Artificial Intelligence and Statistics","author":"Bagdasaryan Eugene","year":"2020","unstructured":"Eugene Bagdasaryan, Andreas Veit, Yiqing Hua, Deborah Estrin, and Vitaly Shmatikov. 2020. How to backdoor federated learning. In Proceedings of International Conference on Artificial Intelligence and Statistics. PMLR, 2938\u20132948."},{"key":"e_1_3_1_9_2","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM41043.2020.9155446"},{"key":"e_1_3_1_10_2","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"e_1_3_1_11_2","unstructured":"Andrew Brock Jeff Donahue and Karen Simonyan. 2018. Large scale GAN training for high fidelity natural image synthesis. arXiv:1809.11096. Retrieved from https:\/\/arxiv.org\/abs\/1809.11096"},{"key":"e_1_3_1_12_2","first-page":"812","volume-title":"Proceedings of International Conference on Machine Learning","author":"Brutzkus Alon","year":"2019","unstructured":"Alon Brutzkus, Ran Gilad-Bachrach, and Oren Elisha. 2019. Low latency privacy preserving inference. In Proceedings of International Conference on Machine Learning. PMLR, 812\u2013821."},{"key":"e_1_3_1_13_2","doi-asserted-by":"publisher","DOI":"10.1002\/int.22991"},{"key":"e_1_3_1_14_2","first-page":"130","volume-title":"Proceedings of the 16th European Conference on Computer Systems","author":"Cai Zhenkun","year":"2021","unstructured":"Zhenkun Cai, Xiao Yan, Yidi Wu, Kaihao Ma, James Cheng, and Fan Yu. 2021. DGCL: An efficient communication library for distributed GNN training. In Proceedings of the 16th European Conference on Computer Systems, 130\u2013144."},{"key":"e_1_3_1_15_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.sigpro.2016.11.016"},{"key":"e_1_3_1_16_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2020.10.007"},{"key":"e_1_3_1_17_2","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2022.3232153"},{"key":"e_1_3_1_18_2","doi-asserted-by":"publisher","DOI":"10.5555\/3294771.3294842"},{"key":"e_1_3_1_19_2","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363207"},{"key":"e_1_3_1_20_2","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2020.3046648"},{"key":"e_1_3_1_21_2","doi-asserted-by":"crossref","first-page":"824","DOI":"10.1109\/SP46214.2022.9833747","volume-title":"Proceedings of 2022 IEEE Symposium on Security and Privacy (SP)","author":"Chen Jialuo","year":"2022","unstructured":"Jialuo Chen, Jingyi Wang, Tinglan Peng, Youcheng Sun, Peng Cheng, Shouling Ji, Xingjun Ma, Bo Li, and Dawn Song. 2022. Copy, right? A testing framework for copyright protection of deep learning models. In Proceedings of 2022 IEEE Symposium on Security and Privacy (SP). IEEE, 824\u2013841."},{"key":"e_1_3_1_22_2","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467445"},{"key":"e_1_3_1_23_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.195"},{"key":"e_1_3_1_24_2","doi-asserted-by":"crossref","first-page":"11624","DOI":"10.1609\/aaai.v38i10.29045","article-title":"Make RepVGG greater again: A quantization-aware approach","volume":"38","author":"Chu Xiangxiang","year":"2024","unstructured":"Xiangxiang Chu, Liang Li, and Bo Zhang. 2024. Make RepVGG greater again: A quantization-aware approach. Proceedings of the AAAI Conference on Artificial Intelligence 38 (2024), 11624\u201311632.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_25_2","doi-asserted-by":"crossref","first-page":"579","DOI":"10.1145\/3548606.3559355","volume-title":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","author":"Cong Tianshuo","year":"2022","unstructured":"Tianshuo Cong, Xinlei He, and Yang Zhang. 2022. SSLGuard: A watermarking scheme for self-supervised learning pre-trained encoders. In Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security, 579\u2013593."},{"key":"e_1_3_1_26_2","first-page":"1135","volume-title":"Proceedings of International Conference on Machine Learning","author":"Dai Bin","year":"2018","unstructured":"Bin Dai, Chen Zhu, Baining Guo, and David Wipf. 2018. Compressing neural networks using the variational information bottleneck. In Proceedings of International Conference on Machine Learning. PMLR, 1135\u20131144."},{"key":"e_1_3_1_27_2","doi-asserted-by":"publisher","DOI":"10.5555\/3295222.3295239"},{"key":"e_1_3_1_28_2","first-page":"2180","volume-title":"Proceedings of 2023 IEEE 39th International Conference on Data Engineering (ICDE)","author":"Du Rong","year":"2023","unstructured":"Rong Du, Qingqing Ye, Yue Fu, Haibo Hu, Jin Li, Chengfang Fang, and Jie Shi. 2023. Differential aggregation against general colluding attackers. In Proceedings of 2023 IEEE 39th International Conference on Data Engineering (ICDE). IEEE, 2180\u20132193."},{"key":"e_1_3_1_29_2","first-page":"407","volume-title":"Proceedings of 2022 IEEE 38th International Conference on Data Engineering (ICDE)","author":"Duan Jiawei","year":"2022","unstructured":"Jiawei Duan, Qingqing Ye, and Haibo Hu. 2022. Utility analysis and enhancement of LDP mechanisms in high-dimensional space. In Proceedings of 2022 IEEE 38th International Conference on Data Engineering (ICDE). IEEE, 407\u2013419."},{"key":"e_1_3_1_30_2","doi-asserted-by":"crossref","first-page":"115","DOI":"10.1145\/3559613.3563201","volume-title":"Proceedings of the 21st Workshop on Privacy in the Electronic Society","author":"Erdo\u011fan Ege","year":"2022","unstructured":"Ege Erdo\u011fan, Alptekin K\u00fcp\u00e7\u00fc, and A. Erc\u00fcment \u00c7i\u00e7ek. 2022. Unsplit: Data-oblivious model inversion, model stealing, and label inference attacks against split learning. In Proceedings of the 21st Workshop on Privacy in the Electronic Society, 115\u2013124."},{"key":"e_1_3_1_31_2","doi-asserted-by":"crossref","unstructured":"Han Fang Yupeng Qiu Kejiang Chen Jiyi Zhang Weiming Zhang and Ee-Chien Chang. 2023. Flow-based robust watermarking with invertible noise layer for black-box distortions. Proceedings of the AAAI Conference on Artificial Intelligence 37 (2023) 5054\u20135061.","DOI":"10.1609\/aaai.v37i4.25633"},{"key":"e_1_3_1_32_2","doi-asserted-by":"crossref","first-page":"217","DOI":"10.1109\/CPERE45374.2019.8980124","volume-title":"Proceedings of 2019 IEEE Conference on Power Electronics and Renewable Energy (CPERE)","author":"Fouad Ayman M.","year":"2019","unstructured":"Ayman M. Fouad, R. M. Sharkawy, and Ahmed Onsy. 2019. Fixed obstacle detection for autonomous vehicle. In Proceedings of 2019 IEEE Conference on Power Electronics and Renewable Energy (CPERE). IEEE, 217\u2013221."},{"key":"e_1_3_1_33_2","unstructured":"Jie Fu Qingqing Ye Haibo Hu Zhili Chen Lulu Wang Kuncan Wang and Ran Xun. 2023. DPSUR: Accelerating differentially private stochastic gradient descent using selective update and release. arXiv:2311.14056. Retrieved from https:\/\/arxiv.org\/abs\/2311.14056"},{"key":"e_1_3_1_34_2","first-page":"4751","volume-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision","author":"Gan Guanhao","year":"2023","unstructured":"Guanhao Gan, Yiming Li, Dongxian Wu, and Shu-Tao Xia. 2023. Towards robust model watermark via reducing parametric vulnerability. In Proceedings of the IEEE\/CVF International Conference on Computer Vision, 4751\u20134761."},{"key":"e_1_3_1_35_2","doi-asserted-by":"publisher","DOI":"10.1145\/3394486.3403058"},{"key":"e_1_3_1_36_2","first-page":"5271","volume-title":"Proceedings of 32nd USENIX Security Symposium (USENIX Security \u201923)","author":"Gao Xinben","year":"2023","unstructured":"Xinben Gao and Lan Zhang. 2023. PCAT: Functionality and data stealing from split learning by pseudo-client attack. In Proceedings of 32nd USENIX Security Symposium (USENIX Security \u201923), 5271\u20135288."},{"key":"e_1_3_1_37_2","doi-asserted-by":"publisher","DOI":"10.5555\/3495724.3497145"},{"key":"e_1_3_1_38_2","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_3_1_39_2","unstructured":"Robin C. Geyer Tassilo Klein and Moin Nabi. 2017. Differentially private federated learning: A client level perspective. arXiv:1712.07557. Retrieved from https:\/\/arxiv.org\/abs\/1712.07557"},{"key":"e_1_3_1_40_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW.2018.00215"},{"key":"e_1_3_1_41_2","first-page":"201","volume-title":"Proceedings of International Conference on Machine Learning","author":"Gilad-Bachrach Ran","year":"2016","unstructured":"Ran Gilad-Bachrach, Nathan Dowlin, Kim Laine, Kristin Lauter, Michael Naehrig, and John Wernsing. 2016. CryptoNets: Applying neural networks to encrypted data with high throughput and accuracy. In Proceedings of International Conference on Machine Learning. PMLR, 201\u2013210."},{"key":"e_1_3_1_42_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3295944"},{"key":"e_1_3_1_43_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.patcog.2017.06.016"},{"key":"e_1_3_1_44_2","doi-asserted-by":"publisher","DOI":"10.1145\/3422622"},{"key":"e_1_3_1_45_2","doi-asserted-by":"publisher","DOI":"10.5555\/3157096.3157251"},{"key":"e_1_3_1_46_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103270"},{"key":"e_1_3_1_47_2","unstructured":"Song Han Huizi Mao and William J. Dally. 2015. Deep compression: Compressing deep neural networks with pruning trained quantization and Huffman coding. arXiv:1510.00149. Retrieved from https:\/\/arxiv.org\/abs\/1510.00149"},{"key":"e_1_3_1_48_2","first-page":"1135","volume-title":"Proceedings of the 28th International Conference on Neural Information Processing Systems, Vol. 1","author":"Han Song","year":"2015","unstructured":"Song Han, Jeff Pool, John Tran, and William Dally. 2015. Learning both weights and connections for efficient neural network. In Proceedings of the 28th International Conference on Neural Information Processing Systems, Vol. 1, 1135\u20131143."},{"key":"e_1_3_1_49_2","first-page":"13237","volume-title":"Proceedings of the 37th International Conference on Neural Information Processing Systems","author":"He Yefei","year":"2024","unstructured":"Yefei He, Luping Liu, Jing Liu, Weijia Wu, Hong Zhou, and Bohan Zhuang. 2024. PTQD: Accurate post-training quantization for diffusion models. In Proceedings of the 37th International Conference on Neural Information Processing Systems, 13237\u201313249."},{"key":"e_1_3_1_50_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00447"},{"key":"e_1_3_1_51_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.155"},{"key":"e_1_3_1_52_2","doi-asserted-by":"publisher","DOI":"10.1080\/23276665.2020.1816188"},{"key":"e_1_3_1_53_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33013779"},{"key":"e_1_3_1_54_2","doi-asserted-by":"publisher","DOI":"10.1515\/popets-2018-0024"},{"key":"e_1_3_1_55_2","unstructured":"Geoffrey Hinton Oriol Vinyals and Jeff Dean. 2015. Distilling the knowledge in a neural network. arXiv:1503.02531. Retrieved from https:\/\/arxiv.org\/abs\/1503.02531"},{"key":"e_1_3_1_56_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3126315"},{"key":"e_1_3_1_57_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00140"},{"key":"e_1_3_1_58_2","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM.2019.8737614"},{"key":"e_1_3_1_59_2","doi-asserted-by":"crossref","first-page":"989","DOI":"10.1609\/aaai.v36i1.19982","article-title":"CMUA-Watermark: A cross-model universal adversarial watermark for combating deepfakes","volume":"36","author":"Huang Hao","year":"2022","unstructured":"Hao Huang, Yongtao Wang, Zhaoyu Chen, Yuze Zhang, Yuheng Li, Zhi Tang, Wei Chu, Jingdong Chen, Weisi Lin, and Kai-Kuang Ma. 2022. CMUA-Watermark: A cross-model universal adversarial watermark for combating deepfakes. Proceedings of the AAAI Conference on Artificial Intelligence 36 (2022), 989\u2013997.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"issue":"3","key":"e_1_3_1_60_2","first-page":"1441","article-title":"A lightweight privacy-preserving CNN feature extraction framework for mobile sensing","volume":"18","author":"Huang Kai","year":"2019","unstructured":"Kai Huang, Ximeng Liu, Shaojing Fu, Deke Guo, and Ming Xu. 2019. A lightweight privacy-preserving CNN feature extraction framework for mobile sensing. IEEE Transactions on Dependable and Secure Computing 18, 3 (2019), 1441\u20131455.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_1_61_2","doi-asserted-by":"crossref","first-page":"16312","DOI":"10.1109\/CVPR52729.2023.01565","volume-title":"Proceedings of 2023 IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR)","author":"Huang Wenke","year":"2023","unstructured":"Wenke Huang, Mang Ye, Zekun Shi, He Li, and Bo Du. 2023. Rethinking federated learning with domain shift: A prototype view. In Proceedings of 2023 IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). IEEE, 16312\u201316322."},{"key":"e_1_3_1_62_2","unstructured":"Forrest N. Iandola Song Han Matthew W. Moskewicz Khalid Ashraf William J. Dally and Kurt Keutzer. 2016. SqueezeNet: AlexNet-level accuracy with 50x fewer parameters and <0.5 MB model size. arXiv:1602.07360. Retrieved from https:\/\/arxiv.org\/abs\/1602.07360"},{"key":"e_1_3_1_63_2","unstructured":"Zuzana Jel\u010dicov\u00e1 and Marian Verhelst. 2022. Delta keyword transformer: Bringing transformers to the edge through dynamically pruned multi-head self-attention. arXiv:2204.03479. Retrieved from https:\/\/arxiv.org\/abs\/2204.03479"},{"key":"e_1_3_1_64_2","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475324"},{"key":"e_1_3_1_65_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2017.2751476"},{"key":"e_1_3_1_66_2","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243837"},{"key":"e_1_3_1_67_2","first-page":"463","volume-title":"Proceedings of 14th USENIX Symposium on Operating Systems Design and Implementation (OSDI \u201920)","author":"Jiang Yimin","year":"2020","unstructured":"Yimin Jiang, Yibo Zhu, Chang Lan, Bairen Yi, Yong Cui, and Chuanxiong Guo. 2020. A unified architecture for accelerating distributed DNN training in heterogeneous GPU\/CPU clusters. In Proceedings of 14th USENIX Symposium on Operating Systems Design and Implementation (OSDI \u201920), 463\u2013479."},{"key":"e_1_3_1_68_2","first-page":"994","volume-title":"Proceedings of the 35th International Conference on Neural Information Processing Systems","author":"Jin Xiao","year":"2021","unstructured":"Xiao Jin, Pin-Yu Chen, Chia-Yi Hsu, Chia-Mu Yu, and Tianyi Chen. 2021. CAFE: Catastrophic data leakage in vertical federated learning. In Proceedings of the 35th International Conference on Neural Information Processing Systems, 994\u20131006."},{"key":"e_1_3_1_69_2","first-page":"1651","volume-title":"Proceedings of 27th USENIX Security Symposium (USENIX Security \u201918)","author":"Juvekar Chiraag","year":"2018","unstructured":"Chiraag Juvekar, Vinod Vaikuntanathan, and Anantha Chandrakasan. 2018. GAZELLE: A low latency framework for secure neural network inference. In Proceedings of 27th USENIX Security Symposium (USENIX Security \u201918), 1651\u20131669."},{"issue":"7","key":"e_1_3_1_70_2","first-page":"2093","article-title":"Accelerator-aware pruning for convolutional neural networks","volume":"30","author":"Kang Hyeong-Ju","year":"2019","unstructured":"Hyeong-Ju Kang. 2019. Accelerator-aware pruning for convolutional neural networks. IEEE Transactions on Circuits and Systems for Video Technology 30, 7 (2019), 2093\u20132103.","journal-title":"IEEE Transactions on Circuits and Systems for Video Technology"},{"key":"e_1_3_1_71_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00453"},{"key":"e_1_3_1_72_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00813"},{"key":"e_1_3_1_73_2","doi-asserted-by":"publisher","DOI":"10.1109\/LCOMM.2019.2921755"},{"key":"e_1_3_1_74_2","unstructured":"Sehoon Kim Coleman Hooper Amir Gholami Zhen Dong Xiuyu Li Sheng Shen Michael W. Mahoney and Kurt Keutzer. 2023. SqueezeLLM: Dense-and-sparse quantization. arXiv:2306.07629. Retrieved from https:\/\/arxiv.org\/abs\/1701.00133"},{"key":"e_1_3_1_75_2","doi-asserted-by":"crossref","first-page":"2477","DOI":"10.1109\/IJCNN.2017.7966157","volume-title":"Proceedings of 2017 International Joint Conference on Neural Networks (IJCNN)","author":"Kiranyaz Serkan","year":"2017","unstructured":"Serkan Kiranyaz, Turker Ince, Alexandros Iosifidis, and Moncef Gabbouj. 2017. Generalized model of biological neural networks: Progressive operational perceptrons. In Proceedings of 2017 International Joint Conference on Neural Networks (IJCNN). IEEE, 2477\u20132485."},{"key":"e_1_3_1_76_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2016.10.044"},{"key":"e_1_3_1_77_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-020-04780-3"},{"key":"e_1_3_1_78_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-020-05543-w"},{"key":"e_1_3_1_79_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2021.02.028"},{"key":"e_1_3_1_80_2","doi-asserted-by":"crossref","first-page":"206","DOI":"10.1109\/TETCI.2023.3314658","article-title":"Super neurons","volume":"8","author":"Kiranyaz Serkan","year":"2024","unstructured":"Serkan Kiranyaz, Junaid Malik, Mehmet Yamac, Mert Duman, Ilke Adalioglu, Esin Guldogan, Turker Ince, and Moncef Gabbouj. 2024. Super neurons. IEEE Transactions on Emerging Topics in Computational Intelligence 8 (2024), 206\u2013228.","journal-title":"IEEE Transactions on Emerging Topics in Computational Intelligence"},{"key":"e_1_3_1_81_2","doi-asserted-by":"publisher","DOI":"10.3389\/fpubh.2020.00164"},{"key":"e_1_3_1_82_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.19"},{"key":"e_1_3_1_83_2","unstructured":"Namhoon Lee Thalaiyasingam Ajanthan and Philip H. S. Torr. 2018. Snip: Single-shot network pruning based on connection sensitivity. arXiv:1810.02340. Retrieved from https:\/\/arxiv.org\/abs\/1810.02340"},{"key":"e_1_3_1_84_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01231-1_21"},{"key":"e_1_3_1_85_2","first-page":"1","volume-title":"Proceedings of 25th Annual International Conference on Mobile Computing and Networking","author":"Lee Taegyeong","year":"2019","unstructured":"Taegyeong Lee, Zhiqi Lin, Saumay Pushp, Caihua Li, Yunxin Liu, Youngki Lee, Fengyuan Xu, Chenren Xu, Lintao Zhang, and Junehwa Song. 2019. Occlumency: Privacy-preserving remote deep-learning inference using SGX. In Proceedings of 25th Annual International Conference on Mobile Computing and Networking, 1\u201317."},{"key":"e_1_3_1_86_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2927169"},{"key":"e_1_3_1_87_2","article-title":"Efficient and privacy-preserving feature importance-based vertical federated learning","author":"Li Anran","year":"2023","unstructured":"Anran Li, Jiahui Huang, Ju Jia, Hongyi Peng, Lan Zhang, Luu, Anh Tuan, Han Yu, and Xiang-Yang Li. 2023. Efficient and privacy-preserving feature importance-based vertical federated learning. IEEE Transactions on Mobile Computing.","journal-title":"IEEE Transactions on Mobile Computing"},{"key":"e_1_3_1_88_2","first-page":"1893","volume-title":"Proceedings of 2023 IEEE Symposium on Security and Privacy (SP)","author":"Li Haoyang","year":"2023","unstructured":"Haoyang Li, Qingqing Ye, Haibo Hu, Jin Li, Leixia Wang, Chengfang Fang, and Jie Shi. 2023. 3DFed: Adaptive and extensible framework for covert backdoor attack in federated learning. In Proceedings of 2023 IEEE Symposium on Security and Privacy (SP). IEEE, 1893\u20131907."},{"key":"e_1_3_1_89_2","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3011028"},{"issue":"3","key":"e_1_3_1_90_2","first-page":"1592","article-title":"Optimizing privacy-preserving outsourced convolutional neural network predictions","volume":"19","author":"Li Minghui","year":"2020","unstructured":"Minghui Li, Sherman S. M. Chow, Shengshan Hu, Yuejing Yan, Chao Shen, and Qian Wang. 2020. Optimizing privacy-preserving outsourced convolutional neural network predictions. IEEE Transactions on Dependable and Secure Computing 19, 3 (2020), 1592\u20131604.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_1_91_2","first-page":"3660","volume-title":"Proceedings of IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP \u201921)","author":"Li Pengzhen","year":"2021","unstructured":"Pengzhen Li, Erdem Koyuncu, and Hulya Seferoglu. 2021. Respipe: Resilient model-distributed DNN training at edge networks. In Proceedings of IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP \u201921). IEEE, 3660\u20133664."},{"key":"e_1_3_1_92_2","unstructured":"Shen Li Yanli Zhao Rohan Varma Omkar Salpekar Pieter Noordhuis Teng Li Adam Paszke Jeff Smith Brian Vaughan Pritam Damania et al. 2020. Pytorch distributed: Experiences on accelerating data parallel training. arXiv:2006.15704. Retrieved from https:\/\/arxiv.org\/abs\/2006.15704"},{"key":"e_1_3_1_93_2","first-page":"6326","volume-title":"Proceedings of International Conference on Machine Learning","author":"Li Xiling","year":"2021","unstructured":"Xiling Li, Rafael Dowsley, and Martine De Cock. 2021. Privacy-preserving feature selection with secure multiparty computation. In Proceedings of International Conference on Machine Learning. PMLR, 6326\u20136336."},{"key":"e_1_3_1_94_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3302161"},{"key":"e_1_3_1_95_2","doi-asserted-by":"publisher","DOI":"10.1109\/TNSM.2021.3122147"},{"key":"e_1_3_1_96_2","doi-asserted-by":"publisher","DOI":"10.1145\/3581783.3613752"},{"key":"e_1_3_1_97_2","doi-asserted-by":"publisher","DOI":"10.3390\/fi16010006"},{"key":"e_1_3_1_98_2","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"e_1_3_1_99_2","doi-asserted-by":"crossref","first-page":"4876","DOI":"10.1609\/aaai.v34i04.5924","article-title":"AutoCompress: An automatic DNN structured pruning framework for ultra-high compression rates","volume":"34","author":"Liu Ning","year":"2020","unstructured":"Ning Liu, Xiaolong Ma, Zhiyuan Xu, Yanzhi Wang, Jian Tang, and Jieping Ye. 2020. AutoCompress: An automatic DNN structured pruning framework for ultra-high compression rates. Proceedings of the AAAI Conference on Artificial Intelligence 34 (2020), 4876\u20134883.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_100_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3108434"},{"key":"e_1_3_1_101_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2023.3295741"},{"key":"e_1_3_1_102_2","unstructured":"Zechun Liu Barlas Oguz Changsheng Zhao Ernie Chang Pierre Stock Yashar Mehdad Yangyang Shi Raghuraman Krishnamoorthi and Vikas Chandra. 2023. LLM-QAT: Data-free quantization aware training for large language models. arXiv:2305.17888. Retrieved from https:\/\/arxiv.org\/abs\/2305.17888"},{"key":"e_1_3_1_103_2","doi-asserted-by":"publisher","DOI":"10.1145\/2213977.2214086"},{"key":"e_1_3_1_104_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.541"},{"key":"e_1_3_1_105_2","first-page":"22401","volume-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision","author":"Luo Ziyuan","year":"2023","unstructured":"Ziyuan Luo, Qing Guo, Ka Chun Cheung, Simon See, and Renjie Wan. 2023. CopyRNeRF: Protecting the copyright of neural radiance fields. In Proceedings of the IEEE\/CVF International Conference on Computer Vision, 22401\u201322411."},{"key":"e_1_3_1_106_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2020.3000374"},{"key":"e_1_3_1_107_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01264-9_8"},{"key":"e_1_3_1_108_2","doi-asserted-by":"publisher","DOI":"10.1145\/3503161.3547950"},{"key":"e_1_3_1_109_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103658"},{"key":"e_1_3_1_110_2","unstructured":"Junaid Malik Serkan Kiranyaz and Moncef Gabbouj. 2020. FastONN\u2013Python based open-source GPU implementation for operational neural networks. arXiv:2006.02267. Retrieved from https:\/\/arxiv.org\/abs\/2006.02267"},{"key":"e_1_3_1_111_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2020.12.014"},{"key":"e_1_3_1_112_2","first-page":"90","volume-title":"Proceedings of 2018 IEEE\/ACM Symposium on Edge Computing (SEC)","author":"Mao Yunlong","year":"2018","unstructured":"Yunlong Mao, Shanhe Yi, Qun Li, Jinghao Feng, Fengyuan Xu, and Sheng Zhong. 2018. Learning from differentially private neural activations with edge computing. In Proceedings of 2018 IEEE\/ACM Symposium on Edge Computing (SEC). IEEE, 90\u2013102."},{"issue":"2","key":"e_1_3_1_113_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3440754","article-title":"Data protection in AI services: A survey","volume":"54","author":"Meurisch Christian","year":"2021","unstructured":"Christian Meurisch and Max M\u00fchlh\u00e4user. 2021. Data protection in AI services: A survey. ACM Computing Surveys 54, 2 (2021), 1\u201338.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_1_114_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3196274"},{"key":"e_1_3_1_115_2","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1109\/SP.2017.12","volume-title":"Proceedings of 2017 IEEE Symposium on Security and Privacy (SP)","author":"Mohassel Payman","year":"2017","unstructured":"Payman Mohassel and Yupeng Zhang. 2017. SecureML: A system for scalable privacy-preserving machine learning. In Proceedings of 2017 IEEE Symposium on Security and Privacy (SP). IEEE, 19\u201338."},{"key":"e_1_3_1_116_2","unstructured":"Mohammad Naseri Yufei Han and Emiliano De Cristofaro 2023. BadVFL: Backdoor attacks in vertical federated learning. arXiv:2304.08847. Retrieved from https:\/\/arxiv.org\/abs\/2304.08847"},{"key":"e_1_3_1_117_2","doi-asserted-by":"crossref","first-page":"866","DOI":"10.1109\/SP40001.2021.00069","volume-title":"Proceedings of 2021 IEEE Symposium on Security and Privacy (SP)","author":"Nasr Milad","year":"2021","unstructured":"Milad Nasr, Shuang Songi, Abhradeep Thakurta, Nicolas Papernot, and Nicholas Carlin. 2021. Adversary instantiation: Lower bounds for differentially private machine learning. In Proceedings of 2021 IEEE Symposium on Security and Privacy (SP). IEEE, 866\u2013882."},{"key":"e_1_3_1_118_2","doi-asserted-by":"publisher","unstructured":"Rodion Novkin Florian Klemme and Hussam Amrouch. 2023. Approximation-and quantization-aware training forgraph neural networks. IEEE Transactions on Computers 73 2 (2023) 599\u2013612. DOI: 10.1109\/TC.2023.3337319","DOI":"10.1109\/TC.2023.3337319"},{"key":"e_1_3_1_119_2","first-page":"3989","volume-title":"Proceedings of 31st USENIX Security Symposium (USENIX Security \u201922)","author":"Pan Xudong","year":"2022","unstructured":"Xudong Pan, Mi Zhang, Yifan Yan, Jiaming Zhu, and Zhemin Yang. 2022. Exploring the security boundary of data reconstruction via neuron exclusivity analysis. In Proceedings of 31st USENIX Security Symposium (USENIX Security \u201922), 3989\u20134006."},{"key":"e_1_3_1_120_2","unstructured":"Divyarajsinh N. Parmar and Brijesh B. Mehta. 2014. Face recognition methods & applications. arXiv:1403.0485. Retrieved from https:\/\/arxiv.org\/abs\/1403.0485"},{"key":"e_1_3_1_121_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01252-6_17"},{"key":"e_1_3_1_122_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00241"},{"key":"e_1_3_1_123_2","doi-asserted-by":"publisher","DOI":"10.1145\/3534678.3539376"},{"key":"e_1_3_1_124_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01307"},{"issue":"2023","key":"e_1_3_1_125_2","doi-asserted-by":"crossref","first-page":"3088","DOI":"10.1109\/TIFS.2023.3274391","article-title":"Binarizing split learning for data privacy enhancement and computation reduction","volume":"18","author":"Pham Ngoc Duy","year":"2023","unstructured":"Ngoc Duy Pham, Alsharif Abuadbba, Yansong Gao, Khoa Tran Phan, and Naveen Chilamkurti. 2023. Binarizing split learning for data privacy enhancement and computation reduction. IEEE Transactions on Information Forensics and Security 18 (2023), 3088\u20133100.","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"e_1_3_1_126_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.future.2020.12.003"},{"key":"e_1_3_1_127_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3372803"},{"key":"e_1_3_1_128_2","first-page":"13285","volume-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision","author":"Quan Yuhui","year":"2023","unstructured":"Yuhui Quan, Huan Teng, Ruotao Xu, Jun Huang, and Hui Ji. 2023. Fingerprinting deep image restoration models. In Proceedings of the IEEE\/CVF International Conference on Computer Vision, 13285\u201313295."},{"key":"e_1_3_1_129_2","first-page":"10320","volume-title":"Proceedings of the 33rd International Conference on Neural Information Processing Systems","author":"Rajput Shashank","year":"2019","unstructured":"Shashank Rajput, Hongyi Wang, Zachary Charles, and Dimitris Papailiopoulos. 2019. DETOX: A redundancy-based framework for faster and more robust gradient aggregation. In Proceedings of the 33rd International Conference on Neural Information Processing Systems, 10320\u201310330."},{"issue":"7","key":"e_1_3_1_130_2","doi-asserted-by":"crossref","first-page":"703","DOI":"10.1016\/j.ifacol.2022.07.526","article-title":"Quantum computing and resilient design perspectives for cybersecurity of feedback systems","volume":"55","author":"Rangan Keshav Kasturi","year":"2022","unstructured":"Keshav Kasturi Rangan, Jihan Abou Halloun, Henrique Oyama, Samantha Cherney, Ilham Azali Assoumani, Nazir Jairazbhoy, Helen Durand, and Simon Ka Ng. 2022. Quantum computing and resilient design perspectives for cybersecurity of feedback systems. IFAC-PapersOnLine 55, 7 (2022), 703\u2013708.","journal-title":"IFAC-PapersOnLine"},{"key":"e_1_3_1_131_2","doi-asserted-by":"publisher","DOI":"10.1145\/359340.359342"},{"key":"e_1_3_1_132_2","unstructured":"Adriana Romero Nicolas Ballas Samira Ebrahimi Kahou Antoine Chassang Carlo Gatta and Yoshua Bengio. 2014. FitNets: Hints for thin deep nets. arXiv:1412.6550. Retrieved from https:\/\/arxiv.org\/abs\/1412.6550"},{"key":"e_1_3_1_133_2","doi-asserted-by":"publisher","DOI":"10.1145\/3195970.3196023"},{"key":"e_1_3_1_134_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00474"},{"key":"e_1_3_1_135_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3263507"},{"key":"e_1_3_1_136_2","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"e_1_3_1_137_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2021.3098051"},{"key":"e_1_3_1_138_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2020.3041404"},{"key":"e_1_3_1_139_2","unstructured":"Jingwei Sun Ang Li Binghui Wang Huanrui Yang Hai Li and Yiran Chen. 2020. Provable defense against privacy leakage in federated learning from representation perspective. arXiv:2012.06043. Retrieved from https:\/\/arxiv.org\/abs\/2012.06043"},{"key":"e_1_3_1_140_2","doi-asserted-by":"publisher","DOI":"10.1145\/3629976"},{"key":"e_1_3_1_141_2","first-page":"1433","volume-title":"Proceedings of 31st USENIX Security Symposium (USENIX Security \u201922)","author":"Tang Xinyu","year":"2022","unstructured":"Xinyu Tang, Saeed Mahloujifar, Liwei Song, Virat Shejwalkar, Milad Nasr, Amir Houmansadr, and Prateek Mittal. 2022. Mitigating membership inference attacks by self-distillation through a novel ensemble architecture. In Proceedings of 31st USENIX Security Symposium (USENIX Security \u201922), 1433\u20131450."},{"key":"e_1_3_1_142_2","unstructured":"Dat Thanh Tran Serkan Kiranyaz Moncef Gabbouj and Alexandros Iosifidis. 2018. Progressive operational perceptron with memory. arXiv:1808.06377. Retrieved from https:\/\/arxiv.org\/abs\/1808.06377"},{"issue":"3","key":"e_1_3_1_143_2","doi-asserted-by":"crossref","first-page":"710","DOI":"10.1109\/TNNLS.2019.2914082","article-title":"Heterogeneous multilayer generalized operational perceptron","volume":"31","author":"Tran Dat Thanh","year":"2020","unstructured":"Dat Thanh Tran, Serkan Kiranyaz, Moncef Gabbouj, and Alexandros Iosifidis. 2020. Heterogeneous multilayer generalized operational perceptron. IEEE Transactions on Neural Networks and Learning Systems 31, 3 (2020), 710\u2013724.","journal-title":"IEEE Transactions on Neural Networks and Learning Systems"},{"key":"e_1_3_1_144_2","first-page":"1168","volume-title":"Proceedings of 2019 IEEE International Conference on Image Processing (ICIP)","author":"Tran Dat Thanh","year":"2019","unstructured":"Dat Thanh Tran, Serkan Kiranyaz, Moncef Gabbouj, and Alexandros Iosifidis. 2019. Knowledge transfer for face verification using heterogeneous generalized operational perceptrons. In Proceedings of 2019 IEEE International Conference on Image Processing (ICIP). IEEE, 1168\u20131172."},{"key":"e_1_3_1_145_2","first-page":"24","volume-title":"Proceedings of the 29th Annual International Conference on Theory and Applications of Cryptographic Techniques (EUROCRYPT \u201920)","author":"Van Dijk Marten","year":"2010","unstructured":"Marten Van Dijk, Craig Gentry, Shai Halevi, and Vinod Vaikuntanathan. 2010. Fully homomorphic encryption over the integers. In Proceedings of the 29th Annual International Conference on Theory and Applications of Cryptographic Techniques (EUROCRYPT \u201920). Springer, 24\u201343."},{"key":"e_1_3_1_146_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103278"},{"key":"e_1_3_1_147_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2021.108671"},{"key":"e_1_3_1_148_2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2023.3304318"},{"key":"e_1_3_1_149_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.sigpro.2018.10.001"},{"key":"e_1_3_1_150_2","doi-asserted-by":"publisher","DOI":"10.1145\/3219819.3220106"},{"key":"e_1_3_1_151_2","doi-asserted-by":"crossref","unstructured":"Run Wang Ziheng Huang Zhikai Chen Li Liu Jing Chen and Lina Wang. 2022. Anti-forgery: Towards a stealthy and robust deepfake disruption attack via adversarial perceptual-aware perturbations. arXiv:2206.00477. Retrieved from https:\/\/arxiv.org\/abs\/2206.00477","DOI":"10.24963\/ijcai.2022\/107"},{"key":"e_1_3_1_152_2","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475518"},{"key":"e_1_3_1_153_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i13.17387"},{"key":"e_1_3_1_154_2","first-page":"739","volume-title":"Proceedings of 20th USENIX Symposium on Networked Systems Design and Implementation (NSDI \u201923)","author":"Wang Weiyang","year":"2023","unstructured":"Weiyang Wang, Moein Khazraee, Zhizhen Zhong, Manya Ghobadi, Zhihao Jia, Dheevatsa Mudigere, Ying Zhang, and Anthony Kewitsch. 2023. TopoOpt: Co-optimizing network topology and parallelization strategy for distributed training jobs. In Proceedings of 20th USENIX Symposium on Networked Systems Design and Implementation (NSDI \u201923), 739\u2013767."},{"key":"e_1_3_1_155_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01450"},{"key":"e_1_3_1_156_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2022.08.002"},{"key":"e_1_3_1_157_2","doi-asserted-by":"crossref","unstructured":"Yijue Wang Chenghong Wang Zigeng Wang Shanglin Zhou Hang Liu Jinbo Bi Caiwen Ding and Sanguthevar Rajasekaran. 2020. Against membership inference attack: Pruning is all you need. arXiv:2008.13578. Retrieved from https:\/\/arxiv.org\/abs\/2008.13578","DOI":"10.24963\/ijcai.2021\/432"},{"key":"e_1_3_1_158_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00754"},{"key":"e_1_3_1_159_2","unstructured":"Merrick S. Watchorn and Q. Qis. 2022. Quantum Chemistry for Detecting Cybersecurity Threats to Information Systems. Retrieved from https:\/\/www.reddixgroup.com\/wp-content\/uploads\/Quantum-Chemistry-as-a-Security-Solution-by-QSA-07_08_2022.pdf"},{"key":"e_1_3_1_160_2","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2020.3030671"},{"key":"e_1_3_1_161_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2023.3242704"},{"key":"e_1_3_1_162_2","doi-asserted-by":"crossref","first-page":"10379","DOI":"10.1609\/aaai.v37i9.26235","article-title":"Faster adaptive federated learning","volume":"37","author":"Wu Xidong","year":"2023","unstructured":"Xidong Wu, Feihu Huang, Zhengmian Hu, and Heng Huang. 2023. Faster adaptive federated learning. In Proceedings of the AAAI Conference on Artificial Intelligence 37 (2023), 10379\u201310387.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_163_2","doi-asserted-by":"publisher","DOI":"10.1145\/3581783.3612471"},{"issue":"11","key":"e_1_3_1_164_2","first-page":"3165","article-title":"Mixing activations and labels in distributed training for split learning","volume":"33","author":"Xiao Danyang","year":"2021","unstructured":"Danyang Xiao, Chengang Yang, and Weigang Wu. 2021. Mixing activations and labels in distributed training for split learning. IEEE Transactions on Parallel and Distributed Systems 33, 11 (2021), 3165\u20133177.","journal-title":"IEEE Transactions on Parallel and Distributed Systems"},{"key":"e_1_3_1_165_2","first-page":"38087","volume-title":"Proceedings of International Conference on Machine Learning","author":"Xiao Guangxuan","year":"2023","unstructured":"Guangxuan Xiao, Ji Lin, Mickael Seznec, Hao Wu, Julien Demouth, and Song Han. 2023. Smoothquant: Accurate and efficient post-training quantization for large language models. In Proceedings of International Conference on Machine Learning. PMLR, 38087\u201338099."},{"key":"e_1_3_1_166_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2019.2918437"},{"key":"e_1_3_1_167_2","first-page":"10203","volume-title":"Proceedings of the 36th International Conference on Neural Information Processing Systems","author":"Xiao Yaxin","year":"2022","unstructured":"Yaxin Xiao, Qingqing Ye, Haibo Hu, Huadi Zheng, Chengfang Fang, and Jie Shi. 2022. MExMI: Pool-based active model extraction crossover membership inference. In Proceedings of the 36th International Conference on Neural Information Processing Systems, 10203\u201310216."},{"key":"e_1_3_1_168_2","doi-asserted-by":"crossref","first-page":"10478","DOI":"10.1609\/aaai.v35i12.17254","article-title":"Step-ahead error feedback for distributed training with compressed gradient","volume":"35","author":"Xu An","year":"2021","unstructured":"An Xu, Zhouyuan Huo, and Heng Huang. 2021. Step-ahead error feedback for distributed training with compressed gradient. In Proceedings of the AAAI Conference on Artificial Intelligence 35 (2021), 10478\u201310486.","journal-title":"In Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_169_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2021.3119950"},{"issue":"7","key":"e_1_3_1_170_2","first-page":"6784","article-title":"DDRM: A continual frequency estimation mechanism with local differential privacy","volume":"35","author":"Xue Qiao","year":"2022","unstructured":"Qiao Xue, Qingqing Ye, Haibo Hu, Youwen Zhu, and Jian Wang. 2022. DDRM: A continual frequency estimation mechanism with local differential privacy. IEEE Transactions on Knowledge and Data Engineering, 35, 7 (2022), 6784\u20136797.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"e_1_3_1_171_2","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2022.3222880"},{"key":"e_1_3_1_172_2","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2020.3043203"},{"key":"e_1_3_1_173_2","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2023.3321755"},{"key":"e_1_3_1_174_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.643"},{"key":"e_1_3_1_175_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3287072"},{"key":"e_1_3_1_176_2","doi-asserted-by":"crossref","first-page":"2387","DOI":"10.1109\/TSC.2023.3258144","article-title":"A visually meaningful image encryption scheme based on lossless compression SPIHT coding","volume":"16","author":"Yang Yang","year":"2023","unstructured":"Yang Yang, Ming Cheng, Yingqiu Ding, and Weiming Zhang. 2023. A visually meaningful image encryption scheme based on lossless compression SPIHT coding. IEEE Transactions on Services Computing 16 (2023), 2387\u20132401.","journal-title":"IEEE Transactions on Services Computing"},{"key":"e_1_3_1_177_2","doi-asserted-by":"crossref","first-page":"10871","DOI":"10.1609\/aaai.v37i9.26289","article-title":"Purifier: Defending data inference attacks via transforming confidence scores","volume":"37","author":"Yang Ziqi","year":"2023","unstructured":"Ziqi Yang, Lijin Wang, Da Yang, Jie Wan, Ziming Zhao, Ee-Chien Chang, Fan Zhang, and Kui Ren. 2023. Purifier: Defending data inference attacks via transforming confidence scores. Proceedings of the AAAI Conference on Artificial Intelligence 37 (2023), 10871\u201310879.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_178_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3163591"},{"key":"e_1_3_1_179_2","unstructured":"Seul-Ki Yeom Kyung-Hwan Shim and Jee-Hyun Hwang. 2021. Toward compact deep neural networks via energy-aware pruning. arXiv:2103.10858. Retrieved from https:\/\/arxiv.org\/abs\/2103.10858"},{"key":"e_1_3_1_180_2","doi-asserted-by":"publisher","DOI":"10.1145\/3543507.3583306"},{"key":"e_1_3_1_181_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00958"},{"key":"e_1_3_1_182_2","doi-asserted-by":"publisher","DOI":"10.3390\/su12083281"},{"key":"e_1_3_1_183_2","doi-asserted-by":"crossref","first-page":"777","DOI":"10.1109\/TIFS.2023.3324747","article-title":"FedComm: A privacy-enhanced and efficient authentication protocol for federated learning in vehicular ad-hoc networks","volume":"19","author":"Yuan Xiaohan","year":"2023","unstructured":"Xiaohan Yuan, Jiqiang Liu, Bin Wang, Wei Wang, Bin Wang, Tao Li, Xiaobo Ma, and Witold Pedrycz. 2023. FedComm: A privacy-enhanced and efficient authentication protocol for federated learning in vehicular ad-hoc networks. IEEE Transactions on Information Forensics and Security 19 (2023), 777\u2013792.","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"e_1_3_1_184_2","doi-asserted-by":"publisher","DOI":"10.1145\/3383779"},{"issue":"100","key":"e_1_3_1_185_2","first-page":"1","article-title":"FedLab: A flexible federated learning framework","volume":"24","author":"Zeng Dun","year":"2023","unstructured":"Dun Zeng, Siqi Liang, Xiangjing Hu, Hui Wang, and Zenglin Xu. 2023. FedLab: A flexible federated learning framework. Journal of Machine Learning Research 24, 100 (2023), 1\u20137.","journal-title":"Journal of Machine Learning Research"},{"key":"e_1_3_1_186_2","first-page":"3517","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition","author":"Zhang Feng","year":"2019","unstructured":"Feng Zhang, Xiatian Zhu, and Mao Ye. 2019. Fast human pose estimation. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, 3517\u20133526."},{"key":"e_1_3_1_187_2","doi-asserted-by":"crossref","first-page":"12805","DOI":"10.1609\/aaai.v34i07.6976","article-title":"Model watermarking for image processing networks","volume":"34","author":"Zhang Jie","year":"2020","unstructured":"Jie Zhang, Dongdong Chen, Jing Liao, Han Fang, Weiming Zhang, Wenbo Zhou, Hao Cui, and Nenghai Yu. 2020. Model watermarking for image processing networks. Proceedings of the AAAI Conference on Artificial Intelligence 34 (2020), 12805\u201312812.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"key":"e_1_3_1_188_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i9.26330"},{"key":"e_1_3_1_189_2","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2024.3439709"},{"key":"e_1_3_1_190_2","doi-asserted-by":"publisher","DOI":"10.1145\/3404397.3404473"},{"key":"e_1_3_1_191_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00716"},{"key":"e_1_3_1_192_2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00033"},{"key":"e_1_3_1_193_2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2656824"},{"issue":"3","key":"e_1_3_1_194_2","doi-asserted-by":"crossref","first-page":"1261","DOI":"10.1109\/TDSC.2019.2907081","article-title":"Denoising in the dark: Privacy-preserving deep neural network-based image denoising","volume":"18","author":"Zheng Yifeng","year":"2019","unstructured":"Yifeng Zheng, Huayi Duan, Xiaoting Tang, Cong Wang, and Jiantao Zhou. 2019. Denoising in the dark: Privacy-preserving deep neural network-based image denoising. IEEE Transactions on Dependable and Secure Computing 18, 3 (2019), 1261\u20131275.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_1_195_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2019.101631"},{"key":"e_1_3_1_196_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2019.2918951"},{"key":"e_1_3_1_197_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01267-0_40"},{"key":"e_1_3_1_198_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.244"}],"container-title":["ACM Transactions on Multimedia Computing, Communications, and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3700792","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,13]],"date-time":"2025-08-13T12:05:18Z","timestamp":1755086718000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3700792"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,8,13]]},"references-count":197,"journal-issue":{"issue":"8","published-print":{"date-parts":[[2025,8,31]]}},"alternative-id":["10.1145\/3700792"],"URL":"https:\/\/doi.org\/10.1145\/3700792","relation":{},"ISSN":["1551-6857","1551-6865"],"issn-type":[{"type":"print","value":"1551-6857"},{"type":"electronic","value":"1551-6865"}],"subject":[],"published":{"date-parts":[[2025,8,13]]},"assertion":[{"value":"2024-05-02","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-09-20","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-08-13","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}