{"id":"https://openalex.org/W3045729505","doi":"https://doi.org/10.1109/tcsii.2020.3012005","title":"Side-Channel Gray-Box Attack for DNNs","display_name":"Side-Channel Gray-Box Attack for DNNs","publication_year":2020,"publication_date":"2020-07-27","ids":{"openalex":"https://openalex.org/W3045729505","doi":"https://doi.org/10.1109/tcsii.2020.3012005","mag":"3045729505"},"language":"en","primary_location":{"id":"doi:10.1109/tcsii.2020.3012005","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcsii.2020.3012005","pdf_url":null,"source":{"id":"https://openalex.org/S93916849","display_name":"IEEE Transactions on Circuits & Systems II Express Briefs","issn_l":"1549-7747","issn":["1549-7747","1558-3791"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems II: Express Briefs","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101453361","display_name":"Yun Xiang","orcid":"https://orcid.org/0000-0003-1163-698X"},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yun Xiang","raw_affiliation_strings":["College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0003-1163-698X","affiliations":[{"raw_affiliation_string":"College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]},{"raw_affiliation_string":"Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5082564408","display_name":"Yongchao Xu","orcid":"https://orcid.org/0000-0002-7253-3151"},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yongchao Xu","raw_affiliation_strings":["Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5115602609","display_name":"Yingjie Li","orcid":"https://orcid.org/0000-0002-5635-0590"},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yingjie Li","raw_affiliation_strings":["Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-5635-0590","affiliations":[{"raw_affiliation_string":"Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101443107","display_name":"Wen Ma","orcid":"https://orcid.org/0000-0001-9584-4887"},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wen Ma","raw_affiliation_strings":["College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]},{"raw_affiliation_string":"Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016704080","display_name":"Qi Xuan","orcid":null},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qi Xuan","raw_affiliation_strings":["College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-1042-470X","affiliations":[{"raw_affiliation_string":"College of Information Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]},{"raw_affiliation_string":"Institute of Cyberspace Security, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100739893","display_name":"Yi Liu","orcid":"https://orcid.org/0000-0002-4066-689X"},"institutions":[{"id":"https://openalex.org/I55712492","display_name":"Zhejiang University of Technology","ror":"https://ror.org/02djqfd08","country_code":"CN","type":"education","lineage":["https://openalex.org/I55712492"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yi Liu","raw_affiliation_strings":["Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-4066-689X","affiliations":[{"raw_affiliation_string":"Institute of Process Equipment and Control Engineering, Zhejiang University of Technology, Hangzhou, China","institution_ids":["https://openalex.org/I55712492"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5101453361"],"corresponding_institution_ids":["https://openalex.org/I55712492"],"apc_list":null,"apc_paid":null,"fwci":2.1743,"has_fulltext":false,"cited_by_count":26,"citation_normalized_percentile":{"value":0.90185054,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":"68","issue":"1","first_page":"501","last_page":"505"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9786999821662903,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9740999937057495,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.716810405254364},{"id":"https://openalex.org/keywords/white-box","display_name":"White box","score":0.6367142796516418},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.6073746085166931},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5254765748977661},{"id":"https://openalex.org/keywords/gray","display_name":"Gray (unit)","score":0.50633704662323},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.4772917330265045},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.46653133630752563},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.41374754905700684},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.37835007905960083},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3683646321296692},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.36381375789642334},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3412361741065979},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.10023263096809387}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.716810405254364},{"id":"https://openalex.org/C180932941","wikidata":"https://www.wikidata.org/wiki/Q997233","display_name":"White box","level":2,"score":0.6367142796516418},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.6073746085166931},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5254765748977661},{"id":"https://openalex.org/C166275286","wikidata":"https://www.wikidata.org/wiki/Q190095","display_name":"Gray (unit)","level":2,"score":0.50633704662323},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.4772917330265045},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.46653133630752563},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.41374754905700684},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.37835007905960083},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3683646321296692},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.36381375789642334},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3412361741065979},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.10023263096809387},{"id":"https://openalex.org/C126838900","wikidata":"https://www.wikidata.org/wiki/Q77604","display_name":"Radiology","level":1,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tcsii.2020.3012005","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcsii.2020.3012005","pdf_url":null,"source":{"id":"https://openalex.org/S93916849","display_name":"IEEE Transactions on Circuits & Systems II Express Briefs","issn_l":"1549-7747","issn":["1549-7747","1558-3791"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems II: Express Briefs","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G4527305417","display_name":null,"funder_award_id":"61973273","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4947568728","display_name":null,"funder_award_id":"61873241","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7918413049","display_name":null,"funder_award_id":"61572439","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8366387292","display_name":null,"funder_award_id":"LR19F030001","funder_id":"https://openalex.org/F4320338464","funder_display_name":"Natural Science Foundation of Zhejiang Province"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320338464","display_name":"Natural Science Foundation of Zhejiang Province","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":32,"referenced_works":["https://openalex.org/W104120367","https://openalex.org/W1511843316","https://openalex.org/W1613874182","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2031989101","https://openalex.org/W2133707980","https://openalex.org/W2163605009","https://openalex.org/W2180612164","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2402794349","https://openalex.org/W2534681634","https://openalex.org/W2603766943","https://openalex.org/W2738841453","https://openalex.org/W2765424254","https://openalex.org/W2789440825","https://openalex.org/W2903712458","https://openalex.org/W2919115771","https://openalex.org/W2962700793","https://openalex.org/W2962835968","https://openalex.org/W2963207607","https://openalex.org/W2964153729","https://openalex.org/W2981522341","https://openalex.org/W2995527107","https://openalex.org/W3023621413","https://openalex.org/W3103557498","https://openalex.org/W4300434632","https://openalex.org/W6684191040","https://openalex.org/W6713309242","https://openalex.org/W6777886746"],"related_works":["https://openalex.org/W2047881532","https://openalex.org/W1984273188","https://openalex.org/W2727407240","https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W2896078964","https://openalex.org/W4312601715","https://openalex.org/W4297846880","https://openalex.org/W4324108765","https://openalex.org/W4281399026"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"are":[3,9],"becoming":[4],"increasingly":[5],"popular.":[6],"However,":[7],"they":[8],"also":[10],"vulnerable":[11],"to":[12,68],"adversarial":[13],"attacks.":[14],"The":[15,25,87],"existing":[16,99],"attack":[17,21,27,45,67,94],"methods":[18],"include":[19],"white-box":[20,26],"and":[22,78],"black-box":[23,34],"attack.":[24],"assumes":[28,36],"full":[29],"model":[30,71],"knowledge":[31],"while":[32],"the":[33,54,60,65,70,98],"one":[35],"none.":[37],"In":[38],"this":[39],"brief,":[40],"we":[41,51,58,80],"propose":[42,59],"a":[43,75],"novel":[44],"method":[46,83],"between":[47],"these":[48],"two.":[49],"Specifically,":[50],"have":[52],"made":[53],"following":[55],"contributions:":[56],"(1)":[57],"gray-box":[61,93],"attack,":[62],"which":[63],"utilizes":[64],"side-channel":[66],"predict":[69],"structure":[72],"based":[73],"on":[74,84],"pre-trained":[76],"classifier":[77],"(2)":[79],"validate":[81],"our":[82,92],"real-world":[85],"experiments.":[86],"experimental":[88],"results":[89],"show":[90],"that":[91],"can":[95],"significantly":[96],"outperform":[97],"techniques.":[100]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":7},{"year":2023,"cited_by_count":6},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":4},{"year":2020,"cited_by_count":2}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
