{"id":"https://openalex.org/W4399938968","doi":"https://doi.org/10.1109/tmc.2024.3417930","title":"Does Differential Privacy Really Protect Federated Learning From Gradient Leakage Attacks?","display_name":"Does Differential Privacy Really Protect Federated Learning From Gradient Leakage Attacks?","publication_year":2024,"publication_date":"2024-06-24","ids":{"openalex":"https://openalex.org/W4399938968","doi":"https://doi.org/10.1109/tmc.2024.3417930"},"language":"en","primary_location":{"id":"doi:10.1109/tmc.2024.3417930","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmc.2024.3417930","pdf_url":null,"source":{"id":"https://openalex.org/S69141925","display_name":"IEEE Transactions on Mobile Computing","issn_l":"1536-1233","issn":["1536-1233","1558-0660","2161-9875"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Mobile Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100702750","display_name":"Jiahui Hu","orcid":"https://orcid.org/0000-0001-8771-7474"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jiahui Hu","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-8771-7474","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113960270","display_name":"Jiacheng Du","orcid":null},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiacheng Du","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100422345","display_name":"Zhibo Wang","orcid":"https://orcid.org/0000-0002-5804-3279"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhibo Wang","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-5804-3279","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083836256","display_name":"Xiaoyi Pang","orcid":"https://orcid.org/0000-0002-2763-2695"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaoyi Pang","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-2763-2695","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051721506","display_name":"Yajie Zhou","orcid":"https://orcid.org/0009-0001-5450-3354"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yajie Zhou","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5089450416","display_name":"Peng Sun","orcid":"https://orcid.org/0000-0001-6221-8142"},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Peng Sun","raw_affiliation_strings":["College of Computer Science and Electronic Engineering, Hunan University, Changsha, China"],"raw_orcid":"https://orcid.org/0000-0001-6221-8142","affiliations":[{"raw_affiliation_string":"College of Computer Science and Electronic Engineering, Hunan University, Changsha, China","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5105297718","display_name":"Kui Ren","orcid":"https://orcid.org/0000-0002-1969-2591"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kui Ren","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-1969-2591","affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5100702750"],"corresponding_institution_ids":["https://openalex.org/I76130692"],"apc_list":null,"apc_paid":null,"fwci":9.2403,"has_fulltext":false,"cited_by_count":30,"citation_normalized_percentile":{"value":0.98274382,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":"23","issue":"12","first_page":"12635","last_page":"12649"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9965000152587891,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9965000152587891,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9793999791145325,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11612","display_name":"Stochastic Gradient Optimization Techniques","score":0.9135000109672546,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.8321041464805603},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8162586688995361},{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.606797456741333},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5947174429893494},{"id":"https://openalex.org/keywords/privacy-protection","display_name":"Privacy protection","score":0.5421224236488342},{"id":"https://openalex.org/keywords/information-leakage","display_name":"Information leakage","score":0.5216895937919617},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.5083045363426208},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.16043168306350708}],"concepts":[{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.8321041464805603},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8162586688995361},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.606797456741333},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5947174429893494},{"id":"https://openalex.org/C3017597292","wikidata":"https://www.wikidata.org/wiki/Q25052250","display_name":"Privacy protection","level":2,"score":0.5421224236488342},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.5216895937919617},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.5083045363426208},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.16043168306350708},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C139719470","wikidata":"https://www.wikidata.org/wiki/Q39680","display_name":"Macroeconomics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tmc.2024.3417930","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmc.2024.3417930","pdf_url":null,"source":{"id":"https://openalex.org/S69141925","display_name":"IEEE Transactions on Mobile Computing","issn_l":"1536-1233","issn":["1536-1233","1558-0660","2161-9875"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Mobile Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1056004441","display_name":null,"funder_award_id":"62122066","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G1364758715","display_name":null,"funder_award_id":"62102337","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2678750249","display_name":"\u9762\u5411\u7fa4\u667a\u611f\u77e5\u7cfb\u7edf\u7684\u4e2a\u6027\u5316\u9690\u79c1\u4fdd\u62a4\u5173\u952e\u6280\u672f\u7814\u7a76","funder_award_id":"61872274","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3065674561","display_name":null,"funder_award_id":"U20A20182","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7077470854","display_name":null,"funder_award_id":"2023JJ40174","funder_id":"https://openalex.org/F4320322866","funder_display_name":"Natural Science Foundation of Hainan Province"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322866","display_name":"Natural Science Foundation of Hainan Province","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":63,"referenced_works":["https://openalex.org/W2007339694","https://openalex.org/W2027595342","https://openalex.org/W2067713319","https://openalex.org/W2108598243","https://openalex.org/W2112796928","https://openalex.org/W2194775991","https://openalex.org/W2473418344","https://openalex.org/W2535690855","https://openalex.org/W2551176409","https://openalex.org/W2734358244","https://openalex.org/W2767079719","https://openalex.org/W2781091734","https://openalex.org/W2783522756","https://openalex.org/W2897830718","https://openalex.org/W2911978475","https://openalex.org/W2962785568","https://openalex.org/W2963378725","https://openalex.org/W2963456518","https://openalex.org/W2963540401","https://openalex.org/W2964162474","https://openalex.org/W3027749727","https://openalex.org/W3085175993","https://openalex.org/W3091476023","https://openalex.org/W3138758728","https://openalex.org/W3175192640","https://openalex.org/W3201054243","https://openalex.org/W3203780767","https://openalex.org/W3206985409","https://openalex.org/W3209752568","https://openalex.org/W3212079419","https://openalex.org/W4221146015","https://openalex.org/W4224918093","https://openalex.org/W4229083957","https://openalex.org/W4285555619","https://openalex.org/W4312705808","https://openalex.org/W4312809802","https://openalex.org/W4366957392","https://openalex.org/W4384027004","https://openalex.org/W4385412495","https://openalex.org/W4387068389","https://openalex.org/W6631190155","https://openalex.org/W6637373629","https://openalex.org/W6728757088","https://openalex.org/W6746720608","https://openalex.org/W6747855403","https://openalex.org/W6762803017","https://openalex.org/W6763393573","https://openalex.org/W6763736615","https://openalex.org/W6764838729","https://openalex.org/W6773039429","https://openalex.org/W6775482175","https://openalex.org/W6775563089","https://openalex.org/W6779786081","https://openalex.org/W6781597409","https://openalex.org/W6784311791","https://openalex.org/W6787972765","https://openalex.org/W6795487366","https://openalex.org/W6795938332","https://openalex.org/W6802409679","https://openalex.org/W6803951002","https://openalex.org/W6803973128","https://openalex.org/W6838563728","https://openalex.org/W6853799129"],"related_works":["https://openalex.org/W3010781909","https://openalex.org/W3123987581","https://openalex.org/W4200233390","https://openalex.org/W2358406440","https://openalex.org/W4296973715","https://openalex.org/W4315705624","https://openalex.org/W2605443953","https://openalex.org/W3116386889","https://openalex.org/W4313218046","https://openalex.org/W2352435628"],"abstract_inverted_index":{"Federated":[0],"Learning":[1],"(FL)":[2],"is":[3,30],"susceptible":[4],"to":[5,39,66,106],"the":[6,19,48,58,98,107,146,169,184,202,208,216,222,246],"gradient":[7],"leakage":[8],"attack":[9,181,199],"(GLA),":[10],"which":[11],"can":[12,77,122,200,232],"recover":[13],"local":[14,40],"private":[15],"training":[16,153,164],"data":[17],"from":[18],"shared":[20],"gradients":[21,41],"or":[22,47],"model":[23,50,163],"updates.":[24],"To":[25],"ensure":[26,145],"privacy,":[27],"differential":[28],"privacy":[29,110,137,149],"applied":[31],"in":[32,62,113,152,161,242],"FL":[33,79,243],"by":[34,125,168],"clipping":[35,130,173,185],"and":[36,95,102,111,132,139,143,150,206,244],"adding":[37],"noise":[38],"(i.e.,":[42,52],"Local":[43],"Differential":[44,54],"Privacy":[45,55],"(LDP))":[46],"global":[49],"update":[51],"Central":[53],"(CDP)).":[56],"However,":[57],"effectiveness":[59,209,217],"of":[60,100,172,204,210,224,248],"DP":[61,76,225,237],"defending":[63,239],"GLAs":[64,81,121,189],"needs":[65],"be":[67,123],"thoroughly":[68],"investigated":[69],"since":[70],"some":[71],"works":[72],"briefly":[73],"verify":[74],"that":[75,182],"guard":[78],"against":[80,240],"while":[82],"others":[83],"question":[84],"its":[85],"defense":[86],"capability.":[87],"In":[88],"this":[89,159,230],"paper,":[90],"we":[91,177],"empirically":[92],"evaluate":[93],"CDP":[94,126,142,205],"LDP":[96,133,144],"on":[97,235],"resistance":[99],"GLAs,":[101],"pay":[103],"close":[104],"attention":[105],"trade-offs":[108],"between":[109,148],"utility":[112,151],"FL.":[114,251],"Our":[115],"findings":[116],"reveal":[117],"that:":[118],"1)":[119],"existing":[120,188],"defended":[124],"using":[127],"a":[128,135],"per-layer":[129],"strategy":[131],"with":[134],"reasonable":[136],"guarantee":[138,158],"2)":[140],"both":[141],"trade-off":[147,160],"shallow":[154],"model,":[155],"but":[156],"cannot":[157],"deeper":[162],"(e.g.,":[165],"ResNets).":[166],"Triggered":[167],"crucial":[170],"role":[171],"operation":[174,186],"for":[175,238],"DP,":[176],"propose":[178],"an":[179],"improved":[180],"incorporates":[183],"into":[187],"without":[190],"requiring":[191],"additional":[192],"information.":[193],"The":[194],"experimental":[195],"results":[196],"show":[197],"our":[198,213],"destruct":[201],"protection":[203],"weaken":[207],"LDP.":[211],"Overall,":[212],"work":[214,231],"validates":[215],"as":[218,220],"well":[219],"reveals":[221],"vulnerability":[223],"under":[226],"GLAs.":[227],"We":[228],"hope":[229],"provide":[233],"guidance":[234],"utilizing":[236],"GLA":[241],"inspire":[245],"design":[247],"future":[249],"privacy-preserving":[250]},"counts_by_year":[{"year":2026,"cited_by_count":6},{"year":2025,"cited_by_count":23},{"year":2024,"cited_by_count":1}],"updated_date":"2026-06-06T09:05:17.133730","created_date":"2025-10-10T00:00:00"}
