{"id":"https://openalex.org/W3134448134","doi":"https://doi.org/10.1109/icip42928.2021.9506147","title":"Transfer Learning-Based Model Protection With Secret Key","display_name":"Transfer Learning-Based Model Protection With Secret Key","publication_year":2021,"publication_date":"2021-08-23","ids":{"openalex":"https://openalex.org/W3134448134","doi":"https://doi.org/10.1109/icip42928.2021.9506147","mag":"3134448134"},"language":"en","primary_location":{"id":"doi:10.1109/icip42928.2021.9506147","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506147","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2103.03525","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5061499776","display_name":"AprilPyone MaungMaung","orcid":"https://orcid.org/0000-0002-0036-6577"},"institutions":[{"id":"https://openalex.org/I69740276","display_name":"Tokyo Metropolitan University","ror":"https://ror.org/00ws30h19","country_code":"JP","type":"education","lineage":["https://openalex.org/I69740276"]}],"countries":["JP"],"is_corresponding":true,"raw_author_name":"MaungMaung AprilPyone","raw_affiliation_strings":["Tokyo Metropolitan University,Tokyo,Japan","Tokyo Metropolitan University, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"Tokyo Metropolitan University,Tokyo,Japan","institution_ids":["https://openalex.org/I69740276"]},{"raw_affiliation_string":"Tokyo Metropolitan University, Tokyo, Japan","institution_ids":["https://openalex.org/I69740276"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5015250468","display_name":"Hitoshi Kiya","orcid":"https://orcid.org/0000-0001-8061-3090"},"institutions":[{"id":"https://openalex.org/I69740276","display_name":"Tokyo Metropolitan University","ror":"https://ror.org/00ws30h19","country_code":"JP","type":"education","lineage":["https://openalex.org/I69740276"]}],"countries":["JP"],"is_corresponding":false,"raw_author_name":"Hitoshi Kiya","raw_affiliation_strings":["Tokyo Metropolitan University,Tokyo,Japan","Tokyo Metropolitan University, Tokyo, Japan"],"affiliations":[{"raw_affiliation_string":"Tokyo Metropolitan University,Tokyo,Japan","institution_ids":["https://openalex.org/I69740276"]},{"raw_affiliation_string":"Tokyo Metropolitan University, Tokyo, Japan","institution_ids":["https://openalex.org/I69740276"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5061499776"],"corresponding_institution_ids":["https://openalex.org/I69740276"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.03071493,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"3877","last_page":"3881"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9900000095367432,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10751","display_name":"Forensic and Genetic Research","score":0.9876999855041504,"subfield":{"id":"https://openalex.org/subfields/1311","display_name":"Genetics"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.8863012194633484},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8002278804779053},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.5942994952201843},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5778378248214722},{"id":"https://openalex.org/keywords/transfer-of-learning","display_name":"Transfer of learning","score":0.5328555107116699},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.49179700016975403},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.4511295557022095},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.35452690720558167},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2668270170688629}],"concepts":[{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.8863012194633484},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8002278804779053},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.5942994952201843},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5778378248214722},{"id":"https://openalex.org/C150899416","wikidata":"https://www.wikidata.org/wiki/Q1820378","display_name":"Transfer of learning","level":2,"score":0.5328555107116699},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.49179700016975403},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.4511295557022095},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.35452690720558167},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2668270170688629}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/icip42928.2021.9506147","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip42928.2021.9506147","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2103.03525","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2103.03525","pdf_url":"https://arxiv.org/pdf/2103.03525","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"mag:3134448134","is_oa":true,"landing_page_url":"http://export.arxiv.org/pdf/2103.03525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"arXiv (Cornell University)","raw_type":null},{"id":"doi:10.48550/arxiv.2103.03525","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2103.03525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2103.03525","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2103.03525","pdf_url":"https://arxiv.org/pdf/2103.03525","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/4","display_name":"Quality Education","score":0.4099999964237213}],"awards":[],"funders":[],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3134448134.pdf","grobid_xml":"https://content.openalex.org/works/W3134448134.grobid-xml"},"referenced_works_count":43,"referenced_works":["https://openalex.org/W2051267297","https://openalex.org/W2117539524","https://openalex.org/W2170436791","https://openalex.org/W2194775991","https://openalex.org/W2579318729","https://openalex.org/W2749581528","https://openalex.org/W2763421725","https://openalex.org/W2768064608","https://openalex.org/W2796299376","https://openalex.org/W2796558322","https://openalex.org/W2804935296","https://openalex.org/W2806082141","https://openalex.org/W2942140795","https://openalex.org/W2962835968","https://openalex.org/W2963587345","https://openalex.org/W2963771448","https://openalex.org/W2964153729","https://openalex.org/W2964335264","https://openalex.org/W2970272159","https://openalex.org/W2971122390","https://openalex.org/W2995164854","https://openalex.org/W2996564870","https://openalex.org/W3091761040","https://openalex.org/W3114697592","https://openalex.org/W3116103918","https://openalex.org/W3118030655","https://openalex.org/W3118608800","https://openalex.org/W3133409125","https://openalex.org/W3134815184","https://openalex.org/W3159734327","https://openalex.org/W3178705018","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6745245109","https://openalex.org/W6747838042","https://openalex.org/W6750186640","https://openalex.org/W6750655628","https://openalex.org/W6766821575","https://openalex.org/W6771809012","https://openalex.org/W6777776945","https://openalex.org/W6779624233","https://openalex.org/W6781276949","https://openalex.org/W7070400136"],"related_works":["https://openalex.org/W3194120585","https://openalex.org/W2927828508","https://openalex.org/W2969964734","https://openalex.org/W2994994863","https://openalex.org/W3189812816","https://openalex.org/W3212600502","https://openalex.org/W182561961","https://openalex.org/W3122848142","https://openalex.org/W3049725806","https://openalex.org/W2805965229","https://openalex.org/W2964205597","https://openalex.org/W3193430514","https://openalex.org/W2952904717","https://openalex.org/W3126914620","https://openalex.org/W3039882231","https://openalex.org/W2996035354","https://openalex.org/W2963022058","https://openalex.org/W3120819519","https://openalex.org/W3113448926","https://openalex.org/W2995986995"],"abstract_inverted_index":{"We":[0],"propose":[1],"a":[2,10,39,44,51,55,60,65,97,105],"novel":[3],"method":[4,34],"for":[5],"protecting":[6],"trained":[7,46],"models":[8],"with":[9,47,64,74,86],"secret":[11,66],"key":[12,20,67,111,122,135],"so":[13],"that":[14,93,103],"unauthorized":[15],"users":[16],"without":[17],"the":[18,23,32,87,94,109,115],"correct":[19,24,110],"cannot":[21],"get":[22],"inference.":[25],"By":[26],"taking":[27],"advantage":[28],"of":[29,54,96,104],"transfer":[30],"learning,":[31],"proposed":[33],"enables":[35],"us":[36],"to":[37,68,102,131],"train":[38],"large":[40],"protected":[41,98,126],"model":[42,45,99,107,127],"like":[43],"ImageNet":[48,88],"by":[49,79],"using":[50,80],"small":[52],"subset":[53],"training":[56],"dataset.":[57],"It":[58],"utilizes":[59],"learnable":[61,70],"encryption":[62],"step":[63],"generate":[69],"transformed":[71,82],"images.":[72,83],"Models":[73],"pre-trained":[75],"weights":[76],"are":[77],"fine-tuned":[78],"such":[81],"In":[84],"experiments":[85],"dataset,":[89],"it":[90],"is":[91],"shown":[92],"performance":[95],"was":[100,112,123,128],"close":[101],"non-protected":[106],"when":[108,119],"given,":[113],"while":[114],"accuracy":[116],"tremendously":[117],"dropped":[118],"an":[120],"incorrect":[121],"used.":[124],"The":[125],"also":[129],"demonstrated":[130],"be":[132],"robust":[133],"against":[134],"estimation":[136],"attacks.":[137]},"counts_by_year":[],"updated_date":"2026-02-09T09:26:11.010843","created_date":"2021-03-15T00:00:00"}
