{"id":"https://openalex.org/W2964162474","doi":"https://doi.org/10.1109/infocom.2019.8737416","title":"Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning","display_name":"Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning","publication_year":2019,"publication_date":"2019-04-01","ids":{"openalex":"https://openalex.org/W2964162474","doi":"https://doi.org/10.1109/infocom.2019.8737416","mag":"2964162474"},"language":"en","primary_location":{"id":"doi:10.1109/infocom.2019.8737416","is_oa":false,"landing_page_url":"https://doi.org/10.1109/infocom.2019.8737416","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE INFOCOM 2019 - IEEE Conference on Computer Communications","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100422345","display_name":"Zhibo Wang","orcid":"https://orcid.org/0000-0002-5804-3279"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zhibo Wang","raw_affiliation_strings":["Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085556383","display_name":"Mengkai Song","orcid":"https://orcid.org/0000-0002-7907-3469"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mengkai Song","raw_affiliation_strings":["Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5114860359","display_name":"Zhifei Zhang","orcid":"https://orcid.org/0000-0003-0466-9548"},"institutions":[{"id":"https://openalex.org/I75027704","display_name":"University of Tennessee at Knoxville","ror":"https://ror.org/020f3ap87","country_code":"US","type":"education","lineage":["https://openalex.org/I75027704"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zhifei Zhang","raw_affiliation_strings":["Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA"],"affiliations":[{"raw_affiliation_string":"Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA","institution_ids":["https://openalex.org/I75027704"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101423079","display_name":"Yang Song","orcid":"https://orcid.org/0000-0002-7699-5855"},"institutions":[{"id":"https://openalex.org/I75027704","display_name":"University of Tennessee at Knoxville","ror":"https://ror.org/020f3ap87","country_code":"US","type":"education","lineage":["https://openalex.org/I75027704"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yang Song","raw_affiliation_strings":["Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA"],"affiliations":[{"raw_affiliation_string":"Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA","institution_ids":["https://openalex.org/I75027704"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100391116","display_name":"Qian Wang","orcid":"https://orcid.org/0000-0002-8967-8525"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qian Wang","raw_affiliation_strings":["Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University, P. R. China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5072730926","display_name":"Hairong Qi","orcid":"https://orcid.org/0000-0002-2693-5520"},"institutions":[{"id":"https://openalex.org/I75027704","display_name":"University of Tennessee at Knoxville","ror":"https://ror.org/020f3ap87","country_code":"US","type":"education","lineage":["https://openalex.org/I75027704"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hairong Qi","raw_affiliation_strings":["Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA"],"affiliations":[{"raw_affiliation_string":"Deptment of Electrical Engineering and Computer Science, University of Tennessee, Knoxville, USA","institution_ids":["https://openalex.org/I75027704"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5100422345"],"corresponding_institution_ids":["https://openalex.org/I37461747"],"apc_list":null,"apc_paid":null,"fwci":54.1601,"has_fulltext":false,"cited_by_count":797,"citation_normalized_percentile":{"value":0.99881813,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"2512","last_page":"2520"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9909999966621399,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9750000238418579,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8432810306549072},{"id":"https://openalex.org/keywords/discriminator","display_name":"Discriminator","score":0.6649653911590576},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5261597037315369},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.5193430185317993},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.47396013140678406},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.44727805256843567},{"id":"https://openalex.org/keywords/class","display_name":"Class (philosophy)","score":0.4275054931640625},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4180357754230499},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.4120372533798218},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3998837471008301},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.2928468585014343}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8432810306549072},{"id":"https://openalex.org/C2779803651","wikidata":"https://www.wikidata.org/wiki/Q5282088","display_name":"Discriminator","level":3,"score":0.6649653911590576},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5261597037315369},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.5193430185317993},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.47396013140678406},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.44727805256843567},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.4275054931640625},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4180357754230499},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.4120372533798218},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3998837471008301},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.2928468585014343},{"id":"https://openalex.org/C24890656","wikidata":"https://www.wikidata.org/wiki/Q82811","display_name":"Acoustics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C94915269","wikidata":"https://www.wikidata.org/wiki/Q1834857","display_name":"Detector","level":2,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/infocom.2019.8737416","is_oa":false,"landing_page_url":"https://doi.org/10.1109/infocom.2019.8737416","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE INFOCOM 2019 - IEEE Conference on Computer Communications","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Reduced inequalities","score":0.6000000238418579,"id":"https://metadata.un.org/sdg/10"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W955924517","https://openalex.org/W1915485278","https://openalex.org/W2027595342","https://openalex.org/W2051267297","https://openalex.org/W2053637704","https://openalex.org/W2099471712","https://openalex.org/W2103560185","https://openalex.org/W2336650964","https://openalex.org/W2535690855","https://openalex.org/W2541884796","https://openalex.org/W2548275288","https://openalex.org/W2591882872","https://openalex.org/W2630997112","https://openalex.org/W2701059868","https://openalex.org/W2767079719","https://openalex.org/W2777914285","https://openalex.org/W2799803467","https://openalex.org/W2950776302","https://openalex.org/W2963226019","https://openalex.org/W2963373786","https://openalex.org/W2964165151","https://openalex.org/W4205228770","https://openalex.org/W4295264816","https://openalex.org/W4298221930","https://openalex.org/W4318619660","https://openalex.org/W4320013936","https://openalex.org/W6663928093","https://openalex.org/W6692940648","https://openalex.org/W6703420464","https://openalex.org/W6718140377","https://openalex.org/W6718379498","https://openalex.org/W6728757088","https://openalex.org/W6729482032","https://openalex.org/W6746720608","https://openalex.org/W6750799548"],"related_works":["https://openalex.org/W4293202849","https://openalex.org/W1980965563","https://openalex.org/W1489300767","https://openalex.org/W4380714744","https://openalex.org/W2387995142","https://openalex.org/W4319453655","https://openalex.org/W2057775761","https://openalex.org/W2964074194","https://openalex.org/W2089959425","https://openalex.org/W2995777218"],"abstract_inverted_index":{"Federated":[0],"learning,":[1,10,18,184],"i.e.,":[2,31],"a":[3,12,25,90,99,110,132,137,142],"mobile":[4],"edge":[5],"computing":[6],"framework":[7,138],"for":[8],"deep":[9],"is":[11,22,84,98],"recent":[13],"advance":[14,65],"in":[15,24],"privacy-preserving":[16],"machine":[17],"where":[19],"the":[20,29,35,44,51,54,58,64,76,106,116,125,129,163,178,182,185,191,198,201,206,209],"model":[21],"trained":[23],"decentralized":[26],"manner":[27],"by":[28,128],"clients,":[30,82],"data":[32,42,78,108],"curators,":[33],"preventing":[34],"server":[36,55,192],"from":[37,43,53,109,131],"directly":[38],"accessing":[39],"those":[40],"private":[41,107,169],"clients.":[45],"This":[46,113],"learning":[47,127],"mechanism":[48],"significantly":[49],"challenges":[50],"attack":[52,89,130],"side.":[56,193],"Although":[57],"state-of-the-art":[59],"attacking":[60,203],"techniques":[61],"that":[62,174],"incorporated":[63],"of":[66,75,153,181,200],"Generative":[67],"adversarial":[68],"networks":[69],"(GANs)":[70],"could":[71],"construct":[72],"class":[73],"representatives":[74],"global":[77],"distribution":[79],"among":[80],"all":[81],"it":[83],"still":[85],"challenging":[86],"to":[87,103,119,165,176,208],"distinguishably":[88],"specific":[91,111],"client":[92,151,160],"(i.e.,":[93],"user-level":[94,121],"privacy":[95,101,122],"leakage),":[96],"which":[97,145],"stronger":[100],"threat":[102],"precisely":[104],"recover":[105,166],"client.":[112],"paper":[114],"gives":[115],"first":[117],"attempt":[118],"explore":[120],"leakage":[123],"against":[124],"federated":[126,183],"malicious":[133],"server.":[134],"We":[135],"propose":[136],"incorporating":[139],"GAN":[140],"with":[141],"multi-task":[143],"discriminator,":[144],"simultaneously":[146],"discriminates":[147],"category,":[148],"reality,":[149],"and":[150,205],"identity":[152,161],"input":[154],"samples.":[155],"The":[156,194],"novel":[157],"discrimination":[158],"on":[159,190],"enables":[162],"generator":[164],"user":[167],"specified":[168],"data.":[170],"Unlike":[171],"existing":[172],"works":[173,188],"tend":[175],"interfere":[177],"training":[179],"process":[180],"proposed":[186,202],"method":[187],"\u201cinvisibly\u201d":[189],"experimental":[195],"results":[196],"demonstrate":[197],"effectiveness":[199],"approach":[204],"superior":[207],"state-of-the-art.":[210]},"counts_by_year":[{"year":2026,"cited_by_count":13},{"year":2025,"cited_by_count":90},{"year":2024,"cited_by_count":165},{"year":2023,"cited_by_count":157},{"year":2022,"cited_by_count":131},{"year":2021,"cited_by_count":137},{"year":2020,"cited_by_count":92},{"year":2019,"cited_by_count":12}],"updated_date":"2026-04-04T08:04:53.788161","created_date":"2025-10-10T00:00:00"}
