{"id":"https://openalex.org/W4401072564","doi":"https://doi.org/10.1109/tifs.2024.3435493","title":"ToNN: An Oblivious Neural Network Prediction Scheme With Semi-Honest TEE","display_name":"ToNN: An Oblivious Neural Network Prediction Scheme With Semi-Honest TEE","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4401072564","doi":"https://doi.org/10.1109/tifs.2024.3435493"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3435493","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3435493","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5083065299","display_name":"Wei Xu","orcid":"https://orcid.org/0000-0001-8948-9516"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Wei Xu","raw_affiliation_strings":["State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China"],"raw_orcid":"https://orcid.org/0000-0001-8948-9516","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5021292791","display_name":"Hui Zhu","orcid":"https://orcid.org/0000-0002-5853-633X"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hui Zhu","raw_affiliation_strings":["State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China"],"raw_orcid":"https://orcid.org/0000-0002-5853-633X","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5091898557","display_name":"Yandong Zheng","orcid":"https://orcid.org/0000-0003-4534-5670"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yandong Zheng","raw_affiliation_strings":["State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China"],"raw_orcid":"https://orcid.org/0000-0003-4534-5670","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101864760","display_name":"Fengwei Wang","orcid":"https://orcid.org/0000-0002-6886-8258"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fengwei Wang","raw_affiliation_strings":["State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China"],"raw_orcid":"https://orcid.org/0000-0002-6886-8258","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5032530543","display_name":"Jiafeng Hua","orcid":"https://orcid.org/0000-0002-9767-4233"},"institutions":[{"id":"https://openalex.org/I2250955327","display_name":"Huawei Technologies (China)","ror":"https://ror.org/00cmhce21","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250955327"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiafeng Hua","raw_affiliation_strings":["Huawei Technologies Company, Beijing, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Huawei Technologies Company, Beijing, China","institution_ids":["https://openalex.org/I2250955327"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102205897","display_name":"Dengguo Feng","orcid":null},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210128818","display_name":"Institute of Software","ror":"https://ror.org/033dfsn42","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210128818"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dengguo Feng","raw_affiliation_strings":["State Key Laboratory of Computer Science, Institute of Software, Chinese Academy of Sciences, Beijing, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Computer Science, Institute of Software, Chinese Academy of Sciences, Beijing, China","institution_ids":["https://openalex.org/I4210128818","https://openalex.org/I19820366"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5024453724","display_name":"Hui Li","orcid":"https://orcid.org/0000-0001-8310-7169"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hui Li","raw_affiliation_strings":["State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China"],"raw_orcid":"https://orcid.org/0000-0001-8310-7169","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Services Networks, Xidian University, Xi&#x2019;an, China","institution_ids":["https://openalex.org/I149594827"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5083065299"],"corresponding_institution_ids":["https://openalex.org/I149594827"],"apc_list":null,"apc_paid":null,"fwci":1.3245,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.83483567,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":97,"max":98},"biblio":{"volume":"19","issue":null,"first_page":"7335","last_page":"7348"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9987999796867371,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8435742855072021},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6172690987586975},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.6149331331253052},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.4578191041946411},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3502594828605652},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.07120963931083679}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8435742855072021},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6172690987586975},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.6149331331253052},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.4578191041946411},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3502594828605652},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.07120963931083679},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2024.3435493","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3435493","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1204483850","display_name":null,"funder_award_id":"TC20220429023","funder_id":"https://openalex.org/F4320320671","funder_display_name":"National Research Foundation"},{"id":"https://openalex.org/G154702244","display_name":null,"funder_award_id":"U22B2030","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5915805091","display_name":null,"funder_award_id":"62302360","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6810687626","display_name":null,"funder_award_id":"2022YFB4501500","funder_id":"https://openalex.org/F4320335777","funder_display_name":"National Key Research and Development Program of China"},{"id":"https://openalex.org/G690485789","display_name":null,"funder_award_id":"2022YFB4501501","funder_id":"https://openalex.org/F4320335777","funder_display_name":"National Key Research and Development Program of China"}],"funders":[{"id":"https://openalex.org/F4320320671","display_name":"National Research Foundation","ror":"https://ror.org/05s0g1g46"},{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320335777","display_name":"National Key Research and Development Program of China","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W1524288918","https://openalex.org/W1966731635","https://openalex.org/W1969009977","https://openalex.org/W2007339694","https://openalex.org/W2130901615","https://openalex.org/W2435473771","https://openalex.org/W2489591423","https://openalex.org/W2618530766","https://openalex.org/W2701059868","https://openalex.org/W2765200655","https://openalex.org/W2768174108","https://openalex.org/W2793398195","https://openalex.org/W2940691483","https://openalex.org/W2945018059","https://openalex.org/W3035772788","https://openalex.org/W3092115729","https://openalex.org/W3093021001","https://openalex.org/W3097371090","https://openalex.org/W3104454153","https://openalex.org/W3118608800","https://openalex.org/W3130340352","https://openalex.org/W3202467566","https://openalex.org/W3203684970","https://openalex.org/W3216987697","https://openalex.org/W4225654613","https://openalex.org/W4226157417","https://openalex.org/W4281868451","https://openalex.org/W4312544130","https://openalex.org/W4360993799","https://openalex.org/W4361986437","https://openalex.org/W4380905827","https://openalex.org/W4385412355","https://openalex.org/W4387869639","https://openalex.org/W4388857059","https://openalex.org/W4392908482","https://openalex.org/W4396575008","https://openalex.org/W4399573658","https://openalex.org/W6631660994","https://openalex.org/W6718865826","https://openalex.org/W6729667700","https://openalex.org/W6749255846","https://openalex.org/W6763022551","https://openalex.org/W6787972765","https://openalex.org/W6802674293"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052","https://openalex.org/W2382290278","https://openalex.org/W4395014643"],"abstract_inverted_index":{"With":[0],"the":[1,8,39,75,93,100,106,110,128,142,153,163,175],"rapid":[2],"advancements":[3],"in":[4,70],"machine":[5],"learning":[6],"and":[7,34,43,57,65,99,121,144,189,201,209],"widespread":[9],"adoption":[10],"of":[11,41,95,109,177],"Model-as-a-Service":[12],"(MaaS)":[13],"platforms,":[14],"there":[15],"has":[16],"been":[17,60],"significant":[18],"attention":[19],"on":[20,105],"convolutional":[21],"neural":[22,82],"network":[23,83],"(CNN)":[24],"inference":[25,29,50],"services.":[26],"However,":[27],"traditional":[28],"services":[30],"over":[31],"plaintext":[32],"data":[33,42,132],"models":[35,64],"are":[36,124],"susceptible":[37],"to":[38,116,126,140],"risks":[40],"model":[44,101,157],"leakage.":[45],"Although":[46],"several":[47],"privacy-preserving":[48],"CNN":[49,118],"schemes":[51],"utilizing":[52],"trusted":[53],"execution":[54],"environment":[55],"(TEE)":[56],"cryptography":[58],"have":[59,68],"proposed,":[61],"their":[62],"security":[63,94,150],"performance":[66,176],"still":[67],"limitations":[69],"some":[71],"scenarios.":[72],"Aiming":[73],"at":[74],"above":[76],"challenges,":[77],"we":[78,112,135],"present":[79],"an":[80],"oblivious":[81],"prediction":[84],"scheme":[85],"with":[86,206],"semi-honest":[87],"TEE,":[88,111],"namely":[89],"ToNN,":[90],"which":[91,123],"ensures":[92],"users\u2019":[96],"inputs,":[97],"outputs,":[98],"itself.":[102],"Specifically,":[103],"based":[104],"limited":[107],"memory":[108],"design":[113],"secure":[114],"protocols":[115],"perform":[117],"calculations":[119,179],"securely":[120],"efficiently,":[122],"friendly":[125],"support":[127],"single":[129],"instruction":[130],"multiple":[131],"technique.":[133],"Additionally,":[134],"propose":[136],"a":[137],"look-up-table":[138],"method":[139],"optimize":[141],"convolution":[143],"pooling":[145],"layers":[146],"calculations.":[147],"A":[148],"detailed":[149],"analysis":[151],"under":[152],"simulation-based":[154],"real/ideal":[155],"worlds":[156],"shows":[158],"that":[159,171],"ToNN":[160,172],"can":[161,173,202],"achieve":[162],"desired":[164],"security.":[165],"Extensive":[166],"simulation":[167],"results":[168],"further":[169],"demonstrate":[170],"improve":[174],"linear":[178],"by":[180,192],"<inline-formula":[181,193],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[182,194],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">":[183,195],"<tex-math":[184,196],"notation=\"LaTeX\">$\\textbf":[185,197],"{4.86}\\times":[186],"$":[187,199],"</tex-math></inline-formula>":[188],"non-linear":[190],"calculation":[191],"{37.68}\\times":[198],"</tex-math></inline-formula>,":[200],"be":[203],"implemented":[204],"effectively":[205],"low":[207],"computation":[208],"communication":[210],"costs.":[211]},"counts_by_year":[{"year":2025,"cited_by_count":4}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
