{"id":"https://openalex.org/W4379983261","doi":"https://doi.org/10.1109/tcsvt.2023.3284914","title":"DeepDIST: A Black-Box Anti-Collusion Framework for Secure Distribution of Deep Models","display_name":"DeepDIST: A Black-Box Anti-Collusion Framework for Secure Distribution of Deep Models","publication_year":2023,"publication_date":"2023-06-09","ids":{"openalex":"https://openalex.org/W4379983261","doi":"https://doi.org/10.1109/tcsvt.2023.3284914"},"language":"en","primary_location":{"id":"doi:10.1109/tcsvt.2023.3284914","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcsvt.2023.3284914","pdf_url":null,"source":{"id":"https://openalex.org/S115173108","display_name":"IEEE Transactions on Circuits and Systems for Video Technology","issn_l":"1051-8215","issn":["1051-8215","1558-2205"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems for Video Technology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5089664772","display_name":"Hang Cheng","orcid":"https://orcid.org/0000-0003-2443-2820"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Hang Cheng","raw_affiliation_strings":["School of Mathematics and Statistics, Fuzhou University, Fuzhou, China"],"raw_orcid":"https://orcid.org/0000-0003-2443-2820","affiliations":[{"raw_affiliation_string":"School of Mathematics and Statistics, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102880062","display_name":"Xibin Li","orcid":"https://orcid.org/0009-0001-3349-6159"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xibin Li","raw_affiliation_strings":["College of Computer Science and Big Data, Fuzhou University, Fuzhou, China"],"raw_orcid":"https://orcid.org/0009-0001-3349-6159","affiliations":[{"raw_affiliation_string":"College of Computer Science and Big Data, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090841998","display_name":"Huaxiong Wang","orcid":"https://orcid.org/0000-0002-7669-8922"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Huaxiong Wang","raw_affiliation_strings":["School of Physical and Mathematical Sciences, Nanyang Technological University, Jurong West, Singapore"],"raw_orcid":"https://orcid.org/0000-0002-7669-8922","affiliations":[{"raw_affiliation_string":"School of Physical and Mathematical Sciences, Nanyang Technological University, Jurong West, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101889358","display_name":"Xinpeng Zhang","orcid":"https://orcid.org/0000-0002-0212-3501"},"institutions":[{"id":"https://openalex.org/I24943067","display_name":"Fudan University","ror":"https://ror.org/013q1eq08","country_code":"CN","type":"education","lineage":["https://openalex.org/I24943067"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinpeng Zhang","raw_affiliation_strings":["School of Computer Science, Fudan University, Shanghai, China"],"raw_orcid":"https://orcid.org/0000-0002-0212-3501","affiliations":[{"raw_affiliation_string":"School of Computer Science, Fudan University, Shanghai, China","institution_ids":["https://openalex.org/I24943067"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058120371","display_name":"Ximeng Liu","orcid":"https://orcid.org/0000-0002-4238-3295"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ximeng Liu","raw_affiliation_strings":["College of Computer Science and Big Data, Fuzhou University, Fuzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-4238-3295","affiliations":[{"raw_affiliation_string":"College of Computer Science and Big Data, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101717904","display_name":"Meiqing Wang","orcid":"https://orcid.org/0000-0002-3544-3704"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Meiqing Wang","raw_affiliation_strings":["School of Mathematics and Statistics, Fuzhou University, Fuzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-3544-3704","affiliations":[{"raw_affiliation_string":"School of Mathematics and Statistics, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5001193910","display_name":"Fengyong Li","orcid":"https://orcid.org/0000-0002-3385-8164"},"institutions":[{"id":"https://openalex.org/I23632641","display_name":"Shanghai University of Electric Power","ror":"https://ror.org/02w4tny03","country_code":"CN","type":"education","lineage":["https://openalex.org/I23632641"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fengyong Li","raw_affiliation_strings":["College of Computer Science and Technology, Shanghai University of Electric Power, Shanghai, China"],"raw_orcid":"https://orcid.org/0000-0002-3385-8164","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Shanghai University of Electric Power, Shanghai, China","institution_ids":["https://openalex.org/I23632641"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5089664772"],"corresponding_institution_ids":["https://openalex.org/I80947539"],"apc_list":null,"apc_paid":null,"fwci":1.1929,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.82722296,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":"34","issue":"1","first_page":"97","last_page":"109"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.984000027179718,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9366000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/collusion","display_name":"Collusion","score":0.8762191534042358},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8168613314628601},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5355740785598755},{"id":"https://openalex.org/keywords/digital-watermarking","display_name":"Digital watermarking","score":0.5041545629501343},{"id":"https://openalex.org/keywords/embedding","display_name":"Embedding","score":0.46734362840652466},{"id":"https://openalex.org/keywords/class","display_name":"Class (philosophy)","score":0.46173059940338135},{"id":"https://openalex.org/keywords/black-box","display_name":"Black box","score":0.45140540599823},{"id":"https://openalex.org/keywords/watermark","display_name":"Watermark","score":0.4387649893760681},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.4175460934638977},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.41366544365882874},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.13866451382637024}],"concepts":[{"id":"https://openalex.org/C2781198186","wikidata":"https://www.wikidata.org/wiki/Q701521","display_name":"Collusion","level":2,"score":0.8762191534042358},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8168613314628601},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5355740785598755},{"id":"https://openalex.org/C150817343","wikidata":"https://www.wikidata.org/wiki/Q875932","display_name":"Digital watermarking","level":3,"score":0.5041545629501343},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.46734362840652466},{"id":"https://openalex.org/C2777212361","wikidata":"https://www.wikidata.org/wiki/Q5127848","display_name":"Class (philosophy)","level":2,"score":0.46173059940338135},{"id":"https://openalex.org/C94966114","wikidata":"https://www.wikidata.org/wiki/Q29256","display_name":"Black box","level":2,"score":0.45140540599823},{"id":"https://openalex.org/C164112704","wikidata":"https://www.wikidata.org/wiki/Q7974348","display_name":"Watermark","level":3,"score":0.4387649893760681},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.4175460934638977},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.41366544365882874},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.13866451382637024},{"id":"https://openalex.org/C175444787","wikidata":"https://www.wikidata.org/wiki/Q39072","display_name":"Microeconomics","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tcsvt.2023.3284914","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcsvt.2023.3284914","pdf_url":null,"source":{"id":"https://openalex.org/S115173108","display_name":"IEEE Transactions on Circuits and Systems for Video Technology","issn_l":"1051-8215","issn":["1051-8215","1558-2205"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Circuits and Systems for Video Technology","raw_type":"journal-article"},{"id":"pmh:oai:dr.ntu.edu.sg:10356/171797","is_oa":false,"landing_page_url":"https://hdl.handle.net/10356/171797","pdf_url":null,"source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Journal Article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.7599999904632568,"id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G3455523125","display_name":null,"funder_award_id":"2020J01497","funder_id":"https://openalex.org/F4320321878","funder_display_name":"Natural Science Foundation of Fujian Province"},{"id":"https://openalex.org/G3988656123","display_name":null,"funder_award_id":"62172098","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6921281341","display_name":null,"funder_award_id":"JAT200064","funder_id":"https://openalex.org/F4320321893","funder_display_name":"Department of Education, Fujian Province"},{"id":"https://openalex.org/G8564054440","display_name":null,"funder_award_id":"61702105","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G979158640","display_name":null,"funder_award_id":"62072109","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321878","display_name":"Natural Science Foundation of Fujian Province","ror":null},{"id":"https://openalex.org/F4320321893","display_name":"Department of Education, Fujian Province","ror":"https://ror.org/01d6wrk87"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":51,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2059712698","https://openalex.org/W2194775991","https://openalex.org/W2243397390","https://openalex.org/W2579318729","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2806082141","https://openalex.org/W2896457183","https://openalex.org/W2935349488","https://openalex.org/W2952608669","https://openalex.org/W2963857521","https://openalex.org/W2982323300","https://openalex.org/W2997717738","https://openalex.org/W3006874538","https://openalex.org/W3016010032","https://openalex.org/W3083615244","https://openalex.org/W3097777922","https://openalex.org/W3108453052","https://openalex.org/W3118608800","https://openalex.org/W3127152723","https://openalex.org/W3129082635","https://openalex.org/W3132135622","https://openalex.org/W3135872251","https://openalex.org/W3158240034","https://openalex.org/W3164111940","https://openalex.org/W3170956458","https://openalex.org/W3173787059","https://openalex.org/W3173962029","https://openalex.org/W3185788529","https://openalex.org/W3192504716","https://openalex.org/W3203222604","https://openalex.org/W4200633448","https://openalex.org/W4225776299","https://openalex.org/W4288057808","https://openalex.org/W4309699960","https://openalex.org/W4313156423","https://openalex.org/W4323349538","https://openalex.org/W4381415867","https://openalex.org/W4385567795","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6682889407","https://openalex.org/W6743581629","https://openalex.org/W6747838042","https://openalex.org/W6755207826","https://openalex.org/W6769173031","https://openalex.org/W6773816653","https://openalex.org/W6795784170","https://openalex.org/W6838233171"],"related_works":["https://openalex.org/W2137394636","https://openalex.org/W2358993821","https://openalex.org/W1516446231","https://openalex.org/W2098152888","https://openalex.org/W1559740347","https://openalex.org/W2040356834","https://openalex.org/W2080353903","https://openalex.org/W2385289568","https://openalex.org/W2381486749","https://openalex.org/W1514507288"],"abstract_inverted_index":{"Due":[0],"to":[1,39,76,98,190],"enormous":[2],"computing":[3],"and":[4,81,155,175,177,192],"storage":[5],"overhead":[6],"for":[7,151],"well-trained":[8],"Deep":[9],"Neural":[10],"Network":[11],"(DNN)":[12],"models,":[13],"protecting":[14],"the":[15,26,35,56,100,103,106,123,126,129,141,144,164,178,183,187],"intellectual":[16],"property":[17],"of":[18,28,102,125,143,186],"model":[19,127,161,189],"owners":[20],"is":[21,31,156,167],"a":[22,64,71,92],"pressing":[23],"need.":[24],"As":[25],"commercialization":[27],"deep":[29],"models":[30,37],"becoming":[32],"increasingly":[33],"popular,":[34],"pre-trained":[36],"delivered":[38],"users":[40],"may":[41],"suffer":[42],"from":[43],"being":[44],"illegally":[45],"copied,":[46],"redistributed,":[47],"or":[48],"abused.":[49],"In":[50],"this":[51],"paper,":[52],"we":[53,115],"propose":[54],"DeepDIST,":[55],"first":[57],"end-to-end":[58],"secure":[59],"DNNs":[60],"distribution":[61],"framework":[62,69],"in":[63],"black-box":[65],"scenario.":[66],"Specifically,":[67],"our":[68],"adopts":[70],"dual-level":[72],"fingerprint":[73,149],"(FP)":[74],"mechanism":[75],"provide":[77],"reliable":[78],"ownership":[79],"verification,":[80],"proposes":[82],"two":[83,170],"equivalent":[84],"transformations":[85],"that":[86,111,137],"can":[87,139,181],"resist":[88],"collusion":[89,188],"attacks,":[90],"plus":[91],"newly":[93],"designed":[94],"similarity":[95],"loss":[96],"term":[97],"improve":[99],"security":[101],"transformations.":[104],"Unlike":[105],"existing":[107],"passive":[108],"defense":[109,119],"schemes":[110],"detect":[112],"colluding":[113],"participants,":[114],"introduce":[116],"an":[117],"active":[118],"strategy,":[120],"namely":[121],"damaging":[122],"performance":[124],"after":[128,147],"malicious":[130],"collusion.":[131],"The":[132],"extensive":[133],"experimental":[134],"results":[135],"show":[136],"DeepDIST":[138,180],"maintain":[140],"accuracy":[142,185],"host":[145],"DNN":[146],"embedding":[148],"conducted":[150],"true":[152],"traitor":[153],"tracing,":[154],"robust":[157],"against":[158],"several":[159],"popular":[160],"modifications.":[162],"Furthermore,":[163],"anti-collusion":[165],"effect":[166],"evaluated":[168],"on":[169],"typical":[171],"classification":[172],"tasks":[173],"(10-class":[174],"100-class),":[176],"proposed":[179],"drop":[182],"prediction":[184],"10%":[191],"1%":[193],"(random":[194],"guess),":[195],"respectively.":[196]},"counts_by_year":[{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
