{"id":"https://openalex.org/W7117871095","doi":"https://doi.org/10.1109/tifs.2025.3650384","title":"FSAT: A Faster Secure Convolutional Neural Network Inference Framework With Adversarial Training in Resource-Constrained Scenarios","display_name":"FSAT: A Faster Secure Convolutional Neural Network Inference Framework With Adversarial Training in Resource-Constrained Scenarios","publication_year":2026,"publication_date":"2026-01-01","ids":{"openalex":"https://openalex.org/W7117871095","doi":"https://doi.org/10.1109/tifs.2025.3650384"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2025.3650384","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3650384","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5121728345","display_name":"Dong Li","orcid":null},"institutions":[{"id":"https://openalex.org/I4210094876","display_name":"Ministry of Education","ror":"https://ror.org/00q919b81","country_code":"SA","type":"government","lineage":["https://openalex.org/I4210094876"]}],"countries":["SA"],"is_corresponding":true,"raw_author_name":"Dong Li","raw_affiliation_strings":["Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I4210094876"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5089860351","display_name":"Anupam Chattopadhyay","orcid":"https://orcid.org/0000-0002-8818-6983"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Anupam Chattopadhyay","raw_affiliation_strings":["College of Computing and Data Science, Nanyang Technological University, Nanyang, Singapore"],"affiliations":[{"raw_affiliation_string":"College of Computing and Data Science, Nanyang Technological University, Nanyang, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081963477","display_name":"Qingguo L\u00fc","orcid":"https://orcid.org/0000-0003-3602-0946"},"institutions":[{"id":"https://openalex.org/I4210094876","display_name":"Ministry of Education","ror":"https://ror.org/00q919b81","country_code":"SA","type":"government","lineage":["https://openalex.org/I4210094876"]}],"countries":["SA"],"is_corresponding":false,"raw_author_name":"Qingguo L\u00fc","raw_affiliation_strings":["Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I4210094876"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101845076","display_name":"Jiahui Wu","orcid":"https://orcid.org/0000-0003-0121-5575"},"institutions":[{"id":"https://openalex.org/I4210136793","display_name":"Peng Cheng Laboratory","ror":"https://ror.org/03qdqbt06","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210136793"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiahui Wu","raw_affiliation_strings":["Peng Cheng Laboratory, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Peng Cheng Laboratory, Shenzhen, China","institution_ids":["https://openalex.org/I4210136793"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100631860","display_name":"Tao Xiang","orcid":null},"institutions":[{"id":"https://openalex.org/I4210094876","display_name":"Ministry of Education","ror":"https://ror.org/00q919b81","country_code":"SA","type":"government","lineage":["https://openalex.org/I4210094876"]}],"countries":["SA"],"is_corresponding":false,"raw_author_name":"Tao Xiang","raw_affiliation_strings":["Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I4210094876"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100716300","display_name":"Xiaofeng Liao","orcid":"https://orcid.org/0000-0003-1932-3435"},"institutions":[{"id":"https://openalex.org/I4210094876","display_name":"Ministry of Education","ror":"https://ror.org/00q919b81","country_code":"SA","type":"government","lineage":["https://openalex.org/I4210094876"]}],"countries":["SA"],"is_corresponding":false,"raw_author_name":"Xiaofeng Liao","raw_affiliation_strings":["Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China"],"affiliations":[{"raw_affiliation_string":"Key Laboratory of Dependable Services Computing in Cyber Physical and Society-Ministry of Education, the College of Computer, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I4210094876"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5121728345"],"corresponding_institution_ids":["https://openalex.org/I4210094876"],"apc_list":null,"apc_paid":null,"fwci":46.8924,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.98558788,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"21","issue":null,"first_page":"798","last_page":"811"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9333999752998352,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9333999752998352,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.03200000151991844,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.00279999990016222,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.7677000164985657},{"id":"https://openalex.org/keywords/homomorphic-encryption","display_name":"Homomorphic encryption","score":0.7027999758720398},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5781000256538391},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.5496000051498413},{"id":"https://openalex.org/keywords/ciphertext","display_name":"Ciphertext","score":0.5444999933242798},{"id":"https://openalex.org/keywords/convolution","display_name":"Convolution (computer science)","score":0.5321000218391418},{"id":"https://openalex.org/keywords/information-leakage","display_name":"Information leakage","score":0.3953000009059906},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.3935999870300293},{"id":"https://openalex.org/keywords/polynomial","display_name":"Polynomial","score":0.38909998536109924}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8422999978065491},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.7677000164985657},{"id":"https://openalex.org/C158338273","wikidata":"https://www.wikidata.org/wiki/Q2154943","display_name":"Homomorphic encryption","level":3,"score":0.7027999758720398},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5781000256538391},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.5496000051498413},{"id":"https://openalex.org/C93974786","wikidata":"https://www.wikidata.org/wiki/Q1589480","display_name":"Ciphertext","level":3,"score":0.5444999933242798},{"id":"https://openalex.org/C45347329","wikidata":"https://www.wikidata.org/wiki/Q5166604","display_name":"Convolution (computer science)","level":3,"score":0.5321000218391418},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4043999910354614},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4027000069618225},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.3953000009059906},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.3935999870300293},{"id":"https://openalex.org/C90119067","wikidata":"https://www.wikidata.org/wiki/Q43260","display_name":"Polynomial","level":2,"score":0.38909998536109924},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.3718000054359436},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.3619999885559082},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3537999987602234},{"id":"https://openalex.org/C82876162","wikidata":"https://www.wikidata.org/wiki/Q17096504","display_name":"Latency (audio)","level":2,"score":0.35010001063346863},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.3319999873638153},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.326200008392334},{"id":"https://openalex.org/C311688","wikidata":"https://www.wikidata.org/wiki/Q2393193","display_name":"Time complexity","level":2,"score":0.31619998812675476},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3093000054359436},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3082999885082245},{"id":"https://openalex.org/C204806902","wikidata":"https://www.wikidata.org/wiki/Q2333581","display_name":"Semantic security","level":5,"score":0.30090001225471497},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.2833999991416931},{"id":"https://openalex.org/C137822555","wikidata":"https://www.wikidata.org/wiki/Q2587068","display_name":"Information sensitivity","level":2,"score":0.27630001306533813},{"id":"https://openalex.org/C92717368","wikidata":"https://www.wikidata.org/wiki/Q1162538","display_name":"Plaintext","level":3,"score":0.27230000495910645},{"id":"https://openalex.org/C2778403875","wikidata":"https://www.wikidata.org/wiki/Q20312394","display_name":"Adversarial machine learning","level":3,"score":0.26460000872612},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.25699999928474426}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2025.3650384","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2025.3650384","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:dr.ntu.edu.sg:10356/212483","is_oa":false,"landing_page_url":"https://hdl.handle.net/10356/212483","pdf_url":null,"source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Journal Article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4608551859855652,"id":"https://metadata.un.org/sdg/8","display_name":"Decent work and economic growth"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":43,"referenced_works":["https://openalex.org/W44936433","https://openalex.org/W1874619058","https://openalex.org/W1969009977","https://openalex.org/W2098290658","https://openalex.org/W2592314679","https://openalex.org/W2596378825","https://openalex.org/W2701059868","https://openalex.org/W2757528734","https://openalex.org/W2765200655","https://openalex.org/W2768174108","https://openalex.org/W2884985453","https://openalex.org/W2955401130","https://openalex.org/W2984644945","https://openalex.org/W2998503299","https://openalex.org/W3003532255","https://openalex.org/W3004195290","https://openalex.org/W3093021001","https://openalex.org/W3141763582","https://openalex.org/W3173069197","https://openalex.org/W3173593876","https://openalex.org/W3174161356","https://openalex.org/W3175385336","https://openalex.org/W3213906859","https://openalex.org/W4205366980","https://openalex.org/W4205505117","https://openalex.org/W4210300416","https://openalex.org/W4226084118","https://openalex.org/W4285792693","https://openalex.org/W4361986437","https://openalex.org/W4380905827","https://openalex.org/W4381326072","https://openalex.org/W4381733241","https://openalex.org/W4385992398","https://openalex.org/W4390533396","https://openalex.org/W4390787935","https://openalex.org/W4396817327","https://openalex.org/W4400075125","https://openalex.org/W4400382079","https://openalex.org/W4402263660","https://openalex.org/W4406237488","https://openalex.org/W4408749899","https://openalex.org/W4408750063","https://openalex.org/W4409683211"],"related_works":[],"abstract_inverted_index":{"Existing":[0],"CNN":[1,59],"inference":[2,48,99,140],"frameworks":[3],"based":[4],"on":[5],"FHE":[6],"often":[7],"suffer":[8],"from":[9],"reduced":[10],"efficiency":[11,143],"and":[12,22,46,86,96,101,142],"accuracy":[13,100,141],"due":[14],"to":[15,27,125],"the":[16,33,130,147],"polynomial":[17,93],"approximation":[18],"of":[19,129,149],"activation":[20,94],"functions,":[21],"they":[23],"lack":[24],"effective":[25],"mechanisms":[26],"prevent":[28],"sensitive":[29,127,150],"information":[30,107],"leakage":[31],"during":[32],"final":[34],"classification":[35],"stage.":[36],"To":[37,104],"address":[38],"these":[39],"limitations,":[40],"we":[41,109],"propose":[42],"FSAT,":[43],"a":[44,57,82,111],"fast":[45],"secure":[47,83],"framework":[49],"enhanced":[50],"with":[51],"adversarial":[52,113],"training.":[53],"Specifically,":[54],"FSAT":[55,137],"employs":[56],"private":[58],"model":[60],"architecture,":[61],"where":[62],"linear":[63],"layers":[64],"are":[65,78],"computed":[66],"through":[67],"an":[68,87,123],"optimized":[69],"homomorphic":[70],"ciphertext":[71],"convolution":[72],"operation,":[73],"while":[74,144],"non-linear":[75],"layer":[76],"operations":[77],"efficiently":[79],"realized":[80],"using":[81],"searchable":[84],"index":[85],"encrypted":[88],"look-up":[89],"table,":[90],"which":[91],"replace":[92],"approximations":[95],"significantly":[97],"improve":[98],"latency":[102],"performance.":[103],"further":[105],"mitigate":[106],"leakage,":[108],"introduce":[110],"dual-constraint":[112],"training":[114],"scheme":[115],"that":[116,136],"makes":[117],"it":[118],"substantially":[119,145],"more":[120],"difficult":[121],"for":[122],"adversary":[124],"infer":[126],"attributes":[128],"input":[131],"data.":[132],"Experimental":[133],"results":[134],"demonstrate":[135],"achieves":[138],"high":[139],"reducing":[146],"risk":[148],"data":[151],"leakage.":[152]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2026-04-04T08:04:53.788161","created_date":"2026-01-01T00:00:00"}
