{"id":"https://openalex.org/W4396817327","doi":"https://doi.org/10.1109/tsc.2024.3399648","title":"PPNNI: Privacy-Preserving Neural Network Inference Against Adversarial Example Attack","display_name":"PPNNI: Privacy-Preserving Neural Network Inference Against Adversarial Example Attack","publication_year":2024,"publication_date":"2024-05-10","ids":{"openalex":"https://openalex.org/W4396817327","doi":"https://doi.org/10.1109/tsc.2024.3399648"},"language":"en","primary_location":{"id":"doi:10.1109/tsc.2024.3399648","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tsc.2024.3399648","pdf_url":null,"source":{"id":"https://openalex.org/S204223317","display_name":"IEEE Transactions on Services Computing","issn_l":"1939-1374","issn":["1939-1374","2372-0204"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Services Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Guanghui He","orcid":"https://orcid.org/0000-0002-1004-2875"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Guanghui He","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China","School of Communication and Information Engineering, Shanghai University, China"],"raw_orcid":"https://orcid.org/0000-0002-1004-2875","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China","institution_ids":["https://openalex.org/I113940042"]},{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, China","institution_ids":["https://openalex.org/I113940042"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5031618906","display_name":"Yanli Ren","orcid":"https://orcid.org/0000-0003-4510-7883"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yanli Ren","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China","School of Communication and Information Engineering, Shanghai University, China"],"raw_orcid":"https://orcid.org/0000-0003-4510-7883","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China","institution_ids":["https://openalex.org/I113940042"]},{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, China","institution_ids":["https://openalex.org/I113940042"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5008333802","display_name":"Gang He","orcid":"https://orcid.org/0000-0001-5397-6259"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Gang He","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China","School of Communication and Information Engineering, Shanghai University, China"],"raw_orcid":"https://orcid.org/0000-0001-5397-6259","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China","institution_ids":["https://openalex.org/I113940042"]},{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, China","institution_ids":["https://openalex.org/I113940042"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5043596876","display_name":"Guorui Feng","orcid":"https://orcid.org/0000-0001-8249-2608"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guorui Feng","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China","School of Communication and Information Engineering, Shanghai University, China"],"raw_orcid":"https://orcid.org/0000-0001-8249-2608","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China","institution_ids":["https://openalex.org/I113940042"]},{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, China","institution_ids":["https://openalex.org/I113940042"]}]},{"author_position":"last","author":{"id":null,"display_name":"Xinpeng Zhang","orcid":"https://orcid.org/0000-0001-5867-1315"},"institutions":[{"id":"https://openalex.org/I113940042","display_name":"Shanghai University","ror":"https://ror.org/006teas31","country_code":"CN","type":"education","lineage":["https://openalex.org/I113940042"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinpeng Zhang","raw_affiliation_strings":["School of Communication and Information Engineering, Shanghai University, Shanghai, China","School of Communication and Information Engineering, Shanghai University, China"],"raw_orcid":"https://orcid.org/0000-0001-5867-1315","affiliations":[{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, Shanghai, China","institution_ids":["https://openalex.org/I113940042"]},{"raw_affiliation_string":"School of Communication and Information Engineering, Shanghai University, China","institution_ids":["https://openalex.org/I113940042"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I113940042"],"apc_list":null,"apc_paid":null,"fwci":0.9934,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.78859325,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":"17","issue":"6","first_page":"4083","last_page":"4096"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9380000233650208,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8417085409164429},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.798187255859375},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.6506627798080444},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5554260611534119},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.4472455084323883},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4266735911369324},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.39841583371162415}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8417085409164429},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.798187255859375},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.6506627798080444},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5554260611534119},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.4472455084323883},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4266735911369324},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.39841583371162415}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tsc.2024.3399648","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tsc.2024.3399648","pdf_url":null,"source":{"id":"https://openalex.org/S204223317","display_name":"IEEE Transactions on Services Computing","issn_l":"1939-1374","issn":["1939-1374","2372-0204"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Services Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.550000011920929,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G6698752278","display_name":null,"funder_award_id":"62072295","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6916449496","display_name":null,"funder_award_id":"22ZR1481000","funder_id":"https://openalex.org/F4320309612","funder_display_name":"Natural Science Foundation of Shanghai"},{"id":"https://openalex.org/G7465859601","display_name":null,"funder_award_id":"U22B2027","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320309612","display_name":"Natural Science Foundation of Shanghai","ror":null},{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":33,"referenced_works":["https://openalex.org/W1969009977","https://openalex.org/W2023951105","https://openalex.org/W2321567755","https://openalex.org/W2607219512","https://openalex.org/W2701059868","https://openalex.org/W2765200655","https://openalex.org/W2940691483","https://openalex.org/W2946005997","https://openalex.org/W2963752132","https://openalex.org/W2963857521","https://openalex.org/W2994111940","https://openalex.org/W3003532255","https://openalex.org/W3092115729","https://openalex.org/W3093021001","https://openalex.org/W3174969113","https://openalex.org/W4205505117","https://openalex.org/W4214921611","https://openalex.org/W4318823998","https://openalex.org/W4327740073","https://openalex.org/W4327928482","https://openalex.org/W4360993799","https://openalex.org/W4361986437","https://openalex.org/W4378676658","https://openalex.org/W4383751870","https://openalex.org/W4385864334","https://openalex.org/W4388349002","https://openalex.org/W4389279194","https://openalex.org/W4390533396","https://openalex.org/W6640425456","https://openalex.org/W6734483310","https://openalex.org/W6760122430","https://openalex.org/W6785814594","https://openalex.org/W6796834496"],"related_works":["https://openalex.org/W2502115930","https://openalex.org/W2482350142","https://openalex.org/W4246396837","https://openalex.org/W3126451824","https://openalex.org/W1561927205","https://openalex.org/W3191453585","https://openalex.org/W4297672492","https://openalex.org/W4310988119","https://openalex.org/W4285226279","https://openalex.org/W4288019534"],"abstract_inverted_index":{"Outsourced":[0],"inference":[1,72,114,204],"services":[2],"have":[3],"greatly":[4],"promoted":[5],"the":[6,50,56,62,98,104,107,110,116,134,149,153,159,165,174,184,191,195,203,209,213,230,244,250],"popularization":[7],"of":[8,21,38,58,86,118,141,152,167,197,208,232,246,252],"deep":[9],"learning,":[10],"and":[11,122,145,202,219,227,234,241],"neural":[12,70,111],"network":[13,45,71,123],"models":[14],"can":[15,193],"help":[16],"users":[17],"customize":[18],"a":[19,36,68,84,139],"series":[20,85],"personalized":[22],"applications,":[23],"e.g.,":[24],"face":[25],"recognition,":[26],"image":[27],"classification,":[28],"etc.":[29,48],"However,":[30],"untrustworthy":[31],"service":[32],"providers":[33],"also":[34],"bring":[35],"variety":[37],"security":[39,88],"issues,":[40],"such":[41],"as":[42,239],"data":[43],"privacy,":[44,47],"model":[46,59,135,200,214],"Meanwhile,":[49],"malicious":[51,130,223],"example":[52,75],"will":[53],"result":[54],"in":[55,115,126,148,164,229,243],"output":[57],"incorrectly.":[60],"For":[61],"above":[63],"concerns,":[64],"this":[65],"paper":[66],"proposes":[67],"privacy-reserving":[69],"against":[73],"adversarial":[74,162,180],"attack":[76,181],"(PPNNI)":[77],"under":[78,183],"two":[79],"non-colluding":[80],"cloud":[81],"servers,":[82],"where":[83],"efficient":[87],"protocols":[89],"are":[90,216,236],"designed":[91],"to":[92,128,156,177],"realize":[93],"private":[94,113],"prediction":[95],"based":[96],"on":[97,225],"additive":[99],"secret":[100],"sharing":[101],"protocol.":[102,254],"In":[103],"semi-honest":[105],"model,":[106],"servers":[108],"implement":[109],"network's":[112],"context":[117],"an":[119],"unknown":[120],"input":[121,160,198],"model.":[124],"Moreover,":[125],"order":[127],"prevent":[129],"examples":[131,163,224],"from":[132],"affecting":[133],"accuracy,":[136],"we":[137],"produce":[138],"method":[140],"kernel":[142],"density":[143],"estimation":[144],"uncertainty":[146],"value":[147],"last":[150],"layer":[151,155],"hidden":[154],"determine":[157],"whether":[158],"is":[161,173],"domain":[166,231,245],"ciphertext.":[168],"The":[169,186,206],"proposed":[170],"PPNNI":[171],"protocol":[172,192],"first":[175],"effort":[176],"efficiently":[178],"detect":[179],"behaviors":[182],"ciphertexts.":[185],"theoretical":[187],"analysis":[188],"illustrate":[189],"that":[190,212],"guarantee":[194],"privacy":[196],"data,":[199],"parameters":[201],"result.":[205],"results":[207],"experiments":[210],"demonstrate":[211],"accuracy":[215],"about":[217],"89%":[218],"83%":[220],"respectively":[221],"with":[222],"MNIST":[226],"CIFAR10":[228],"ciphertext":[233],"they":[235],"nearly":[237],"same":[238],"91%":[240],"85%":[242],"plaintext,":[247],"which":[248],"shows":[249],"effectiveness":[251],"our":[253]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
