{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,19]],"date-time":"2025-12-19T15:55:55Z","timestamp":1766159755376,"version":"build-2065373602"},"reference-count":204,"publisher":"Association for Computing Machinery (ACM)","issue":"4","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2026,3,31]]},"abstract":"<jats:p>We present a comprehensive analysis of privacy attacks and countermeasures in data-driven systems. We systematically categorize attacks targeting three domains: anonymous data (linkage and structural attacks), statistical aggregates (reconstruction and differential attacks), and privacy-preserving models (extraction, reconstruction, membership inference, and inversion attacks). For each category, we analyze attack methodologies, adversary capabilities, and vulnerability mechanisms. We further evaluate countermeasures including perturbation techniques, randomization methods, query auditing, and model-level defenses, examining their effectiveness and inherent privacy-utility tradeoffs. Our analysis reveals that while differential privacy offers strong theoretical guarantees, it faces implementation challenges and potential vulnerabilities to emerging attacks. We identify critical research directions and provide researchers and practitioners with a structured framework for understanding privacy resilience in increasingly complex data ecosystems.<\/jats:p>","DOI":"10.1145\/3770853","type":"journal-article","created":{"date-parts":[[2025,10,15]],"date-time":"2025-10-15T10:14:57Z","timestamp":1760523297000},"page":"1-35","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["Digital Privacy Under Attack: Challenges and Enablers"],"prefix":"10.1145","volume":"58","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5630-5661","authenticated-orcid":false,"given":"Baobao","family":"Song","sequence":"first","affiliation":[{"name":"Faculty of Engineering and IT, University of Technology Sydney","place":["Sydney, Australia"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5819-765X","authenticated-orcid":false,"given":"Shiva Raj","family":"Pokhrel","sequence":"additional","affiliation":[{"name":"School of Information Technology, Deakin University","place":["Geelong, Australia"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-5740-7069","authenticated-orcid":false,"given":"Mengyue","family":"Deng","sequence":"additional","affiliation":[{"name":"Hunan Key Laboratory of Data Science & Blockchain, Business School, Hunan University","place":["Changsha, China"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7523-9487","authenticated-orcid":false,"given":"Qiujun","family":"Lan","sequence":"additional","affiliation":[{"name":"Hunan Key Laboratory of Data Science & Blockchain, Business School, Hunan University","place":["Changsha, China"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6143-6850","authenticated-orcid":false,"given":"Robin Ram","family":"Doss","sequence":"additional","affiliation":[{"name":"School of Information Technology, Deakin University","place":["Geelong, Australia"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3411-7947","authenticated-orcid":false,"given":"Tianqing","family":"Zhu","sequence":"additional","affiliation":[{"name":"Faculty of Data Science, City University of Macau","place":["Macau, Macao"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1583-641X","authenticated-orcid":false,"given":"Gang","family":"Li","sequence":"additional","affiliation":[{"name":"School of Information Technology, Deakin University","place":["Geelong, Australia"]}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,11,8]]},"reference":[{"key":"e_1_3_2_2_2","volume-title":"The 2010 Census Confidentiality Protections Failed, Here\u2019s How and Why","author":"Abowd John M.","year":"2023","unstructured":"John M. Abowd, Tamara Adams, Robert Ashmead, David Darais, Sourya Dey, Simson L. Garfinkel, Nathan Goldschlag, Daniel Kifer, Philip Leclerc, Ethan Lew, et\u00a0al. 2023. The 2010 Census Confidentiality Protections Failed, Here\u2019s How and Why. Technical Report. National Bureau of Economic Research."},{"key":"e_1_3_2_3_2","doi-asserted-by":"crossref","first-page":"20","DOI":"10.1016\/j.cose.2016.12.014","article-title":"\\(\\tau\\) -safety: A privacy model for sequential publication with arbitrary updates","volume":"66","author":"Anjum Adeel","year":"2017","unstructured":"Adeel Anjum, Guillaume Raschia, Marc Gelgon, Abid Khan, Naveed Ahmad, Mansoor Ahmed, Sabah Suhail, M. Masoom Alam, et\u00a0al. 2017. \\(\\tau\\) -safety: A privacy model for sequential publication with arbitrary updates. Computers and Security 66 (2017), 20\u201339.","journal-title":"Computers and Security"},{"key":"e_1_3_2_4_2","doi-asserted-by":"crossref","first-page":"319","DOI":"10.1145\/2976749.2978355","volume-title":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","author":"Backes Michael","year":"2016","unstructured":"Michael Backes et\u00a0al. 2016. Membership privacy in MicroRNA-based studies. In Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security. ACM, Vienna, Austria, 319\u2013330."},{"key":"e_1_3_2_5_2","doi-asserted-by":"crossref","unstructured":"Lars Backstrom Cynthia Dwork and Jon Kleinberg. 2007. Wherefore art thou R3579X? Anonymized social networks hidden patterns and structural steganography. (2007) 181\u2013190.","DOI":"10.1145\/1242572.1242598"},{"key":"e_1_3_2_6_2","first-page":"1","volume-title":"Proceedings of the ICC 2021-IEEE International Conference on Communications","author":"Bai Yang","year":"2021","unstructured":"Yang Bai, Degang Chen, Ting Chen, and Mingyu Fan. 2021. Ganmia: Gan-based black-box membership inference attack. In Proceedings of the ICC 2021-IEEE International Conference on Communications. IEEE, 1\u20136."},{"issue":"3","key":"e_1_3_2_7_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3502288","article-title":"Understanding online privacy\u2013a systematic review of privacy visualizations and privacy by design guidelines","volume":"55","author":"Barth Susanne","year":"2022","unstructured":"Susanne Barth, Dan Ionita, and Pieter Hartel. 2022. Understanding online privacy\u2013a systematic review of privacy visualizations and privacy by design guidelines. ACM Computing Surveys 55, 3 (2022), 1\u201337.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_8_2","doi-asserted-by":"crossref","first-page":"29","DOI":"10.1145\/3488659.3493779","volume-title":"Proceedings of the 2nd ACM International Workshop on Distributed Machine Learning","author":"Benkraouda Hadjer","year":"2021","unstructured":"Hadjer Benkraouda and Klara Nahrstedt. 2021. Image reconstruction attacks on distributed machine learning models. In Proceedings of the 2nd ACM International Workshop on Distributed Machine Learning. 29\u201335."},{"key":"e_1_3_2_9_2","first-page":"10","article-title":"All your contacts are belong to us: Automated identity theft attacks on social networks","author":"Bilge Leyla","year":"2009","unstructured":"Leyla Bilge, Thorsten Strufe, Davide Balzarotti, and Engin Kirda. 2009. All your contacts are belong to us: Automated identity theft attacks on social networks. Web Security (2009), 10.","journal-title":"Web Security"},{"key":"e_1_3_2_10_2","unstructured":"Lewis Birch William Hackett Stefan Trawicki Neeraj Suri and Peter Garraghan. 2023. Model leeching: An extraction attack targeting llms. arXiv:2309.10544. Retrieved from https:\/\/arxiv.org\/abs\/2309.10544"},{"issue":"4","key":"e_1_3_2_11_2","doi-asserted-by":"crossref","first-page":"232","DOI":"10.1134\/S0361768823040047","article-title":"Application of computer simulation to the anonymization of personal data: State-of-the-art and key points","volume":"49","author":"Borisov AV","year":"2023","unstructured":"AV Borisov, AV Bosov, and AV Ivanov. 2023. Application of computer simulation to the anonymization of personal data: State-of-the-art and key points. Programming and Computer Software 49, 4 (2023), 232\u2013246.","journal-title":"Programming and Computer Software"},{"key":"e_1_3_2_12_2","volume-title":"Proceedings of the 30th USENIX Security Symposium","author":"Cao Xiaoyu","year":"2021","unstructured":"Xiaoyu Cao, Jinyuan Jia, and Neil Zhenqiang Gong. 2021. Data poisoning attacks to local differential privacy protocols. In Proceedings of the 30th USENIX Security Symposium."},{"key":"e_1_3_2_13_2","doi-asserted-by":"crossref","first-page":"420","DOI":"10.1016\/j.ins.2019.05.053","article-title":"Efficient privacy preservation of big data for accurate data mining","volume":"527","author":"Chamikara Mahawaga Arachchige Pathum","year":"2020","unstructured":"Mahawaga Arachchige Pathum Chamikara, Peter Bertok, Dongxi Liu, Seyit Camtepe, and Ibrahim Khalil. 2020. Efficient privacy preservation of big data for accurate data mining. Information Sciences 527 (2020), 420\u2013443.","journal-title":"Information Sciences"},{"key":"e_1_3_2_14_2","first-page":"199","volume-title":"Proceedings of the 2016 International Conference on Management of Data","author":"Chang Zhao","year":"2016","unstructured":"Zhao Chang, Lei Zou, and Feifei Li. 2016. Privacy preserving subgraph matching on large graphs in cloud. In Proceedings of the 2016 International Conference on Management of Data. 199\u2013213."},{"key":"e_1_3_2_15_2","article-title":"Practical attribute reconstruction attack against federated learning","author":"Chen Chen","year":"2022","unstructured":"Chen Chen, Lingjuan Lyu, Han Yu, and Gang Chen. 2022. Practical attribute reconstruction attack against federated learning. IEEE Transactions on Big Data (2022).","journal-title":"IEEE Transactions on Big Data"},{"key":"e_1_3_2_16_2","doi-asserted-by":"crossref","first-page":"107637","DOI":"10.1016\/j.future.2024.107637","article-title":"KDRSFL: A knowledge distillation resistance transfer framework for defending model inversion attacks in split federated learning","volume":"166","author":"Chen Renlong","year":"2025","unstructured":"Renlong Chen, Hui Xia, Kai Wang, Shuo Xu, and Rui Zhang. 2025. KDRSFL: A knowledge distillation resistance transfer framework for defending model inversion attacks in split federated learning. Future Generation Computer Systems 166 (2025), 107637.","journal-title":"Future Generation Computer Systems"},{"key":"e_1_3_2_17_2","doi-asserted-by":"crossref","first-page":"185","DOI":"10.1007\/978-3-030-59013-0_10","volume-title":"Computer Security\u2013ESORICS 2020: 25th European Symposium on Research in Computer Security, ESORICS 2020, Guildford, UK, September 14\u201318, 2020, Proceedings, Part II 25","author":"Chen Xihui","year":"2020","unstructured":"Xihui Chen, Ema K\u00ebpuska, Sjouke Mauw, and Yunior Ram\u00edrez-Cruz. 2020. Active re-identification attacks on periodically released dynamic social graphs. In Computer Security\u2013ESORICS 2020: 25th European Symposium on Research in Computer Security, ESORICS 2020, Guildford, UK, September 14\u201318, 2020, Proceedings, Part II 25. Springer, 185\u2013205."},{"issue":"2","key":"e_1_3_2_18_2","doi-asserted-by":"crossref","first-page":"100048","DOI":"10.1016\/j.hcc.2021.100048","article-title":"A survey on blockchain systems: Attacks, defenses, and privacy preservation","volume":"2","author":"Chen Yourong","year":"2022","unstructured":"Yourong Chen, Hao Chen, Yang Zhang, Meng Han, Madhuri Siddula, and Zhipeng Cai. 2022. A survey on blockchain systems: Attacks, defenses, and privacy preservation. High-Confidence Computing 2, 2 (2022), 100048.","journal-title":"High-Confidence Computing"},{"key":"e_1_3_2_19_2","unstructured":"Albert Cheu et\u00a0al. 2019. Manipulation attacks in local differential privacy. arXiv:1909.09630. Retrieved from https:\/\/arxiv.org\/abs\/1909.09630"},{"key":"e_1_3_2_20_2","doi-asserted-by":"crossref","first-page":"530","DOI":"10.1007\/978-3-319-93040-4_42","volume-title":"Proceedings of the Pacific-Asia Conference on Knowledge Discovery and Data Mining","author":"Christen Peter","year":"2018","unstructured":"Peter Christen, Anushka Vidanage, Thilina Ranbaduge, and Rainer Schnell. 2018. Pattern-mining based cryptanalysis of Bloom filters for privacy-preserving record linkage. In Proceedings of the Pacific-Asia Conference on Knowledge Discovery and Data Mining. Springer, 530\u2013542."},{"issue":"1","key":"e_1_3_2_21_2","first-page":"1","article-title":"Linear program reconstruction in practice","volume":"10","author":"Cohen Aloni","year":"2020","unstructured":"Aloni Cohen and Kobbi Nissim. 2020. Linear program reconstruction in practice. Journal of Privacy and Confidentiality 10, 1 (2020), 1\u201313.","journal-title":"Journal of Privacy and Confidentiality"},{"key":"e_1_3_2_22_2","doi-asserted-by":"crossref","first-page":"56","DOI":"10.1145\/2643132","article-title":"Privacy, anonymity, and big data in the social sciences","volume":"57","author":"Daries Jon P.","year":"2014","unstructured":"Jon P. Daries, Justin Reich, Jim Waldo, Elise M. Young, Jonathan Whittinghill, Andrew Dean Ho, Daniel Thomas Seaton, and Isaac Chuang. 2014. Privacy, anonymity, and big data in the social sciences. Communications of the ACM 57 (2014), 56\u201363.","journal-title":"Communications of the ACM"},{"key":"e_1_3_2_23_2","doi-asserted-by":"crossref","first-page":"1376","DOI":"10.1038\/srep01376","article-title":"Unique in the crowd: The privacy bounds of human mobility","volume":"3","author":"Montjoye Yves-Alexandre De","year":"2013","unstructured":"Yves-Alexandre De Montjoye, C\u00e9sar A. Hidalgo, Michel Verleysen, and Vincent D. Blondel. 2013. Unique in the crowd: The privacy bounds of human mobility. Scientific Reports 3 (2013), 1376.","journal-title":"Scientific Reports"},{"key":"e_1_3_2_24_2","first-page":"281","volume-title":"Proceedings of the 2021 Third IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications","author":"Pietro Roberto Di","year":"2021","unstructured":"Roberto Di Pietro and Stefano Cresci. 2021. Metaverse: Security and privacy issues. In Proceedings of the 2021 Third IEEE International Conference on Trust, Privacy and Security in Intelligent Systems and Applications. IEEE, 281\u2013288."},{"key":"e_1_3_2_25_2","first-page":"439","volume-title":"Proceedings of the 2023 IEEE 36th Computer Security Foundations Symposium","author":"Dibbo Sayanton V.","year":"2023","unstructured":"Sayanton V. Dibbo. 2023. Sok: Model inversion attack landscape: Taxonomy, challenges, and future roadmap. In Proceedings of the 2023 IEEE 36th Computer Security Foundations Symposium. IEEE, 439\u2013456."},{"key":"e_1_3_2_26_2","first-page":"475","article-title":"Detecting violations of differential privacy","author":"Ding Zeyu","year":"2018","unstructured":"Zeyu Ding, Yuxin Wang, Guanhong Wang, Danfeng Zhang, and Daniel Kifer. 2018. Detecting violations of differential privacy. Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security (2018), 475\u2013489.","journal-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security"},{"key":"e_1_3_2_27_2","first-page":"202","volume-title":"Proceedings of the 22nd ACM SIGMOD-SIGACT-SIGART symposium on Principles of Database Systems","author":"Dinur Irit","year":"2003","unstructured":"Irit Dinur and Kobbi Nissim. 2003. Revealing information while preserving privacy. In Proceedings of the 22nd ACM SIGMOD-SIGACT-SIGART symposium on Principles of Database Systems. ACM Press, San Diego, California, 202\u2013210."},{"key":"e_1_3_2_28_2","first-page":"506","volume-title":"Proceedings of the Database and Expert Systems Applications","author":"Dou Deming","year":"2012","unstructured":"Deming Dou and St\u00e9phane Coulondre. 2012. Detecting privacy violations in multiple views publishing. In Proceedings of the Database and Expert Systems Applications. Springer, Berlin, 506\u2013513."},{"key":"e_1_3_2_29_2","first-page":"8717","volume-title":"Proceedings of the International Conference on Machine Learning","author":"Duan Jinhao","year":"2023","unstructured":"Jinhao Duan, Fei Kong, Shiqi Wang, Xiaoshuang Shi, and Kaidi Xu. 2023. Are diffusion models vulnerable to membership inference attacks?. In Proceedings of the International Conference on Machine Learning. PMLR, 8717\u20138730."},{"key":"e_1_3_2_30_2","unstructured":"Michael Duan Anshuman Suri Niloofar Mireshghallah Sewon Min Weijia Shi Luke Zettlemoyer Yulia Tsvetkov Yejin Choi David Evans and Hannaneh Hajishirzi. 2024. Do membership inference attacks work on large language models? arXiv:2402.07841. Retrieved from https:\/\/arxiv.org\/abs\/2402.07841"},{"key":"e_1_3_2_31_2","first-page":"85","volume-title":"Proceedings of the 39th Annual ACM Symposium on Theory of Computing","author":"Dwork Cynthia","year":"2007","unstructured":"Cynthia Dwork, Frank McSherry, and Kunal Talwar. 2007. The price of privacy and the limits of LP decoding. In Proceedings of the 39th Annual ACM Symposium on Theory of Computing. ACM, San Diego, California, USA, 85."},{"key":"e_1_3_2_32_2","doi-asserted-by":"crossref","first-page":"211","DOI":"10.1561\/0400000042","article-title":"The algorithmic foundations of differential privacy","volume":"9","author":"Dwork Cynthia","year":"2013","unstructured":"Cynthia Dwork and Aaron Roth. 2013. The algorithmic foundations of differential privacy. Foundations and Trends\u00ae in Theoretical Computer Science 9 (2013), 211\u2013407.","journal-title":"Foundations and Trends\u00ae in Theoretical Computer Science"},{"key":"e_1_3_2_33_2","doi-asserted-by":"crossref","first-page":"61","DOI":"10.1146\/annurev-statistics-060116-054123","article-title":"Exposed! A survey of attacks on private data","volume":"4","author":"Dwork Cynthia","year":"2017","unstructured":"Cynthia Dwork, Adam Smith, Thomas Steinke, and Jonathan Ullman. 2017. Exposed! A survey of attacks on private data. Annual Review of Statistics and Its Application 4 (2017), 61\u201384.","journal-title":"Annual Review of Statistics and Its Application"},{"key":"e_1_3_2_34_2","first-page":"469","volume-title":"Proceedings of the Advances in Cryptology.","volume":"5157","author":"Dwork Cynthia","year":"2008","unstructured":"Cynthia Dwork and Sergey Yekhanin. 2008. New efficient attacks on statistical disclosure control mechanisms. In Proceedings of the Advances in Cryptology.David Wagner (Ed.), Vol. 5157, Springer, Berlin, 469\u2013480."},{"key":"e_1_3_2_35_2","article-title":"Hugo awards 2015 incident","author":"Eppstein David","year":"2015","unstructured":"David Eppstein. 2015. Hugo awards 2015 incident. Retrieved from https:\/\/11011110.github.io\/blog\/2015\/09\/09\/instability-vs-anonymization.html","journal-title":"Retrieved from https:\/\/11011110.github.io\/blog\/2015\/09\/09\/instability-vs-anonymization.html"},{"key":"e_1_3_2_36_2","doi-asserted-by":"crossref","first-page":"747","DOI":"10.1007\/s10707-015-0228-8","article-title":"The CASE histogram: Privacy-aware processing of trajectory data using aggregates","volume":"19","author":"Fanaeepour Maryam","year":"2015","unstructured":"Maryam Fanaeepour, Lars Kulik, Egemen Tanin, and Benjamin me P. Rubinstein. 2015. The CASE histogram: Privacy-aware processing of trajectory data using aggregates. GeoInformatica 19 (2015), 747\u2013798.","journal-title":"GeoInformatica"},{"key":"e_1_3_2_37_2","doi-asserted-by":"crossref","first-page":"1322","DOI":"10.1145\/2810103.2813677","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"Fredrikson Matt","year":"2015","unstructured":"Matt Fredrikson, Somesh Jha, and Thomas Ristenpart. 2015. Model inversion attacks that exploit confidence information and basic countermeasures. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, Denver, Colorado, USA, 1322\u20131333."},{"key":"e_1_3_2_38_2","unstructured":"Matthew Fredrikson Eric Lantz Somesh Jha Simon Lin David Page and Thomas Ristenpart. 2014. Privacy in pharmacogenetics: An end-to-end case study of personalized warfarin dosing. (2014) 17."},{"issue":"11","key":"e_1_3_2_39_2","doi-asserted-by":"crossref","first-page":"7357","DOI":"10.1109\/TIT.2023.3288048","article-title":"The effect of symmetry on the De-anonymizability of social networks","volume":"69","author":"Fu Luoyi","year":"2023","unstructured":"Luoyi Fu, Jianzhi Tang, Benjie Miao, Xiaojun Lin, Xinbing Wang, and Chenghu Zhou. 2023. The effect of symmetry on the De-anonymizability of social networks. IEEE Transactions on Information Theory 69, 11 (2023), 7357\u20137372.","journal-title":"IEEE Transactions on Information Theory"},{"key":"e_1_3_2_40_2","doi-asserted-by":"crossref","unstructured":"Srivatsava Ranjit Ganta Shiva Prasad Kasiviswanathan and Adam Smith. 2008. Composition attacks and auxiliary information in data privacy. (2008) 265\u2013273.","DOI":"10.1145\/1401890.1401926"},{"issue":"3","key":"e_1_3_2_41_2","doi-asserted-by":"crossref","first-page":"46","DOI":"10.1145\/3287287","article-title":"Understanding database reconstruction attacks on public data","volume":"62","author":"Garfinkel Simson","year":"2019","unstructured":"Simson Garfinkel, John M. Abowd, and Christian Martindale. 2019. Understanding database reconstruction attacks on public data. Communications of the ACM 62, 3 (2019), 46\u201353.","journal-title":"Communications of the ACM"},{"key":"e_1_3_2_42_2","first-page":"315","volume-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","author":"Grubbs Paul","year":"2018","unstructured":"Paul Grubbs, Marie-Sarah Lacharit\u00e9, Brice Minaud, and Kenneth G. Paterson. 2018. Pump up the Volume: Practical database reconstruction from volume leakage on range queries. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. ACM, Toronto Canada, 315\u2013331."},{"key":"e_1_3_2_43_2","volume-title":"Learning to Reconstruct: Statistical Learning Theory and Encrypted Database Attacks","author":"Grubbs Paul","year":"2019","unstructured":"Paul Grubbs, Marie-Sarah Lacharit\u00e9, Brice Minaud, and Kenneth G. Paterson. 2019. Learning to Reconstruct: Statistical Learning Theory and Encrypted Database Attacks. Technical Report."},{"issue":"2","key":"e_1_3_2_44_2","doi-asserted-by":"crossref","first-page":"146","DOI":"10.1109\/TBDATA.2023.3342623","article-title":"Efficient and privacy-preserving aggregate query over public property graphs","volume":"10","author":"Guan Yunguo","year":"2023","unstructured":"Yunguo Guan, Rongxing Lu, Songnian Zhang, Yandong Zheng, Jun Shao, and Guiyi Wei. 2023. Efficient and privacy-preserving aggregate query over public property graphs. IEEE Transactions on Big Data 10, 2 (2023), 146\u2013157.","journal-title":"IEEE Transactions on Big Data"},{"key":"e_1_3_2_45_2","first-page":"361","volume-title":"Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security","author":"Gui Zichen","year":"2019","unstructured":"Zichen Gui, Oliver Johnson, and Bogdan Warinschi. 2019. Encrypted databases: New volume attacks against range queries. In Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security. ACM, London United Kingdom, 361\u2013378."},{"key":"e_1_3_2_46_2","first-page":"1","article-title":"Recovering genotypes and phenotypes using allele-specific genes","volume":"22","author":"G\u00fcrsoy Gamze","year":"2021","unstructured":"Gamze G\u00fcrsoy, Nancy Lu, Sarah Wagner, and Mark Gerstein. 2021. Recovering genotypes and phenotypes using allele-specific genes. Genome Biology 22 (2021), 1\u20139.","journal-title":"Genome Biology"},{"key":"e_1_3_2_47_2","first-page":"196","volume-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","author":"Gursoy Mehmet Emre","year":"2018","unstructured":"Mehmet Emre Gursoy, Ling Liu, Stacey Truex, Lei Yu, and Wenqi Wei. 2018. Utility-aware synthesis of differentially private and attack-resilient location traces. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. ACM, Toronto Canada, 196\u2013211."},{"key":"e_1_3_2_48_2","article-title":"Security analysis of the COVID-19 contact tracing specifications by Apple Inc. and Google Inc.","author":"Gvili Yaron","year":"2020","unstructured":"Yaron Gvili. 2020. Security analysis of the COVID-19 contact tracing specifications by Apple Inc. and Google Inc. Cryptology ePrint Archive (2020).","journal-title":"Cryptology ePrint Archive"},{"issue":"2","key":"e_1_3_2_49_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3490236","article-title":"Privacy-preserving reputation systems based on blockchain and other cryptographic building blocks: A survey","volume":"55","author":"Hasan Omar","year":"2022","unstructured":"Omar Hasan, Lionel Brunie, and Elisa Bertino. 2022. Privacy-preserving reputation systems based on blockchain and other cryptographic building blocks: A survey. ACM Computing Surveys 55, 2 (2022), 1\u201337.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_50_2","unstructured":"Michael Hay Gerome Miklau David Jensen Don Towsley and Philipp Weis. 2008. Resisting structural reidentification anonymized social networks. (2008) 14."},{"key":"e_1_3_2_51_2","article-title":"Diff-privacy: Diffusion-based face privacy protection","author":"He Xiao","year":"2024","unstructured":"Xiao He, Mingrui Zhu, Dongxin Chen, Nannan Wang, and Xinbo Gao. 2024. Diff-privacy: Diffusion-based face privacy protection. IEEE Transactions on Circuits and Systems for Video Technology (2024).","journal-title":"IEEE Transactions on Circuits and Systems for Video Technology"},{"key":"e_1_3_2_52_2","doi-asserted-by":"crossref","first-page":"603","DOI":"10.1145\/3133956.3134012","volume-title":"Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security","author":"Hitaj Briland","year":"2017","unstructured":"Briland Hitaj, Giuseppe Ateniese, and Fernando Perez-Cruz. 2017. Deep models under the GAN: Information leakage from collaborative deep learning. In Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security. 603\u2013618."},{"issue":"4","key":"e_1_3_2_53_2","doi-asserted-by":"crossref","first-page":"2181","DOI":"10.1109\/TDSC.2023.3300360","article-title":"Protecting privacy in knowledge graphs with personalized anonymization","volume":"21","author":"Hoang Anh-Tu","year":"2023","unstructured":"Anh-Tu Hoang, Barbara Carminati, and Elena Ferrari. 2023. Protecting privacy in knowledge graphs with personalized anonymization. IEEE Transactions on Dependable and Secure Computing 21, 4 (2023), 2181\u20132193.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_2_54_2","unstructured":"Tao Huang Jiayang Meng Hong Chen Guolong Zheng Xu Yang Xun Yi and Hua Wang. 2024. Gradient-guided conditional diffusion models for private image reconstruction: Analyzing adversarial impacts of differential privacy and denoising. arXiv:2411.03053. Retrieved from https:\/\/arxiv.org\/abs\/2411.03053"},{"issue":"2","key":"e_1_3_2_55_2","doi-asserted-by":"crossref","first-page":"234","DOI":"10.26599\/BDMA.2022.9020047","article-title":"Security and privacy in metaverse: A comprehensive survey","volume":"6","author":"Huang Yan","year":"2023","unstructured":"Yan Huang, Yi Joy Li, and Zhipeng Cai. 2023. Security and privacy in metaverse: A comprehensive survey. Big Data Mining and Analytics 6, 2 (2023), 234\u2013247.","journal-title":"Big Data Mining and Analytics"},{"issue":"5","key":"e_1_3_2_56_2","doi-asserted-by":"crossref","first-page":"2157","DOI":"10.1007\/s40747-021-00409-7","article-title":"Online social networks security and privacy: Comprehensive review and analysis","volume":"7","author":"Jain Ankit Kumar","year":"2021","unstructured":"Ankit Kumar Jain, Somya Ranjan Sahoo, and Jyoti Kaubiyal. 2021. Online social networks security and privacy: Comprehensive review and analysis. Complex and Intelligent Systems 7, 5 (2021), 2157\u20132177.","journal-title":"Complex and Intelligent Systems"},{"key":"e_1_3_2_57_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/2894760","article-title":"General graph data De-anonymization: From mobility traces to social networks","volume":"18","author":"Ji Shouling","year":"2016","unstructured":"Shouling Ji, Weiqing Li, Mudhakar Srivatsa, Jing Selena He, and Raheem Beyah. 2016. General graph data De-anonymization: From mobility traces to social networks. ACM Transactions on Information and System Security 18 (2016), 1\u201329.","journal-title":"ACM Transactions on Information and System Security"},{"issue":"2","key":"e_1_3_2_58_2","first-page":"1305","article-title":"Graph data anonymization, de-anonymization attacks, and de-anonymizability quantification: A survey","volume":"19","author":"Ji Shouling","year":"2016","unstructured":"Shouling Ji, Prateek Mittal, and Raheem Beyah. 2016. Graph data anonymization, de-anonymization attacks, and de-anonymizability quantification: A survey. IEEE Communications Surveys and Tutorials 19, 2 (2016), 1305\u20131326.","journal-title":"IEEE Communications Surveys and Tutorials"},{"key":"e_1_3_2_59_2","doi-asserted-by":"crossref","first-page":"10","DOI":"10.1109\/JSYST.2013.2260937","article-title":"Human-factor-aware privacy-preserving aggregation in smart grid","volume":"8","author":"Jia Weiwei","year":"2014","unstructured":"Weiwei Jia, Haojin Zhu, Zhenfu Cao, Xiaolei Dong, and Chengxin Xiao. 2014. Human-factor-aware privacy-preserving aggregation in smart grid. IEEE SYSTEMS JOURNAL 8 (2014), 10.","journal-title":"IEEE SYSTEMS JOURNAL"},{"key":"e_1_3_2_60_2","volume-title":"Proceedings of the 2015 International Conference on Advances in Mechanical Engineering and Industrial Informatics","author":"Jiang Huowen","year":"2015","unstructured":"Huowen Jiang. 2015. A novel clustering-based anonymization approach for graph to achieve Privacy Preservation in Social Network. In Proceedings of the 2015 International Conference on Advances in Mechanical Engineering and Industrial Informatics. Atlantis Press, Zhengzhou, China."},{"key":"e_1_3_2_61_2","first-page":"473","volume-title":"Proceedings of the 2022 IEEE Symposium on Security and Privacy","author":"Jin Jiankai","year":"2022","unstructured":"Jiankai Jin, Eleanor McMurtry, Benjamin IP Rubinstein, and Olga Ohrimenko. 2022. Are we there yet? timing and floating-point attacks on differential privacy systems. In Proceedings of the 2022 IEEE Symposium on Security and Privacy. IEEE, 473\u2013488."},{"issue":"2","key":"e_1_3_2_62_2","article-title":"A profile of the SAIL databank on the UK secure research platform","volume":"4","author":"Jones Kerina H.","year":"2019","unstructured":"Kerina H. Jones, David Vincent Ford, Simon Thompson, and R. A. Lyons. 2019. A profile of the SAIL databank on the UK secure research platform. International Journal of Population Data Science 4, 2 (2019).","journal-title":"International Journal of Population Data Science"},{"key":"e_1_3_2_63_2","doi-asserted-by":"crossref","unstructured":"Mika Juuti Sebastian Szyller Samuel Marchal and N. Asokan. 2019. PRADA: Protecting against DNN model stealing attacks. (2019) 512\u2013527.","DOI":"10.1109\/EuroSP.2019.00044"},{"key":"e_1_3_2_64_2","unstructured":"Georgios Kaissis Jamie Hayes Alexander Ziller and Daniel Rueckert. 2023. Bounding data reconstruction attacks with the hypothesis testing interpretation of differential privacy. arXiv:2307.03928. Retrieved from https:\/\/arxiv.org\/abs\/2307.03928"},{"key":"e_1_3_2_65_2","first-page":"8110","volume-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition","author":"Karras Tero","year":"2020","unstructured":"Tero Karras, Samuli Laine, Miika Aittala, Janne Hellsten, Jaakko Lehtinen, and Timo Aila. 2020. Analyzing and improving the image quality of stylegan. In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition. 8110\u20138119."},{"key":"e_1_3_2_66_2","unstructured":"Fumiyuki Kato Yang Cao and Masatoshi Yoshikawa. 2022. Olive: Oblivious and differentially private federated learning on trusted execution environment. arXiv:2202.07165. Retrieved from https:\/\/arxiv.org\/abs\/2202.07165"},{"key":"e_1_3_2_67_2","doi-asserted-by":"crossref","first-page":"1329","DOI":"10.1145\/2976749.2978386","volume-title":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","author":"Kellaris Georgios","year":"2016","unstructured":"Georgios Kellaris, George Kollios, Kobbi Nissim, and Adam O\u2019neill. 2016. Generic attacks on secure outsourced databases. In Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security. ACM, Vienna, Austria, 1329\u20131340."},{"key":"e_1_3_2_68_2","article-title":"Quantitatively measuring privacy in interactive query settings within RDBMS framework","volume":"3","author":"Khan Muhammad Imran","year":"2020","unstructured":"Muhammad Imran Khan, Simon N. Foley, and Barry O\u2019Sullivan. 2020. Quantitatively measuring privacy in interactive query settings within RDBMS framework. Frontiers in Big Data 3 (2020).","journal-title":"Frontiers in Big Data"},{"key":"e_1_3_2_69_2","doi-asserted-by":"crossref","first-page":"35","DOI":"10.1109\/MCE.2018.2880807","article-title":"Data and privacy: Getting consumers to trust products enabled by the internet of things","volume":"8","author":"Khan Wazir Zada","year":"2019","unstructured":"Wazir Zada Khan, Mohammed Y. Aalsalem, Muhammad Khurram Khan, and Quratulain Arshad. 2019. Data and privacy: Getting consumers to trust products enabled by the internet of things. IEEE Consumer Electronics Magazine 8 (2019), 35\u201338.","journal-title":"IEEE Consumer Electronics Magazine"},{"key":"e_1_3_2_70_2","doi-asserted-by":"crossref","first-page":"2767","DOI":"10.1016\/j.jbankfin.2010.06.001","article-title":"Consumer credit-risk models via machine-learning algorithms","volume":"34","author":"Khandani Amir E.","year":"2010","unstructured":"Amir E. Khandani, Adlar J. Kim, and Andrew W. Lo. 2010. Consumer credit-risk models via machine-learning algorithms. Journal of Banking and Finance 34 (2010), 2767\u20132787.","journal-title":"Journal of Banking and Finance"},{"key":"e_1_3_2_71_2","first-page":"193","volume-title":"Proceedings of the 2011 International Conference on Management of Data","author":"Kifer Daniel","year":"2011","unstructured":"Daniel Kifer and Ashwin Machanavajjhala. 2011. No free lunch in data privacy. In Proceedings of the 2011 International Conference on Management of Data. ACM, Athens, Greece, 193."},{"key":"e_1_3_2_72_2","first-page":"103951","article-title":"Privacy-preserving generation and publication of synthetic trajectory microdata: A comprehensive survey","author":"Kim Jong Wook","year":"2024","unstructured":"Jong Wook Kim and Beakcheol Jang. 2024. Privacy-preserving generation and publication of synthetic trajectory microdata: A comprehensive survey. Journal of Network and Computer Applications (2024), 103951.","journal-title":"Journal of Network and Computer Applications"},{"key":"e_1_3_2_73_2","first-page":"4871","volume-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision","author":"Ko Myeongseob","year":"2023","unstructured":"Myeongseob Ko, Ming Jin, Chenguang Wang, and Ruoxi Jia. 2023. Practical membership inference attacks against large-scale multi-modal models: A pilot study. In Proceedings of the IEEE\/CVF International Conference on Computer Vision. 4871\u20134881."},{"key":"e_1_3_2_74_2","doi-asserted-by":"crossref","first-page":"43","DOI":"10.1016\/j.knosys.2015.11.007","article-title":"PPTD: Preserving personalized privacy in trajectory data publishing by sensitive attribute generalization and trajectory local suppression","volume":"94","author":"Komishani Elahe Ghasemi","year":"2016","unstructured":"Elahe Ghasemi Komishani, Mahdi Abadi, and Fatemeh Deldar. 2016. PPTD: Preserving personalized privacy in trajectory data publishing by sensitive attribute generalization and trajectory local suppression. Knowledge-Based Systems 94 (2016), 43\u201359.","journal-title":"Knowledge-Based Systems"},{"key":"e_1_3_2_75_2","first-page":"9181","article-title":"Analyzing the confidentiality of undistillable teachers in knowledge distillation","volume":"34","author":"Kundu Souvik","year":"2021","unstructured":"Souvik Kundu, Qirui Sun, Yao Fu, Massoud Pedram, and Peter Beerel. 2021. Analyzing the confidentiality of undistillable teachers in knowledge distillation. Advances in Neural Information Processing Systems 34 (2021), 9181\u20139192.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_76_2","doi-asserted-by":"crossref","first-page":"297","DOI":"10.1109\/SP.2018.00002","volume-title":"Proceedings of the 2018 IEEE Symposium on Security and Privacy","author":"Lacharit\u00e9 Marie-Sarah","year":"2018","unstructured":"Marie-Sarah Lacharit\u00e9, Brice Minaud, and Kenneth G. Paterson. 2018. Improved reconstruction attacks on encrypted data using range query leakage. In Proceedings of the 2018 IEEE Symposium on Security and Privacy. IEEE, San Francisco, CA, 297\u2013314."},{"key":"e_1_3_2_77_2","first-page":"9","article-title":"A novel method to construct taxonomy of electrical appliances based on load signatures","volume":"53","author":"Lam Hong Yin","year":"2007","unstructured":"Hong Yin Lam, G. S. K. Fung, and W. K. Lee. 2007. A novel method to construct taxonomy of electrical appliances based on load signatures. IEEE Transactions on Consumer Electronics 53 (2007), 9.","journal-title":"IEEE Transactions on Consumer Electronics"},{"issue":"1","key":"e_1_3_2_78_2","first-page":"503","article-title":"Distributed differentially private ranking aggregation","volume":"11","author":"Lan Qiujun","year":"2022","unstructured":"Qiujun Lan, Baobao Song, Yang Li, and Gang Li. 2022. Distributed differentially private ranking aggregation. IEEE Transactions on Computational Social Systems 11, 1 (2022), 503\u2013513.","journal-title":"IEEE Transactions on Computational Social Systems"},{"key":"e_1_3_2_79_2","doi-asserted-by":"crossref","first-page":"350","DOI":"10.1109\/TDSC.2017.2754249","article-title":"Privacy leakage via De-anonymization and aggregation in heterogeneous social networks","volume":"17","author":"Li Huaxin","year":"2020","unstructured":"Huaxin Li, Qingrong Chen, Haojin Zhu, Di Ma, Hong Wen, and Xuemin Sherman Shen. 2020. Privacy leakage via De-anonymization and aggregation in heterogeneous social networks. IEEE Transactions on Dependable and Secure Computing 17 (2020), 350\u2013362.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"e_1_3_2_80_2","first-page":"5","article-title":"Membership inference attacks and defenses in classification models","author":"Li Jiacheng","year":"2021","unstructured":"Jiacheng Li, Ninghui Li, and Bruno Ribeiro. 2021. Membership inference attacks and defenses in classification models. Proceedings of the Eleventh ACM Conference on Data and Application Security and Privacy (2021), 5\u201316.","journal-title":"Proceedings of the Eleventh ACM Conference on Data and Application Security and Privacy"},{"key":"e_1_3_2_81_2","first-page":"106","volume-title":"Proceedings of the 2007 IEEE 23rd International Conference on Data Engineering","author":"Li Ninghui","year":"2006","unstructured":"Ninghui Li, Tiancheng Li, and Suresh Venkatasubramanian. 2006. t-closeness: Privacy beyond k-anonymity and l-diversity. In Proceedings of the 2007 IEEE 23rd International Conference on Data Engineering. IEEE, 106\u2013115."},{"key":"e_1_3_2_82_2","first-page":"1","article-title":"Adaptively secure and fast processing of conjunctive queries over encrypted data","author":"Li Rui","year":"2020","unstructured":"Rui Li and Alex X. Liu. 2020. Adaptively secure and fast processing of conjunctive queries over encrypted data. IEEE Transactions on Knowledge and Data Engineering (2020), 1\u20131.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"issue":"3","key":"e_1_3_2_83_2","first-page":"1","article-title":"How developers talk about personal data and what it means for user privacy: A case study of a developer forum on reddit","volume":"4","author":"Li Tianshi","year":"2021","unstructured":"Tianshi Li, Elizabeth Louie, Laura Dabbish, and Jason I. Hong. 2021. How developers talk about personal data and what it means for user privacy: A case study of a developer forum on reddit. Proceedings of the ACM on Human-Computer Interaction 4, CSCW3 (2021), 1\u201328.","journal-title":"Proceedings of the ACM on Human-Computer Interaction"},{"key":"e_1_3_2_84_2","article-title":"Privacy-preserving reverse nearest neighbor query over encrypted spatial data","author":"Li Xiaoguo","year":"2021","unstructured":"Xiaoguo Li, Tao Xiang, Shangwei Guo, Hongwei Li, and Yi Mu. 2021. Privacy-preserving reverse nearest neighbor query over encrypted spatial data. IEEE Transactions on Services Computing (2021).","journal-title":"IEEE Transactions on Services Computing"},{"issue":"11","key":"e_1_3_2_85_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3569085","article-title":"Private graph data release: A survey","volume":"55","author":"Li Yang","year":"2023","unstructured":"Yang Li, Michael Purcell, Thierry Rakotoarivelo, David Smith, Thilina Ranbaduge, and Kee Siong Ng. 2023. Private graph data release: A survey. Computing Surveys 55, 11 (2023), 1\u201339.","journal-title":"Computing Surveys"},{"key":"e_1_3_2_86_2","first-page":"54554","article-title":"GAN you see me? enhanced data reconstruction attacks against split inference","volume":"36","author":"Li Ziang","year":"2023","unstructured":"Ziang Li, Mengda Yang, Yaxin Liu, Juan Wang, Hongxin Hu, Wenzhe Yi, and Xiaoyang Xu. 2023. GAN you see me? enhanced data reconstruction attacks against split inference. Advances in Neural Information Processing Systems 36 (2023), 54554\u201354566.","journal-title":"Advances in Neural Information Processing Systems"},{"issue":"12","key":"e_1_3_2_87_2","doi-asserted-by":"crossref","first-page":"8043","DOI":"10.1109\/TIT.2019.2935768","article-title":"Tunable measures for information leakage and applications to privacy-utility tradeoffs","volume":"65","author":"Liao Jiachun","year":"2019","unstructured":"Jiachun Liao, Oliver Kosut, Lalitha Sankar, and Flavio du Pin Calmon. 2019. Tunable measures for information leakage and applications to privacy-utility tradeoffs. IEEE Transactions on Information Theory 65, 12 (2019), 8043\u20138066.","journal-title":"IEEE Transactions on Information Theory"},{"issue":"2","key":"e_1_3_2_88_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3436755","article-title":"When machine learning meets privacy: A survey and outlook","volume":"54","author":"Liu Bo","year":"2021","unstructured":"Bo Liu, Ming Ding, Sina Shaham, Wenny Rahayu, Farhad Farokhi, and Zihuai Lin. 2021. When machine learning meets privacy: A survey and outlook. ACM Computing Surveys 54, 2 (2021), 1\u201336.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_89_2","doi-asserted-by":"crossref","first-page":"907","DOI":"10.1109\/TCSS.2019.2916086","article-title":"SocInf: Membership inference attacks on social media health data with machine learning","volume":"6","author":"Liu Gaoyang","year":"2019","unstructured":"Gaoyang Liu et\u00a0al. 2019. SocInf: Membership inference attacks on social media health data with machine learning. IEEE Transactions on Computational Social Systems 6 (2019), 907\u2013921.","journal-title":"IEEE Transactions on Computational Social Systems"},{"key":"e_1_3_2_90_2","doi-asserted-by":"crossref","unstructured":"Milan Lopuha\u00e4-Zwakenberg and Jasper Goseling. 2021. The privacy-utility tradeoff of robust local differential privacy. arXiv:2101.09139. Retrieved from https:\/\/arxiv.org\/abs\/2101.09139","DOI":"10.1109\/ISIT45174.2021.9518151"},{"key":"e_1_3_2_91_2","first-page":"636","volume-title":"Proceedings of the 12th International Conference on Extending Database Technology Advances in Database Technology","author":"Lu Haibing","year":"2009","unstructured":"Haibing Lu, Yingjiu Li, Vijayalakshmi Atluri, and Jaideep Vaidya. 2009. An efficient online auditing approach to limit private data disclosure. In Proceedings of the 12th International Conference on Extending Database Technology Advances in Database Technology. ACM, Saint Petersburg, Russia, 636."},{"key":"e_1_3_2_92_2","first-page":"2233","volume-title":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","author":"Luo Xinjian","year":"2022","unstructured":"Xinjian Luo, Yangfan Jiang, and Xiaokui Xiao. 2022. Feature inference attack on shapley values. In Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security. 2233\u20132247."},{"key":"e_1_3_2_93_2","article-title":"Privacy attacks and defenses for digital twin migrations in vehicular metaverses","author":"Luo Xiaofeng","year":"2023","unstructured":"Xiaofeng Luo, Jinbo Wen, Jiawen Kang, Jiangtian Nie, Zehui Xiong, Yang Zhang, Zhaohui Yang, and Shengli Xie. 2023. Privacy attacks and defenses for digital twin migrations in vehicular metaverses. IEEE Network (2023).","journal-title":"IEEE Network"},{"issue":"11","key":"e_1_3_2_94_2","doi-asserted-by":"crossref","first-page":"9373","DOI":"10.1002\/int.22997","article-title":"An effective and practical gradient inversion attack","volume":"37","author":"Luo Zeren","year":"2022","unstructured":"Zeren Luo, Chuangwei Zhu, Lujie Fang, Guang Kou, Ruitao Hou, and Xianmin Wang. 2022. An effective and practical gradient inversion attack. International Journal of Intelligent Systems 37, 11 (2022), 9373\u20139389.","journal-title":"International Journal of Intelligent Systems"},{"key":"e_1_3_2_95_2","article-title":"Privacy and robustness in federated learning: Attacks and defenses","author":"Lyu Lingjuan","year":"2022","unstructured":"Lingjuan Lyu, Han Yu, Xingjun Ma, Chen Chen, Lichao Sun, Jun Zhao, Qiang Yang, and S. Yu Philip. 2022. Privacy and robustness in federated learning: Attacks and defenses. IEEE Transactions on Neural Networks and Learning Systems (2022).","journal-title":"IEEE Transactions on Neural Networks and Learning Systems"},{"key":"e_1_3_2_96_2","doi-asserted-by":"crossref","first-page":"6120","DOI":"10.1609\/aaai.v33i01.33016120","article-title":"TrafficPredict: Trajectory prediction for heterogeneous traffic-agents","volume":"33","author":"Ma Yuexin","year":"2019","unstructured":"Yuexin Ma, Xinge Zhu, Sibo Zhang, Ruigang Yang, Wenping Wang, and Dinesh Manocha. 2019. TrafficPredict: Trajectory prediction for heterogeneous traffic-agents. Proceedings of the AAAI Conference on Artificial Intelligence 33 (2019), 6120\u20136127.","journal-title":"Proceedings of the AAAI Conference on Artificial Intelligence"},{"issue":"1","key":"e_1_3_2_97_2","doi-asserted-by":"crossref","first-page":"3\u2013es","DOI":"10.1145\/1217299.1217302","article-title":"l-diversity: Privacy beyond k-anonymity","volume":"1","author":"Machanavajjhala Ashwin","year":"2007","unstructured":"Ashwin Machanavajjhala, Daniel Kifer, Johannes Gehrke, and Muthuramakrishnan Venkitasubramaniam. 2007. l-diversity: Privacy beyond k-anonymity. ACM Transactions on Knowledge Discovery from Data 1, 1 (2007), 3\u2013es.","journal-title":"ACM Transactions on Knowledge Discovery from Data"},{"key":"e_1_3_2_98_2","doi-asserted-by":"crossref","first-page":"1188","DOI":"10.1109\/TPAMI.2018.2827389","article-title":"On the reconstruction of face images from deep face templates","volume":"41","author":"Mai Guangcan","year":"2019","unstructured":"Guangcan Mai, Kai Cao, Pong C. Yuen, and Anil K. Jain. 2019. On the reconstruction of face images from deep face templates. IEEE Transactions on Pattern Analysis and Machine Intelligence 41 (2019), 1188\u20131202.","journal-title":"IEEE Transactions on Pattern Analysis and Machine Intelligence"},{"key":"e_1_3_2_99_2","article-title":"Privacy-preserving multi-view matrix factorization for recommender systems","author":"Mai Peihua","year":"2023","unstructured":"Peihua Mai and Yan Pang. 2023. Privacy-preserving multi-view matrix factorization for recommender systems. IEEE Transactions on Artificial Intelligence (2023).","journal-title":"IEEE Transactions on Artificial Intelligence"},{"key":"e_1_3_2_100_2","first-page":"1065","volume-title":"Proceedings of the 2012 IEEE\/ACM International Conference on Advances in Social Networks Analysis and Mining","author":"Malhotra Anshu","year":"2012","unstructured":"Anshu Malhotra, Luam Totti, Wagner Meira Jr, Ponnurangam Kumaraguru, and Virgilio Almeida. 2012. Studying user footprints in different online social networks. In Proceedings of the 2012 IEEE\/ACM International Conference on Advances in Social Networks Analysis and Mining. 1065\u20131070."},{"issue":"6","key":"e_1_3_2_101_2","doi-asserted-by":"crossref","first-page":"4040","DOI":"10.1007\/s10618-024-01066-3","article-title":"Evaluating the disclosure risk of anonymized documents via a machine learning-based re-identification attack","volume":"38","author":"Manzanares-Salor Benet","year":"2024","unstructured":"Benet Manzanares-Salor, David S\u00e1nchez, and Pierre Lison. 2024. Evaluating the disclosure risk of anonymized documents via a machine learning-based re-identification attack. Data Mining and Knowledge Discovery 38, 6 (2024), 4040\u20134075.","journal-title":"Data Mining and Knowledge Discovery"},{"key":"e_1_3_2_102_2","doi-asserted-by":"crossref","DOI":"10.56553\/popets-2023-0106","article-title":"Attacks on encrypted response-hiding range search schemes in multiple dimensions","author":"Markatou Evangelia Anna","year":"2023","unstructured":"Evangelia Anna Markatou, Francesca Falzon, Zachary Espiritu, and Roberto Tamassia. 2023. Attacks on encrypted response-hiding range search schemes in multiple dimensions. Proceedings on Privacy Enhancing Technologies (2023).","journal-title":"Proceedings on Privacy Enhancing Technologies"},{"key":"e_1_3_2_103_2","first-page":"25","volume-title":"Proceedings of the Information Security","volume":"11723","author":"Markatou Evangelia Anna","year":"2019","unstructured":"Evangelia Anna Markatou and Roberto Tamassia. 2019. Full database reconstruction with access and search pattern leakage. In Proceedings of the Information Security. Zhiqiang Lin, Charalampos Papamanthou, and Michalis Polychronakis (Eds.), Vol. 11723, Springer International Publishing, Cham, 25\u201343."},{"key":"e_1_3_2_104_2","unstructured":"Martin M. Merener. 2012. Theoretical results on De-anonymization via linkage attacks. (2012) 26."},{"key":"e_1_3_2_105_2","doi-asserted-by":"crossref","first-page":"71","DOI":"10.1145\/2817946.2817957","volume-title":"Proceedings of the 2015 ACM on Conference on Online Social Networks","author":"Minkus Tehila","year":"2015","unstructured":"Tehila Minkus, Yuan Ding, Ratan Dey, and Keith W. Ross. 2015. The city privacy attack: Combining social media and public records for detailed profiles of adults and children. In Proceedings of the 2015 ACM on Conference on Online Social Networks. ACM, Palo Alto, California, USA, 71\u201381."},{"key":"e_1_3_2_106_2","doi-asserted-by":"crossref","first-page":"263","DOI":"10.1109\/CSF.2017.11","volume-title":"Proceedings of the 2017 IEEE 30th Computer Security Foundations Symposium","author":"Mironov Ilya","year":"2017","unstructured":"Ilya Mironov. 2017. R\u00e9nyi differential privacy. In Proceedings of the 2017 IEEE 30th Computer Security Foundations Symposium. IEEE, 263\u2013275."},{"key":"e_1_3_2_107_2","unstructured":"Yash More Prakhar Ganesh and Golnoosh Farnadi. 2024. Towards more realistic extraction attacks: An adversarial perspective. arXiv:2407.02596. Retrieved from https:\/\/arxiv.org\/abs\/2407.02596"},{"key":"e_1_3_2_108_2","unstructured":"Sumit Mukherjee Yixi Xu Anusua Trivedi and Juan Lavista Ferres. 2020. Protecting GANs against privacy attacks by preventing overfitting. arXiv:2001.00071. Retrieved from https:\/\/arxiv.org\/abs\/2001.00071"},{"issue":"2","key":"e_1_3_2_109_2","article-title":"Visualizing privacy-utility trade-offs in differentially private data releases","volume":"2022","author":"Nanayakkara Priyanka","year":"2022","unstructured":"Priyanka Nanayakkara, Johes Bater, Xi He, Jessica Hullman, and Jennie Rogers. 2022. Visualizing privacy-utility trade-offs in differentially private data releases. Proceedings on Privacy Enhancing Technologies 2022, 2 (2022).","journal-title":"Proceedings on Privacy Enhancing Technologies"},{"key":"e_1_3_2_110_2","unstructured":"Arvind Narayanan and Vitaly Shmatikov. 2007. How to break anonymity of the netflix prize dataset. arXiv:0610105. Retrieved from https:\/\/arxiv.org\/abs\/0610105"},{"key":"e_1_3_2_111_2","doi-asserted-by":"crossref","first-page":"173","DOI":"10.1109\/SP.2009.22","article-title":"De-anonymizing social networks","author":"Narayanan Arvind","year":"2009","unstructured":"Arvind Narayanan and Vitaly Shmatikov. 2009. De-anonymizing social networks. 2009 30th IEEE Symposium on Security and Privacy (2009), 173\u2013187.","journal-title":"2009 30th IEEE Symposium on Security and Privacy"},{"key":"e_1_3_2_112_2","doi-asserted-by":"crossref","first-page":"644","DOI":"10.1145\/2810103.2813651","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","author":"Naveed Muhammad","year":"2015","unstructured":"Muhammad Naveed, Seny Kamara, and Charles V. Wright. 2015. Inference attacks on property-preserving encrypted databases. In Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. ACM, Denver, Colorado, USA, 644\u2013655."},{"key":"e_1_3_2_113_2","first-page":"68895","article-title":"Label-only model inversion attacks via knowledge transfer","volume":"36","author":"Nguyen Bao-Ngoc","year":"2023","unstructured":"Bao-Ngoc Nguyen, Keshigeyan Chandrasegaran, Milad Abdollahzadeh, and Ngai-Man Man Cheung. 2023. Label-only model inversion attacks via knowledge transfer. Advances in Neural Information Processing Systems 36 (2023), 68895\u201368907.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_114_2","doi-asserted-by":"crossref","first-page":"537","DOI":"10.1145\/2660267.2660324","volume-title":"Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security","author":"Nilizadeh Shirin","year":"2014","unstructured":"Shirin Nilizadeh, Apu Kapadia, and Yong-Yeol Ahn. 2014. Community-enhanced De-anonymization of online social networks. In Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security. ACM, Scottsdale, Arizona, USA, 537\u2013548."},{"key":"e_1_3_2_115_2","doi-asserted-by":"crossref","first-page":"141","DOI":"10.4324\/9781003075011-12","volume-title":"Proceedings of the Ethics of Information Technologies","author":"Nissenbaum Helen","year":"2020","unstructured":"Helen Nissenbaum. 2020. Protecting privacy in an information age: The problem of privacy in public. In Proceedings of the Ethics of Information Technologies. Routledge, 141\u2013178."},{"key":"e_1_3_2_116_2","doi-asserted-by":"crossref","first-page":"101935","DOI":"10.1016\/j.is.2021.101935","article-title":"Explanation and answers to critiques on: Blockchain-based Privacy-Preserving Record Linkage","volume":"108","author":"N\u00f3brega Thiago","year":"2022","unstructured":"Thiago N\u00f3brega, Carlos Eduardo S. Pires, and Dimas Cassimiro Nascimento. 2022. Explanation and answers to critiques on: Blockchain-based Privacy-Preserving Record Linkage. Information Systems 108 (2022), 101935.","journal-title":"Information Systems"},{"issue":"8003","key":"e_1_3_2_117_2","doi-asserted-by":"crossref","first-page":"340","DOI":"10.1038\/s41586-023-06957-x","article-title":"Genomic data in the all of us research program","volume":"627","author":"Investigators All of Us Research Program Genomics","year":"2024","unstructured":"All of Us Research Program Genomics Investigators et\u00a0al. 2024. Genomic data in the all of us research program. Nature 627, 8003 (2024), 340.","journal-title":"Nature"},{"key":"e_1_3_2_118_2","first-page":"4141","article-title":"Should i disclose my personal data? perspectives from internet of things services","volume":"9","author":"Pal Debajyoti","year":"2020","unstructured":"Debajyoti Pal, Suree Funilkul, and Xiangmin Zhang. 2020. Should i disclose my personal data? perspectives from internet of things services. IEEE Access 9 (2020), 4141\u20134157.","journal-title":"IEEE Access"},{"key":"e_1_3_2_119_2","first-page":"1314","volume-title":"Proceedings of the 2020 IEEE Symposium on Security and Privacy","author":"Pan Xudong","year":"2020","unstructured":"Xudong Pan, Mi Zhang, Shouling Ji, and Min Yang. 2020. Privacy risks of general-purpose language models. In Proceedings of the 2020 IEEE Symposium on Security and Privacy. IEEE, 1314\u20131331."},{"key":"e_1_3_2_120_2","unstructured":"Rrubaa Panchendrarajan and Suman Bhoi. 2021. Dataset reconstruction attack against language models. (2021)."},{"key":"e_1_3_2_121_2","unstructured":"Nicolas Papernot Mart\u00edn Abadi Ulfar Erlingsson Ian Goodfellow and Kunal Talwar. 2016. Semi-supervised knowledge transfer for deep learning from private training data. arXiv:1610.05755. Retrieved from https:\/\/arxiv.org\/abs\/1610.05755"},{"key":"e_1_3_2_122_2","doi-asserted-by":"crossref","first-page":"124988","DOI":"10.1109\/ACCESS.2019.2938759","article-title":"An attack-based evaluation method for differentially private learning against model inversion attack","volume":"7","author":"Park Cheolhee","year":"2019","unstructured":"Cheolhee Park et\u00a0al. 2019. An attack-based evaluation method for differentially private learning against model inversion attack. IEEE Access 7 (2019), 124988\u2013124999.","journal-title":"IEEE Access"},{"key":"e_1_3_2_123_2","doi-asserted-by":"crossref","first-page":"1850","DOI":"10.1145\/3580305.3599346","volume-title":"Proceedings of the 29th ACM SIGKDD Conference on Knowledge Discovery and Data Mining","author":"Park Sungwon","year":"2023","unstructured":"Sungwon Park, Sungwon Han, Fangzhao Wu, Sundong Kim, Bin Zhu, Xing Xie, and Meeyoung Cha. 2023. Feddefender: Client-side attack-tolerant federated learning. In Proceedings of the 29th ACM SIGKDD Conference on Knowledge Discovery and Data Mining. 1850\u20131861."},{"key":"e_1_3_2_124_2","first-page":"1598","volume-title":"Proceedings of the 2013 51st Annual Allerton Conference on Communication, Control, and Computing","author":"Pedarsani Pedram","year":"2013","unstructured":"Pedram Pedarsani, Daniel R. Figueiredo, and Matthias Grossglauser. 2013. A Bayesian method for matching two similar graphs without seeds. In Proceedings of the 2013 51st Annual Allerton Conference on Communication, Control, and Computing. IEEE, Monticello, IL, 1598\u20131607."},{"key":"e_1_3_2_125_2","doi-asserted-by":"crossref","first-page":"91","DOI":"10.1016\/j.neucom.2016.03.089","article-title":"Matching entities across online social networks","volume":"210","author":"Peled Olga","year":"2016","unstructured":"Olga Peled, Michael Fire, Lior Rokach, and Yuval Elovici. 2016. Matching entities across online social networks. Neurocomputing 210 (2016), 91\u2013106.","journal-title":"Neurocomputing"},{"key":"e_1_3_2_126_2","doi-asserted-by":"crossref","first-page":"290","DOI":"10.1109\/TC.2012.202","article-title":"A two-stage deanonymization attack against anonymized social networks","volume":"63","author":"Peng Wei","year":"2014","unstructured":"Wei Peng, Feng Li, Xukai Zou, and Jie Wu. 2014. A two-stage deanonymization attack against anonymized social networks. IEEE Transactions on Computers 63 (2014), 290\u2013303.","journal-title":"IEEE Transactions on Computers"},{"key":"e_1_3_2_127_2","first-page":"354","volume-title":"Proceedings of the 2020 IEEE European Symposium on Security and Privacy","author":"Poddar Rishabh","year":"2020","unstructured":"Rishabh Poddar, Stephanie Wang, Jianan Lu, and Raluca Ada Popa. 2020. Practical volume-based attacks on encrypted databases. In Proceedings of the 2020 IEEE European Symposium on Security and Privacy. IEEE, 354\u2013369."},{"key":"e_1_3_2_128_2","doi-asserted-by":"publisher","DOI":"10.1109\/TVT.2022.3175173"},{"issue":"3","key":"e_1_3_2_129_2","doi-asserted-by":"crossref","first-page":"1044","DOI":"10.1109\/TSC.2023.3344460","article-title":"Modeling practically private wireless vehicle to grid system with federated reinforcement learning","volume":"17","author":"Pokhrel Shiva Raj","year":"2023","unstructured":"Shiva Raj Pokhrel, Mohammad Belayet Hossain, and Anwar Walid. 2023. Modeling practically private wireless vehicle to grid system with federated reinforcement learning. IEEE Transactions on Services Computing 17, 3 (2023), 1044\u20131055.","journal-title":"IEEE Transactions on Services Computing"},{"key":"e_1_3_2_130_2","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2020.3006337"},{"key":"e_1_3_2_131_2","first-page":"393","article-title":"The right of privacy","volume":"12","author":"Posner Richard A.","year":"1977","unstructured":"Richard A. Posner. 1977. The right of privacy. Georgia Law Review 12 (1977), 393.","journal-title":"Georgia Law Review"},{"key":"e_1_3_2_132_2","doi-asserted-by":"crossref","unstructured":"Apostolos Pyrgelis Carmela Troncoso and Emiliano De Cristofaro. 2018. Knock knock who\u2019s their? membership inference on aggregate location data. (2018).","DOI":"10.14722\/ndss.2018.23183"},{"key":"e_1_3_2_133_2","first-page":"5614","volume-title":"Proceedings of the 31st ACM International Conference on Multimedia","author":"Qi Gege","year":"2023","unstructured":"Gege Qi, YueFeng Chen, Xiaofeng Mao, Binyuan Hui, Xiaodan Li, Rong Zhang, and Hui Xue. 2023. Model inversion attack via dynamic memory learning. In Proceedings of the 31st ACM International Conference on Multimedia. 5614\u20135622."},{"key":"e_1_3_2_134_2","doi-asserted-by":"crossref","first-page":"679","DOI":"10.1109\/TDSC.2017.2697854","article-title":"Social network De-anonymization and privacy inference with knowledge graph model","volume":"16","author":"Qian Jianwei","year":"2019","unstructured":"Jianwei Qian, Xiang-Yang Li, Chunhong Zhang, Linlin Chen, Taeho Jung, and Junze Han. 2019. Social network De-anonymization and privacy inference with knowledge graph model. IEEE Transactions on Dependable and Secure Computing 16 (2019), 679\u2013692.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"issue":"4","key":"e_1_3_2_135_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3624010","article-title":"A survey of privacy attacks in machine learning","volume":"56","author":"Rigaki Maria","year":"2023","unstructured":"Maria Rigaki and Sebastian Garcia. 2023. A survey of privacy attacks in machine learning. Computing Surveys 56, 4 (2023), 1\u201334.","journal-title":"Computing Surveys"},{"key":"e_1_3_2_136_2","doi-asserted-by":"crossref","first-page":"687","DOI":"10.1145\/3442442.3458606","volume-title":"Companion Proceedings of the Web Conference 2021","author":"Rocher Luc","year":"2021","unstructured":"Luc Rocher, Meenatchi Sundaram Muthu, and Yves-Alexandre de Montjoye. 2021. The observatory of anonymity: An interactive tool to understand re-identification risks in 89 countries. In Companion Proceedings of the Web Conference 2021. 687\u2013689."},{"key":"e_1_3_2_137_2","first-page":"2616","volume-title":"Proceedings of the 2013 IEEE Global Communications Conference","author":"Rottondi Cristina","year":"2013","unstructured":"Cristina Rottondi, Marco Savi, Daniele Polenghi, Giacomo Verticale, and Christoph Krau\u00df. 2013. A decisional attack to privacy-friendly data aggregation in Smart Grids. In Proceedings of the 2013 IEEE Global Communications Conference. IEEE, Atlanta, GA, 2616\u20132621."},{"key":"e_1_3_2_138_2","first-page":"5558","volume-title":"Proceedings of the International Conference on Machine Learning","author":"Sablayrolles Alexandre","year":"2019","unstructured":"Alexandre Sablayrolles, Matthijs Douze, Cordelia Schmid, Yann Ollivier, and Herv\u00e9 J\u00e9gou. 2019. White-box vs black-box: Bayes optimal strategies for membership inference. In Proceedings of the International Conference on Machine Learning. PMLR, 5558\u20135567."},{"key":"e_1_3_2_139_2","doi-asserted-by":"crossref","unstructured":"Ahmed Salem Yang Zhang Mathias Humbert Pascal Berrang Mario Fritz and Michael Backes. 2018. Ml-leaks: Model and data independent membership inference attacks and defenses on machine learning models. arXiv:1806.01246. Retrieved from https:\/\/arxiv.org\/abs\/1806.01246","DOI":"10.14722\/ndss.2019.23119"},{"key":"e_1_3_2_140_2","doi-asserted-by":"crossref","first-page":"76","DOI":"10.1007\/s41019-019-0086-8","article-title":"Fast De-anonymization of social networks with structural information","volume":"4","author":"Shao Yingxia","year":"2019","unstructured":"Yingxia Shao, Jialin Liu, Shuyang Shi, Yuemei Zhang, and Bin Cui. 2019. Fast De-anonymization of social networks with structural information. Data Science and Engineering 4 (2019), 76\u201392.","journal-title":"Data Science and Engineering"},{"key":"e_1_3_2_141_2","first-page":"375","volume-title":"Proceedings of the 23rd International Conference on World Wide Web - WWW \u201914 Companion","author":"Shen Yilin","year":"2014","unstructured":"Yilin Shen, Fengjiao Wang, and Hongxia Jin. 2014. Defending against user identity linkage attack across multiple online social networks. In Proceedings of the 23rd International Conference on World Wide Web - WWW \u201914 Companion. ACM, Seoul, Korea, 375\u2013376."},{"key":"e_1_3_2_142_2","doi-asserted-by":"crossref","first-page":"3","DOI":"10.1109\/SP.2017.41","volume-title":"Proceedings of the 2017 IEEE Symposium on Security and Privacy","author":"Shokri Reza","year":"2017","unstructured":"Reza Shokri, Marco Stronati, Congzheng Song, and Vitaly Shmatikov. 2017. Membership inference attacks against machine learning models. In Proceedings of the 2017 IEEE Symposium on Security and Privacy. IEEE, San Jose, CA, USA, 3\u201318."},{"key":"e_1_3_2_143_2","article-title":"Netflix cancels recommendation contest after privacy lawsuit","author":"Singel Ryan","year":"2010","unstructured":"Ryan Singel. 2010. Netflix cancels recommendation contest after privacy lawsuit. Wired Magazine (2010).","journal-title":"Wired Magazine"},{"key":"e_1_3_2_144_2","first-page":"1880","article-title":"Introduction: Privacy self-management and the consent dilemma","volume":"126","author":"Solove Daniel J.","year":"2012","unstructured":"Daniel J. Solove. 2012. Introduction: Privacy self-management and the consent dilemma. Harvard Law Review 126 (2012), 1880.","journal-title":"Harvard Law Review"},{"key":"e_1_3_2_145_2","article-title":"Towards A hybrid quantum differential privacy","author":"Song Baobao","year":"2025","unstructured":"Baobao Song, Shiva Raj Pokhrel, Athanasios V. Vasilakos, Tianqing Zhu, and Gang Li. 2025. Towards A hybrid quantum differential privacy. IEEE Journal on Selected Areas in Communications (2025).","journal-title":"IEEE Journal on Selected Areas in Communications"},{"key":"e_1_3_2_146_2","unstructured":"Yongcun Song Ziqi Wang and Enrique Zuazua. 2023. Approximate and weighted data reconstruction attack in federated learning. arXiv:2308.06822. Retrieved from https:\/\/arxiv.org\/abs\/2308.06822"},{"key":"e_1_3_2_147_2","first-page":"2802","volume-title":"Proceedings of the IEEE International Conference on Acoustics, Speech and Signal Processing","author":"Srivastava Brij Mohan Lal","year":"2020","unstructured":"Brij Mohan Lal Srivastava, Nathalie Vauquier, Md Sahidullah, Aur\u00e9lien Bellet, Marc Tommasi, and Emmanuel Vincent. 2020. Evaluating voice conversion-based privacy protection against informed attackers. In Proceedings of the IEEE International Conference on Acoustics, Speech and Signal Processing. IEEE, 2802\u20132806."},{"key":"e_1_3_2_148_2","doi-asserted-by":"crossref","first-page":"98","DOI":"10.1111\/j.1748-720X.1997.tb01885.x","article-title":"Weaving technology and policy together to maintain confidentiality","volume":"25","author":"Sweeney Latanya","year":"1997","unstructured":"Latanya Sweeney. 1997. Weaving technology and policy together to maintain confidentiality. The Journal of Law, Medicine and Ethics 25 (1997), 98\u2013110.","journal-title":"The Journal of Law, Medicine and Ethics"},{"key":"e_1_3_2_149_2","first-page":"34","article-title":"Simple demographics often identify people uniquely","author":"Sweeney Latanya","year":"2000","unstructured":"Latanya Sweeney. 2000. Simple demographics often identify people uniquely. Pittsburgh (2000), 34.","journal-title":"Pittsburgh"},{"key":"e_1_3_2_150_2","doi-asserted-by":"crossref","first-page":"557","DOI":"10.1142\/S0218488502001648","article-title":"k-Anonymity: A model for protecting privacy","volume":"10","author":"Sweeney Latanya","year":"2002","unstructured":"Latanya Sweeney. 2002. k-Anonymity: A model for protecting privacy. International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems 10 (2002), 557\u2013570.","journal-title":"International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems"},{"key":"e_1_3_2_151_2","article-title":"Matching known patients to health records in washington state data","author":"Sweeney Latanya","year":"2013","unstructured":"Latanya Sweeney. 2013. Matching known patients to health records in washington state data. SSRN Electronic Journal (2013).","journal-title":"SSRN Electronic Journal"},{"key":"e_1_3_2_152_2","first-page":"310","volume-title":"Proceedings of the IFIP Annual Conference on Data and Applications Security and Privacy","author":"Tahmasebian Farnaz","year":"2020","unstructured":"Farnaz Tahmasebian, Li Xiong, Mani Sotoodeh, and Vaidy Sunderam. 2020. Crowdsourcing under data poisoning attacks: A comparative study. In Proceedings of the IFIP Annual Conference on Data and Applications Security and Privacy. 310\u2013332."},{"key":"e_1_3_2_153_2","unstructured":"Florian Tram\u00e8r Fan Zhang Ari Juels Michael K. Reiter and Thomas Ristenpart. 2016. Stealing machine learning models via prediction APIs. (2016) 19."},{"issue":"3","key":"e_1_3_2_154_2","doi-asserted-by":"crossref","first-page":"1446","DOI":"10.1109\/TNET.2018.2829173","article-title":"A new privacy breach: User trajectory recovery from aggregated mobility data","volume":"26","author":"Tu Zhen","year":"2018","unstructured":"Zhen Tu, Fengli Xu, Yong Li, Pengyu Zhang, and Depeng Jin. 2018. A new privacy breach: User trajectory recovery from aggregated mobility data. IEEE\/ACM Transactions on Networking 26, 3 (2018), 1446\u20131459.","journal-title":"IEEE\/ACM Transactions on Networking"},{"key":"e_1_3_2_155_2","unstructured":"Jaideep Vaidya Basit Shafiq Xiaoqian Jiang and Lucila Ohno-Machado. 2013. Identifying inference attacks against healthcare data repositories. (2013) 5."},{"key":"e_1_3_2_156_2","doi-asserted-by":"crossref","first-page":"946","DOI":"10.1016\/j.is.2012.11.005","article-title":"A taxonomy of privacy-preserving record linkage techniques","volume":"38","author":"Vatsalan Dinusha","year":"2013","unstructured":"Dinusha Vatsalan, Peter Christen, and Vassilios S Verykios. 2013. A taxonomy of privacy-preserving record linkage techniques. Information Systems 38 (2013), 946\u2013969.","journal-title":"Information Systems"},{"key":"e_1_3_2_157_2","doi-asserted-by":"crossref","first-page":"193","DOI":"10.5220\/0011276100003283","volume-title":"Proceedings of the 19th International Conference on Security and Cryptography","author":"Voyez Antonin","year":"2022","unstructured":"Antonin Voyez, Tristan Allard, Gildas Avoine, Pierre Cauchois, Elisa Fromont, and Matthieu Simonin. 2022. Membership inference attacks on aggregated time series with linear programming. In Proceedings of the 19th International Conference on Security and Cryptography. SCITEPRESS-Science and Technology Publications, 193\u2013204."},{"key":"e_1_3_2_158_2","doi-asserted-by":"crossref","first-page":"1825","DOI":"10.1080\/13683500.2018.1553151","article-title":"Breach of traveller privacy in location-based social media","volume":"22","author":"Vu Huy Quan","year":"2019","unstructured":"Huy Quan Vu, Rob Law, and Gang Li. 2019. Breach of traveller privacy in location-based social media. Current Issues in Tourism 22 (2019), 1825\u20131840.","journal-title":"Current Issues in Tourism"},{"key":"e_1_3_2_159_2","first-page":"57:1\u201357:38","article-title":"Technical privacy metrics: A systematic survey","volume":"51","author":"Wagner Isabel","year":"2018","unstructured":"Isabel Wagner and David Eckhoff. 2018. Technical privacy metrics: A systematic survey. Computing Surveys 51 (2018), 57:1\u201357:38.","journal-title":"Computing Surveys"},{"key":"e_1_3_2_160_2","doi-asserted-by":"crossref","first-page":"36","DOI":"10.1109\/SP.2018.00038","volume-title":"Proceedings of the 2018 IEEE Symposium on Security and Privacy","author":"Wang Binghui","year":"2018","unstructured":"Binghui Wang and Neil Zhenqiang Gong. 2018. Stealing hyperparameters in machine learning. In Proceedings of the 2018 IEEE Symposium on Security and Privacy. IEEE, 36\u201352."},{"issue":"4","key":"e_1_3_2_161_2","doi-asserted-by":"crossref","first-page":"446","DOI":"10.1016\/j.dcan.2021.11.006","article-title":"Safeguarding cross-silo federated learning with local differential privacy","volume":"8","author":"Wang Chen","year":"2022","unstructured":"Chen Wang, Xinkui Wu, Gaoyang Liu, Tianping Deng, Kai Peng, and Shaohua Wan. 2022. Safeguarding cross-silo federated learning with local differential privacy. Digital Communications and Networks 8, 4 (2022), 446\u2013454.","journal-title":"Digital Communications and Networks"},{"key":"e_1_3_2_162_2","article-title":"Pseudo-label noise prevention, suppression and softening for unsupervised person re-identification","author":"Wang Haijian","year":"2023","unstructured":"Haijian Wang, Meng Yang, Jialu Liu, and Wei-Shi Zheng. 2023. Pseudo-label noise prevention, suppression and softening for unsupervised person re-identification. IEEE Transactions on Information Forensics and Security (2023).","journal-title":"IEEE Transactions on Information Forensics and Security"},{"issue":"07","key":"e_1_3_2_163_2","doi-asserted-by":"crossref","first-page":"1091","DOI":"10.1142\/S0218194014500363","article-title":"A clustering-based bipartite graph privacy-preserving approach for sharing high-dimensional data","volume":"24","author":"Wang Li-e","year":"2014","unstructured":"Li-e Wang and Xianxian Li. 2014. A clustering-based bipartite graph privacy-preserving approach for sharing high-dimensional data. International Journal of Software Engineering and Knowledge Engineering 24, 07 (2014), 1091\u20131111.","journal-title":"International Journal of Software Engineering and Knowledge Engineering"},{"issue":"12","key":"e_1_3_2_164_2","doi-asserted-by":"crossref","first-page":"2724","DOI":"10.1109\/TKDE.2017.2754499","article-title":"Knowledge graph embedding: A survey of approaches and applications","volume":"29","author":"Wang Quan","year":"2017","unstructured":"Quan Wang, Zhendong Mao, Bin Wang, and Li Guo. 2017. Knowledge graph embedding: A survey of approaches and applications. IEEE Transactions on Knowledge and Data Engineering 29, 12 (2017), 2724\u20132743.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"e_1_3_2_165_2","first-page":"11666","volume-title":"Proceedings of the AAAI Conference on Artificial Intelligence","author":"Wang Tianhao","year":"2021","unstructured":"Tianhao Wang, Yuheng Zhang, and Ruoxi Jia. 2021. Improving robustness to model inversion attacks via mutual information regularization. In Proceedings of the AAAI Conference on Artificial Intelligence. 11666\u201311673."},{"issue":"4","key":"e_1_3_2_166_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3703626","article-title":"Security and privacy on generative data in aigc: A survey","volume":"57","author":"Wang Tao","year":"2024","unstructured":"Tao Wang, Yushu Zhang, Shuren Qi, Ruoyu Zhao, Zhihua Xia, and Jian Weng. 2024. Security and privacy on generative data in aigc: A survey. Computing Surveys 57, 4 (2024), 1\u201334.","journal-title":"Computing Surveys"},{"key":"e_1_3_2_167_2","article-title":"FPMRQ: Fully privacy-preserving multidimensional range queries on encrypted data","author":"Wang Wenli","year":"2023","unstructured":"Wenli Wang, Zhuliang Jia, Mengfan Xu, and Shundong Li. 2023. FPMRQ: Fully privacy-preserving multidimensional range queries on encrypted data. IEEE Internet of Things Journal (2023).","journal-title":"IEEE Internet of Things Journal"},{"key":"e_1_3_2_168_2","doi-asserted-by":"crossref","unstructured":"Zhibo Wang Mengkai Song Zhifei Zhang Yang Song Qian Wang and Hairong Qi. 2019. Beyond inferring class representatives: User-level privacy leakage from federated learning. (2019) 2512\u20132520.","DOI":"10.1109\/INFOCOM.2019.8737416"},{"key":"e_1_3_2_169_2","doi-asserted-by":"crossref","first-page":"3481","DOI":"10.1145\/3658644.3690306","volume-title":"Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security","author":"Wen Rui","year":"2024","unstructured":"Rui Wen, Zheng Li, Michael Backes, and Yang Zhang. 2024. Membership inference attacks against in-context learning. In Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security. 3481\u20133495."},{"key":"e_1_3_2_170_2","first-page":"8675","volume-title":"Proceedings of the AAAI Conference on Artificial Intelligence","author":"Wu Ga","year":"2022","unstructured":"Ga Wu, Masoud Hashemi, and Christopher Srinivasa. 2022. Puma: Performance unchanged model augmentation for training data removal. In Proceedings of the AAAI Conference on Artificial Intelligence. 8675\u20138682."},{"key":"e_1_3_2_171_2","doi-asserted-by":"crossref","first-page":"94575","DOI":"10.1109\/ACCESS.2020.2995568","article-title":"Multi-view low-rank coding-based network data De-anonymization","volume":"8","author":"Xian Xingping","year":"2020","unstructured":"Xingping Xian, Tao Wu, Shaojie Qiao, Wei Wang, Yanbing Liu, and Nan Han. 2020. Multi-view low-rank coding-based network data De-anonymization. IEEE Access 8 (2020), 94575\u201394593.","journal-title":"IEEE Access"},{"key":"e_1_3_2_172_2","first-page":"3405","volume-title":"Proceedings of the World Wide Web Conference on","author":"Xu Fengli","year":"2019","unstructured":"Fengli Xu, Zhen Tu, Hongjia Huang, Shuhao Chang, Funing Sun, Diansheng Guo, and Yong Li. 2019. No more than what i post: Preventing linkage attacks on check-in services. In Proceedings of the World Wide Web Conference on. ACM, San Francisco, USA, 3405\u20133412."},{"key":"e_1_3_2_173_2","doi-asserted-by":"publisher","unstructured":"Heng Xu Tianqing Zhu Lefeng Zhang Wanlei Zhou and Philip S. Yu. 2023. Machine unlearning: A survey. 56 1 (2023). DOI:10.1145\/3603620","DOI":"10.1145\/3603620"},{"key":"e_1_3_2_174_2","doi-asserted-by":"crossref","first-page":"1149","DOI":"10.1109\/ACCESS.2014.2362522","article-title":"Information security in big data: Privacy and data mining","volume":"2","author":"Xu Lei","year":"2014","unstructured":"Lei Xu, Chunxiao Jiang, Jian Wang, Jian Yuan, and Yong Ren. 2014. Information security in big data: Privacy and data mining. IEEE Access 2 (2014), 1149\u20131176.","journal-title":"IEEE Access"},{"key":"e_1_3_2_175_2","doi-asserted-by":"crossref","first-page":"1103","DOI":"10.12785\/amis\/080321","article-title":"A survey of privacy preserving data publishing using generalization and suppression","volume":"8","author":"Xu Yang","year":"2014","unstructured":"Yang Xu, Tinghuai Ma, Meili Tang, and Wei Tian. 2014. A survey of privacy preserving data publishing using generalization and suppression. Applied Mathematics and Information Sciences 8 (2014), 1103\u20131116.","journal-title":"Applied Mathematics and Information Sciences"},{"key":"e_1_3_2_176_2","first-page":"475","volume-title":"Proceedings of teh 21st ACM International Conference on Information and Knowledge Management","author":"Xue Mingqiang","year":"2012","unstructured":"Mingqiang Xue, Panagiotis Karras, Raissi Chedy, Panos Kalnis, and Hung Keng Pung. 2012. Delineating social network data anonymization via random edge perturbation. In Proceedings of teh 21st ACM International Conference on Information and Knowledge Management. 475\u2013484."},{"key":"e_1_3_2_177_2","first-page":"19","volume-title":"Proceedings of the IJCAI","author":"Yan Haonan","year":"2022","unstructured":"Haonan Yan, Xiaoguang Li, Ziyao Guo, Hui Li, Fenghua Li, and Xiaodong Lin. 2022. ARCANE: An efficient architecture for exact machine unlearning. In Proceedings of the IJCAI. 19."},{"issue":"4","key":"e_1_3_2_178_2","first-page":"2680","article-title":"Monitoring-based differential privacy mechanism against query flooding-based model extraction attack","volume":"19","author":"Yan Haonan","year":"2021","unstructured":"Haonan Yan, Xiaoguang Li, Hui Li, Jiamin Li, Wenhai Sun, and Fenghua Li. 2021. Monitoring-based differential privacy mechanism against query flooding-based model extraction attack. IEEE Transactions on Dependable and Secure Computing 19, 4 (2021), 2680\u20132694.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"issue":"2","key":"e_1_3_2_179_2","doi-asserted-by":"crossref","first-page":"75","DOI":"10.1504\/IJSN.2023.131595","article-title":"Privacy preserving dynamic data release based on non-synonymous diverse anatomy","volume":"18","author":"Yan Yan","year":"2023","unstructured":"Yan Yan, Anselme Herman Eyeleko, Adnan Mahmood, Zichao Sun, Zhuoyue Dong, and Fei Xu. 2023. Privacy preserving dynamic data release based on non-synonymous diverse anatomy. International Journal of Security and Networks 18, 2 (2023), 75\u201390.","journal-title":"International Journal of Security and Networks"},{"key":"e_1_3_2_180_2","doi-asserted-by":"crossref","first-page":"818","DOI":"10.1109\/TIFS.2022.3227761","article-title":"Using highly compressed gradients in federated learning for data reconstruction attacks","volume":"18","author":"Yang Haomiao","year":"2022","unstructured":"Haomiao Yang, Mengyu Ge, Kunlan Xiang, and Jingwei Li. 2022. Using highly compressed gradients in federated learning for data reconstruction attacks. IEEE Transactions on Information Forensics and Security 18 (2022), 818\u2013830.","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"e_1_3_2_181_2","doi-asserted-by":"crossref","first-page":"158","DOI":"10.1016\/j.ins.2023.02.025","article-title":"Model poisoning attack in differential privacy-based federated learning","volume":"630","author":"Yang Ming","year":"2023","unstructured":"Ming Yang, Hang Cheng, Fei Chen, Ximeng Liu, Meiqing Wang, and Xibin Li. 2023. Model poisoning attack in differential privacy-based federated learning. Information Sciences 630 (2023), 158\u2013172.","journal-title":"Information Sciences"},{"key":"e_1_3_2_182_2","first-page":"103827","article-title":"Local differential privacy and its applications: A comprehensive survey","author":"Yang Mengmeng","year":"2023","unstructured":"Mengmeng Yang, Taolin Guo, Tianqing Zhu, Ivan Tjuawinata, Jun Zhao, and Kwok-Yan Lam. 2023. Local differential privacy and its applications: A comprehensive survey. Computer Standards and Interfaces (2023), 103827.","journal-title":"Computer Standards and Interfaces"},{"key":"e_1_3_2_183_2","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1016\/j.ins.2018.02.017","article-title":"Expressive query over outsourced encrypted data","volume":"442","author":"Yang Yang","year":"2018","unstructured":"Yang Yang, Ximeng Liu, and Robert Deng. 2018. Expressive query over outsourced encrypted data. Information Sciences 442\u2013443 (2018), 33\u201353.","journal-title":"Information Sciences"},{"key":"e_1_3_2_184_2","doi-asserted-by":"crossref","first-page":"119","DOI":"10.1145\/2512938.2512952","volume-title":"Proceedings of the 1st ACM conference on Online social networks","author":"Yartseva Lyudmila","year":"2013","unstructured":"Lyudmila Yartseva and Matthias Grossglauser. 2013. On the performance of percolation graph matching. In Proceedings of the 1st ACM conference on Online social networks. ACM, Boston, Massachusetts, USA, 119\u2013130."},{"key":"e_1_3_2_185_2","unstructured":"Dayong Ye Huiqiang Chen Shuai Zhou Tianqing Zhu Wanlei Zhou and Shouling Ji. 2022. Model inversion attack against transfer learning: Inverting a model without accessing it. arXiv:2203.06570. Retrieved from https:\/\/arxiv.org\/abs\/2203.06570"},{"key":"e_1_3_2_186_2","first-page":"268","volume-title":"Proceedings of the 2018 IEEE 31st Computer Security Foundations Symposium","author":"Yeom Samuel","year":"2018","unstructured":"Samuel Yeom, Irene Giacomelli, Matt Fredrikson, and Somesh Jha. 2018. Privacy risk in machine learning: Analyzing the connection to overfitting. In Proceedings of the 2018 IEEE 31st Computer Security Foundations Symposium. IEEE, 268\u2013282."},{"issue":"6","key":"e_1_3_2_187_2","first-page":"1","article-title":"A comprehensive survey of privacy-preserving federated learning: A taxonomy, review, and future directions","volume":"54","author":"Yin Xuefei","year":"2021","unstructured":"Xuefei Yin, Yanming Zhu, and Jiankun Hu. 2021. A comprehensive survey of privacy-preserving federated learning: A taxonomy, review, and future directions. ACM Computing Surveys 54, 6 (2021), 1\u201336.","journal-title":"ACM Computing Surveys"},{"key":"e_1_3_2_188_2","doi-asserted-by":"crossref","first-page":"2026","DOI":"10.1145\/3447548.3467444","volume-title":"Proceedings of the 27th ACM SIGKDD Conference on Knowledge Discovery and Data Mining","author":"Yin Yu","year":"2021","unstructured":"Yu Yin, Ke Chen, Lidan Shou, and Gang Chen. 2021. Defending privacy against more knowledgeable membership inference attackers. In Proceedings of the 27th ACM SIGKDD Conference on Knowledge Discovery and Data Mining. 2026\u20132036."},{"key":"e_1_3_2_189_2","article-title":"On the privacy-utility trade-off with and without direct access to the private data","author":"Zamani Amirreza","year":"2023","unstructured":"Amirreza Zamani, Tobias J. Oechtering, and Mikael Skoglund. 2023. On the privacy-utility trade-off with and without direct access to the private data. IEEE Transactions on Information Theory (2023).","journal-title":"IEEE Transactions on Information Theory"},{"key":"e_1_3_2_190_2","doi-asserted-by":"crossref","unstructured":"Hui Zang and Jean Bolot. 2011. Anonymization of location data does not work: A large-scale measurement study. (2011) 12.","DOI":"10.1145\/2030613.2030630"},{"key":"e_1_3_2_191_2","series-title":"Lecture Notes in Computer Science","first-page":"256","volume-title":"Proceedings of the Computational Data and Social Networks.","author":"Zhang Cheng","year":"2019","unstructured":"Cheng Zhang, Shang Wu, Honglu Jiang, Yawei Wang, Jiguo Yu, and Xiuzhen Cheng. 2019. Attribute-enhanced De-anonymization of online social networks. In Proceedings of the Computational Data and Social Networks.Lecture Notes in Computer Science,Springer International Publishing, Cham, 256\u2013267."},{"issue":"3","key":"e_1_3_2_192_2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3442340","article-title":"Efficient and high-quality seeded graph matching: Employing higher-order structural information","volume":"15","author":"Zhang Haida","year":"2021","unstructured":"Haida Zhang, Zengfeng Huang, Xuemin Lin, Zhe Lin, Wenjie Zhang, and Ying Zhang. 2021. Efficient and high-quality seeded graph matching: Employing higher-order structural information. ACM Transactions on Knowledge Discovery from Data 15, 3 (2021), 1\u201331.","journal-title":"ACM Transactions on Knowledge Discovery from Data"},{"key":"e_1_3_2_193_2","doi-asserted-by":"crossref","first-page":"44","DOI":"10.1109\/GLOBECOM54140.2023.10437231","volume-title":"Proceedings of the GLOBECOM 2023-2023 IEEE Global Communications Conference","author":"Zhang Kaiyue","year":"2023","unstructured":"Kaiyue Zhang, Weiqi Wang, Zipei Fan, Xuan Song, and Shui Yu. 2023. Conditional matching GAN guided reconstruction attack in machine unlearning. In Proceedings of the GLOBECOM 2023-2023 IEEE Global Communications Conference. IEEE, 44\u201349."},{"key":"e_1_3_2_194_2","first-page":"1061","volume-title":"Proceedings of the 2020 IEEE International Conference on Big Data","author":"Zhang Qiuchen","year":"2020","unstructured":"Qiuchen Zhang, Jing Ma, Yonghui Xiao, Jian Lou, and Li Xiong. 2020. Broadening differential privacy for deep learning against model inversion attacks. In Proceedings of the 2020 IEEE International Conference on Big Data. IEEE, 1061\u20131070."},{"key":"e_1_3_2_195_2","doi-asserted-by":"crossref","first-page":"849","DOI":"10.1109\/TIFS.2022.3152361","article-title":"Privacy-preserving aggregate mobility data release: An information-theoretic deep reinforcement learning approach","volume":"17","author":"Zhang Wenjing","year":"2022","unstructured":"Wenjing Zhang, Bo Jiang, Ming Li, and Xiaodong Lin. 2022. Privacy-preserving aggregate mobility data release: An information-theoretic deep reinforcement learning approach. IEEE Transactions on Information Forensics and Security 17 (2022), 849\u2013864.","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"e_1_3_2_196_2","first-page":"059","volume-title":"Proceedings of the 2020 11th International Conference on Information and Communication Systems","author":"Zhang Zongyang","year":"2020","unstructured":"Zongyang Zhang, Jiayuan Yin, Yizhong Liu, and Jianwei Liu. 2020. Deanonymization of litecoin through transaction-linkage attacks. In Proceedings of the 2020 11th International Conference on Information and Communication Systems. IEEE, Irbid, Jordan, 059\u2013065."},{"key":"e_1_3_2_197_2","doi-asserted-by":"crossref","first-page":"3218","DOI":"10.1145\/3460120.3485387","volume-title":"Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security","author":"Zhao Kaifa","year":"2021","unstructured":"Kaifa Zhao, Hao Zhou, Yulin Zhu, Xian Zhan, Kai Zhou, Jianfeng Li, Le Yu, Wei Yuan, and Xiapu Luo. 2021. Structural attack against graph based android malware detection. In Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security. 3218\u20133235."},{"key":"e_1_3_2_198_2","doi-asserted-by":"crossref","first-page":"113241","DOI":"10.1016\/j.eswa.2020.113241","article-title":"Novel trajectory privacy-preserving method based on clustering using differential privacy","volume":"149","author":"Zhao Xiaodong","year":"2020","unstructured":"Xiaodong Zhao, Dechang Pi, and Junfu Chen. 2020. Novel trajectory privacy-preserving method based on clustering using differential privacy. Expert Systems with Applications 149 (2020), 113241.","journal-title":"Expert Systems with Applications"},{"key":"e_1_3_2_199_2","doi-asserted-by":"crossref","first-page":"355","DOI":"10.2147\/JAA.S402883","article-title":"Study on intestinal flora and asthma: Knowledge graph analysis based on CiteSpace (2001\u20132021)","author":"Zheng Hang","year":"2023","unstructured":"Hang Zheng, Huan Dai, Xiumei Yan, and Qiangwei Xiang. 2023. Study on intestinal flora and asthma: Knowledge graph analysis based on CiteSpace (2001\u20132021). Journal of Asthma and Allergy (2023), 355\u2013364.","journal-title":"Journal of Asthma and Allergy"},{"key":"e_1_3_2_200_2","doi-asserted-by":"crossref","first-page":"114","DOI":"10.1016\/j.neucom.2021.04.082","article-title":"Resisting membership inference attacks through knowledge distillation","volume":"452","author":"Zheng Junxiang","year":"2021","unstructured":"Junxiang Zheng, Yongzhi Cao, and Hanpin Wang. 2021. Resisting membership inference attacks through knowledge distillation. Neurocomputing 452 (2021), 114\u2013126.","journal-title":"Neurocomputing"},{"key":"e_1_3_2_201_2","doi-asserted-by":"crossref","first-page":"55","DOI":"10.1109\/MCOM.2018.1701245","article-title":"Data linkage in smart internet of things systems: A consideration from a privacy perspective","volume":"56","author":"Zheng Xu","year":"2018","unstructured":"Xu Zheng, Zhipeng Cai, and Yingshu Li. 2018. Data linkage in smart internet of things systems: A consideration from a privacy perspective. IEEE Communications Magazine 56 (2018), 55\u201361.","journal-title":"IEEE Communications Magazine"},{"key":"e_1_3_2_202_2","doi-asserted-by":"crossref","first-page":"12","DOI":"10.1145\/1540276.1540279","article-title":"A brief survey on anonymization techniques for privacy preserving publishing of social network data","volume":"10","author":"Zhou Bin","year":"2008","unstructured":"Bin Zhou, Jian Pei, and WoShun Luk. 2008. A brief survey on anonymization techniques for privacy preserving publishing of social network data. ACM SIGKDD Explorations Newsletter 10 (2008), 12\u201322.","journal-title":"ACM SIGKDD Explorations Newsletter"},{"key":"e_1_3_2_203_2","article-title":"Deep leakage from gradients","volume":"32","author":"Zhu Ligeng","year":"2019","unstructured":"Ligeng Zhu, Zhijian Liu, and Song Han. 2019. Deep leakage from gradients. Advances in Neural Information Processing Systems 32 (2019).","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_204_2","doi-asserted-by":"crossref","first-page":"1619","DOI":"10.1109\/TKDE.2017.2697856","article-title":"Differentially private data publishing and analysis: A survey","volume":"29","author":"Zhu Tianqing","year":"2017","unstructured":"Tianqing Zhu, Gang Li, Wanlei Zhou, and S. Yu Philip. 2017. Differentially private data publishing and analysis: A survey. IEEE Transactions on Knowledge and Data Engineering 29 (2017), 1619\u20131638.","journal-title":"IEEE Transactions on Knowledge and Data Engineering"},{"key":"e_1_3_2_205_2","volume-title":"Proceedings of the 30th USENIX Security Symposium","author":"Zhu Yuankun","year":"2021","unstructured":"Yuankun Zhu, Yueqiang Cheng, Husheng Zhou, and Yantao Lu. 2021. Hermes attack: Steal DNN models with lossless inference accuracy. In Proceedings of the 30th USENIX Security Symposium."}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3770853","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,8]],"date-time":"2025-11-08T13:56:26Z","timestamp":1762610186000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3770853"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,8]]},"references-count":204,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2026,3,31]]}},"alternative-id":["10.1145\/3770853"],"URL":"https:\/\/doi.org\/10.1145\/3770853","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"type":"print","value":"0360-0300"},{"type":"electronic","value":"1557-7341"}],"subject":[],"published":{"date-parts":[[2025,11,8]]},"assertion":[{"value":"2023-02-15","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-09-15","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-11-08","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}