{"id":"https://openalex.org/W3197845738","doi":"https://doi.org/10.1007/978-3-031-13185-1_7","title":"Shared Certificates for\u00a0Neural Network Verification","display_name":"Shared Certificates for\u00a0Neural Network Verification","publication_year":2022,"publication_date":"2022-01-01","ids":{"openalex":"https://openalex.org/W3197845738","doi":"https://doi.org/10.1007/978-3-031-13185-1_7","mag":"3197845738"},"language":"en","primary_location":{"id":"doi:10.1007/978-3-031-13185-1_7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-13185-1_7","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-13185-1_7.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"type":"book-chapter","indexed_in":["crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-13185-1_7.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5088357895","display_name":"M. Fischer","orcid":"https://orcid.org/0000-0002-4157-1235"},"institutions":[{"id":"https://openalex.org/I35440088","display_name":"ETH Zurich","ror":"https://ror.org/05a28rw58","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I35440088"]}],"countries":["CH"],"is_corresponding":true,"raw_author_name":"Marc Fischer","raw_affiliation_strings":["ETH Zurich, Z\u00fcrich, Switzerland"],"affiliations":[{"raw_affiliation_string":"ETH Zurich, Z\u00fcrich, Switzerland","institution_ids":["https://openalex.org/I35440088"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028225541","display_name":"Christian Sprecher","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Christian Sprecher","raw_affiliation_strings":["Nostic Solutions AG, Freienbach, Switzerland"],"affiliations":[{"raw_affiliation_string":"Nostic Solutions AG, Freienbach, Switzerland","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002442193","display_name":"Dimitar I. Dimitrov","orcid":"https://orcid.org/0000-0001-9813-0900"},"institutions":[{"id":"https://openalex.org/I35440088","display_name":"ETH Zurich","ror":"https://ror.org/05a28rw58","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I35440088"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Dimitar Iliev Dimitrov","raw_affiliation_strings":["ETH Zurich, Z\u00fcrich, Switzerland"],"affiliations":[{"raw_affiliation_string":"ETH Zurich, Z\u00fcrich, Switzerland","institution_ids":["https://openalex.org/I35440088"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100760604","display_name":"Gagandeep Singh","orcid":"https://orcid.org/0000-0002-9299-2961"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gagandeep Singh","raw_affiliation_strings":["University of Illinois at Urbana-Champaign & VMware Research, Champaign, USA"],"affiliations":[{"raw_affiliation_string":"University of Illinois at Urbana-Champaign & VMware Research, Champaign, USA","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5069901599","display_name":"Martin Vechev","orcid":"https://orcid.org/0000-0002-0054-9568"},"institutions":[{"id":"https://openalex.org/I35440088","display_name":"ETH Zurich","ror":"https://ror.org/05a28rw58","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I35440088"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Martin Vechev","raw_affiliation_strings":["ETH Zurich, Z\u00fcrich, Switzerland"],"affiliations":[{"raw_affiliation_string":"ETH Zurich, Z\u00fcrich, Switzerland","institution_ids":["https://openalex.org/I35440088"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5088357895"],"corresponding_institution_ids":["https://openalex.org/I35440088"],"apc_list":{"value":5000,"currency":"EUR","value_usd":5392},"apc_paid":{"value":5000,"currency":"EUR","value_usd":5392},"fwci":4.7969,"has_fulltext":true,"cited_by_count":14,"citation_normalized_percentile":{"value":0.95679251,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"127","last_page":"148"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9793000221252441,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9485999941825867,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.9007911682128906},{"id":"https://openalex.org/keywords/reuse","display_name":"Reuse","score":0.6976489424705505},{"id":"https://openalex.org/keywords/scratch","display_name":"Scratch","score":0.6810290217399597},{"id":"https://openalex.org/keywords/proof-of-concept","display_name":"Proof of concept","score":0.4973447620868683},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.4915855824947357},{"id":"https://openalex.org/keywords/abstraction","display_name":"Abstraction","score":0.4740982949733734},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.42978599667549133},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.38126635551452637},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.3798127770423889},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.3407876491546631},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.29535654187202454},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.26812130212783813},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.14359337091445923}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.9007911682128906},{"id":"https://openalex.org/C206588197","wikidata":"https://www.wikidata.org/wiki/Q846574","display_name":"Reuse","level":2,"score":0.6976489424705505},{"id":"https://openalex.org/C2781235140","wikidata":"https://www.wikidata.org/wiki/Q275131","display_name":"Scratch","level":2,"score":0.6810290217399597},{"id":"https://openalex.org/C124978682","wikidata":"https://www.wikidata.org/wiki/Q1201019","display_name":"Proof of concept","level":2,"score":0.4973447620868683},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.4915855824947357},{"id":"https://openalex.org/C124304363","wikidata":"https://www.wikidata.org/wiki/Q673661","display_name":"Abstraction","level":2,"score":0.4740982949733734},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.42978599667549133},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.38126635551452637},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3798127770423889},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.3407876491546631},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.29535654187202454},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.26812130212783813},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.14359337091445923},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C18903297","wikidata":"https://www.wikidata.org/wiki/Q7150","display_name":"Ecology","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1007/978-3-031-13185-1_7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-13185-1_7","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-13185-1_7.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},{"id":"pmh:oai:www.research-collection.ethz.ch:20.500.11850/579346","is_oa":true,"landing_page_url":"http://hdl.handle.net/20.500.11850/579346","pdf_url":null,"source":{"id":"https://openalex.org/S4306402302","display_name":"Repository for Publications and Research Data (ETH Zurich)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I35440088","host_organization_name":"ETH Zurich","host_organization_lineage":["https://openalex.org/I35440088"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Lecture Notes in Computer Science, 13371","raw_type":"info:eu-repo/semantics/conferenceObject"},{"id":"doi:10.3929/ethz-b-000579346","is_oa":true,"landing_page_url":"https://doi.org/10.3929/ethz-b-000579346","pdf_url":null,"source":{"id":"https://openalex.org/S7407051236","display_name":"ETH Z\u00fcrich Research Collection","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article-journal"}],"best_oa_location":{"id":"doi:10.1007/978-3-031-13185-1_7","is_oa":true,"landing_page_url":"https://doi.org/10.1007/978-3-031-13185-1_7","pdf_url":"https://link.springer.com/content/pdf/10.1007/978-3-031-13185-1_7.pdf","source":{"id":"https://openalex.org/S106296714","display_name":"Lecture notes in computer science","issn_l":"0302-9743","issn":["0302-9743","1611-3349"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"book series"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Lecture Notes in Computer Science","raw_type":"book-chapter"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/17","display_name":"Partnerships for the goals","score":0.41999998688697815}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3197845738.pdf","grobid_xml":"https://content.openalex.org/works/W3197845738.grobid-xml"},"referenced_works_count":64,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W165349349","https://openalex.org/W1489112658","https://openalex.org/W1553574558","https://openalex.org/W1976665040","https://openalex.org/W1990880047","https://openalex.org/W2043100293","https://openalex.org/W2132661148","https://openalex.org/W2148894497","https://openalex.org/W2154579312","https://openalex.org/W2163605009","https://openalex.org/W2187089797","https://openalex.org/W2408141691","https://openalex.org/W2594877703","https://openalex.org/W2602024037","https://openalex.org/W2612667315","https://openalex.org/W2734705105","https://openalex.org/W2766447205","https://openalex.org/W2775273147","https://openalex.org/W2783032942","https://openalex.org/W2794609696","https://openalex.org/W2799107510","https://openalex.org/W2801079363","https://openalex.org/W2803850896","https://openalex.org/W2807040120","https://openalex.org/W2890472662","https://openalex.org/W2890660842","https://openalex.org/W2892354372","https://openalex.org/W2900153411","https://openalex.org/W2957311447","https://openalex.org/W2963054787","https://openalex.org/W2963424284","https://openalex.org/W2963440492","https://openalex.org/W2963496101","https://openalex.org/W2963565751","https://openalex.org/W2964153729","https://openalex.org/W2964253222","https://openalex.org/W2965187570","https://openalex.org/W2970297683","https://openalex.org/W2970456043","https://openalex.org/W2970971581","https://openalex.org/W2974147052","https://openalex.org/W2996038245","https://openalex.org/W2996629283","https://openalex.org/W2998574230","https://openalex.org/W2999193264","https://openalex.org/W3012067785","https://openalex.org/W3022023007","https://openalex.org/W3034215083","https://openalex.org/W3047646484","https://openalex.org/W3094683669","https://openalex.org/W3101661333","https://openalex.org/W3104896058","https://openalex.org/W3118608800","https://openalex.org/W3125577182","https://openalex.org/W3138459719","https://openalex.org/W3173720415","https://openalex.org/W3183883635","https://openalex.org/W3195110516","https://openalex.org/W3204683753","https://openalex.org/W3211080255","https://openalex.org/W6600466347","https://openalex.org/W6637162671","https://openalex.org/W6824029754"],"related_works":["https://openalex.org/W2475116013","https://openalex.org/W2770018148","https://openalex.org/W2358308169","https://openalex.org/W2385135707","https://openalex.org/W2140315382","https://openalex.org/W2059109728","https://openalex.org/W322691623","https://openalex.org/W2494989134","https://openalex.org/W2509444723","https://openalex.org/W2004958254"],"abstract_inverted_index":{"Abstract":[0],"Existing":[1],"neural":[2],"network":[3],"verifiers":[4],"compute":[5],"a":[6,15,20,62,75,137],"proof":[7,50,107],"that":[8,78],"each":[9,27,37,93],"input":[10,38],"is":[11,31],"handled":[12],"correctly":[13],"under":[14],"given":[16],"perturbation":[17,42],"by":[18],"propagating":[19],"symbolic":[21],"abstraction":[22],"of":[23,103,128,139],"reachable":[24],"values":[25],"at":[26,81,158],"layer.":[28],"This":[29],"process":[30],"repeated":[32],"from":[33],"scratch":[34],"independently":[35],"for":[36,65,84],"(e.g.,":[39,43],"image)":[40],"and":[41,87,141,151],"rotation),":[44],"leading":[45],"to":[46,113,124],"an":[47,54,120],"expensive":[48],"overall":[49,115],"effort":[51,108],"when":[52],"handling":[53],"entire":[55],"dataset.":[56],"In":[57],"this":[58,67],"work,":[59],"we":[60,98],"introduce":[61,99],"new":[63],"method":[64],"reducing":[66,132],"verification":[68,116,134],"cost":[69,135],"without":[70],"losing":[71],"precision":[72],"based":[73],"on":[74,136,144],"key":[76],"insight":[77],"abstractions":[79],"obtained":[80],"intermediate":[82],"layers":[83],"different":[85],"inputs":[86,112],"perturbations":[88],"can":[89],"overlap":[90],"or":[91],"contain":[92],"other.":[94],"Leveraging":[95],"our":[96,156],"insight,":[97],"the":[100,126,133,148],"general":[101],"concept":[102],"shared":[104,129],"certificates,":[105],"enabling":[106],"reuse":[109],"across":[110],"multiple":[111],"reduce":[114],"costs.":[117],"We":[118,154],"perform":[119],"extensive":[121],"experimental":[122],"evaluation":[123],"demonstrate":[125],"effectiveness":[127],"certificates":[130],"in":[131],"range":[138],"datasets":[140],"attack":[142],"specifications":[143],"image":[145],"classifiers":[146],"including":[147],"popular":[149],"patch":[150],"geometric":[152],"perturbations.":[153],"release":[155],"implementation":[157],"https://github.com/eth-sri/proof-sharing":[159],".":[160]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":1}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
