{"id":"https://openalex.org/W2990980946","doi":"https://doi.org/10.1145/3359789.3359801","title":"How to prove your model belongs to you","display_name":"How to prove your model belongs to you","publication_year":2019,"publication_date":"2019-11-22","ids":{"openalex":"https://openalex.org/W2990980946","doi":"https://doi.org/10.1145/3359789.3359801","mag":"2990980946"},"language":"en","primary_location":{"id":"doi:10.1145/3359789.3359801","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3359789.3359801","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 35th Annual Computer Security Applications Conference","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/1903.01743","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101809231","display_name":"Zheng Li","orcid":"https://orcid.org/0000-0002-4466-7523"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zheng Li","raw_affiliation_strings":["Shandong University, China"],"affiliations":[{"raw_affiliation_string":"Shandong University, China","institution_ids":["https://openalex.org/I154099455"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101497038","display_name":"Chengyu Hu","orcid":"https://orcid.org/0000-0002-5523-2672"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chengyu Hu","raw_affiliation_strings":["Shandong University, China"],"affiliations":[{"raw_affiliation_string":"Shandong University, China","institution_ids":["https://openalex.org/I154099455"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100354683","display_name":"Yang Zhang","orcid":"https://orcid.org/0000-0002-4170-4798"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Yang Zhang","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Germany","institution_ids":["https://openalex.org/I4210128801"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5084460856","display_name":"Shanqing Guo","orcid":"https://orcid.org/0000-0003-3367-0951"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shanqing Guo","raw_affiliation_strings":["Shandong University, China"],"affiliations":[{"raw_affiliation_string":"Shandong University, China","institution_ids":["https://openalex.org/I154099455"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5101809231"],"corresponding_institution_ids":["https://openalex.org/I154099455"],"apc_list":null,"apc_paid":null,"fwci":6.9362,"has_fulltext":false,"cited_by_count":130,"citation_normalized_percentile":{"value":0.97508199,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"126","last_page":"137"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9846000075340271,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9667999744415283,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/intellectual-property","display_name":"Intellectual property","score":0.7265340089797974},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7240545153617859},{"id":"https://openalex.org/keywords/variety","display_name":"Variety (cybernetics)","score":0.6681143641471863},{"id":"https://openalex.org/keywords/evasion","display_name":"Evasion (ethics)","score":0.6260223388671875},{"id":"https://openalex.org/keywords/property","display_name":"Property (philosophy)","score":0.5587977766990662},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.5411386489868164},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5269967913627625},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5183899998664856},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.44815903902053833},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.43909215927124023},{"id":"https://openalex.org/keywords/translation","display_name":"Translation (biology)","score":0.41219669580459595},{"id":"https://openalex.org/keywords/cognitive-science","display_name":"Cognitive science","score":0.3380216658115387},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.32333505153656006},{"id":"https://openalex.org/keywords/epistemology","display_name":"Epistemology","score":0.12721773982048035},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.1092664897441864}],"concepts":[{"id":"https://openalex.org/C34974158","wikidata":"https://www.wikidata.org/wiki/Q131257","display_name":"Intellectual property","level":2,"score":0.7265340089797974},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7240545153617859},{"id":"https://openalex.org/C136197465","wikidata":"https://www.wikidata.org/wiki/Q1729295","display_name":"Variety (cybernetics)","level":2,"score":0.6681143641471863},{"id":"https://openalex.org/C2781251061","wikidata":"https://www.wikidata.org/wiki/Q5416089","display_name":"Evasion (ethics)","level":3,"score":0.6260223388671875},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.5587977766990662},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.5411386489868164},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5269967913627625},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5183899998664856},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.44815903902053833},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.43909215927124023},{"id":"https://openalex.org/C149364088","wikidata":"https://www.wikidata.org/wiki/Q185917","display_name":"Translation (biology)","level":4,"score":0.41219669580459595},{"id":"https://openalex.org/C188147891","wikidata":"https://www.wikidata.org/wiki/Q147638","display_name":"Cognitive science","level":1,"score":0.3380216658115387},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.32333505153656006},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.12721773982048035},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.1092664897441864},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C203014093","wikidata":"https://www.wikidata.org/wiki/Q101929","display_name":"Immunology","level":1,"score":0.0},{"id":"https://openalex.org/C105580179","wikidata":"https://www.wikidata.org/wiki/Q188928","display_name":"Messenger RNA","level":3,"score":0.0},{"id":"https://openalex.org/C8891405","wikidata":"https://www.wikidata.org/wiki/Q1059","display_name":"Immune system","level":2,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C24890656","wikidata":"https://www.wikidata.org/wiki/Q82811","display_name":"Acoustics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3359789.3359801","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3359789.3359801","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 35th Annual Computer Security Applications Conference","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:1903.01743","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1903.01743","pdf_url":"https://arxiv.org/pdf/1903.01743","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:1903.01743","is_oa":true,"landing_page_url":"http://arxiv.org/abs/1903.01743","pdf_url":"https://arxiv.org/pdf/1903.01743","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"score":0.5400000214576721,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":34,"referenced_works":["https://openalex.org/W1710476689","https://openalex.org/W1901129140","https://openalex.org/W2097117768","https://openalex.org/W2117539524","https://openalex.org/W2133665775","https://openalex.org/W2153579005","https://openalex.org/W2158320630","https://openalex.org/W2158899491","https://openalex.org/W2170598445","https://openalex.org/W2194775991","https://openalex.org/W2302255633","https://openalex.org/W2320674294","https://openalex.org/W2504108613","https://openalex.org/W2525778437","https://openalex.org/W2533523411","https://openalex.org/W2557283755","https://openalex.org/W2562637781","https://openalex.org/W2579318729","https://openalex.org/W2612445135","https://openalex.org/W2674368400","https://openalex.org/W2796299376","https://openalex.org/W2806082141","https://openalex.org/W2807096445","https://openalex.org/W2883233582","https://openalex.org/W2890753317","https://openalex.org/W2899585792","https://openalex.org/W2899771611","https://openalex.org/W2909607453","https://openalex.org/W2915624737","https://openalex.org/W2962835968","https://openalex.org/W2963771448","https://openalex.org/W2964121744","https://openalex.org/W2964166828","https://openalex.org/W3118608800"],"related_works":["https://openalex.org/W1998011869","https://openalex.org/W4213209802","https://openalex.org/W4298146316","https://openalex.org/W2236267847","https://openalex.org/W631166945","https://openalex.org/W4282843169","https://openalex.org/W2391064200","https://openalex.org/W3176706560","https://openalex.org/W657751226","https://openalex.org/W1587438799"],"abstract_inverted_index":{"Deep":[0],"learning":[1],"techniques":[2],"have":[3,70],"made":[4],"tremendous":[5],"progress":[6],"in":[7],"a":[8,86],"variety":[9],"of":[10,47,55,77],"challenging":[11],"tasks,":[12],"such":[13],"as":[14],"image":[15],"recognition":[16],"and":[17,31,35,50,92],"machine":[18],"translation,":[19],"during":[20],"the":[21,44,48,53,56,66,90,93],"past":[22],"decade.":[23],"Training":[24],"deep":[25],"neural":[26],"networks":[27],"is":[28,40],"computationally":[29],"expensive":[30],"requires":[32],"both":[33],"human":[34],"intellectual":[36,45],"resources.":[37],"Therefore,":[38],"it":[39],"necessary":[41],"to":[42,63],"protect":[43],"property":[46],"model":[49,91],"externally":[51],"verify":[52],"ownership":[54,78],"model.":[57],"However,":[58],"previous":[59],"studies":[60],"either":[61],"fail":[62],"defend":[64],"against":[65],"evasion":[67],"attack":[68],"or":[69],"not":[71,84],"explicitly":[72],"dealt":[73],"with":[74],"fraudulent":[75],"claims":[76],"by":[79],"adversaries.":[80],"Furthermore,":[81],"they":[82],"can":[83],"establish":[85],"clear":[87],"association":[88],"between":[89],"creator's":[94],"identity.":[95]},"counts_by_year":[{"year":2026,"cited_by_count":7},{"year":2025,"cited_by_count":27},{"year":2024,"cited_by_count":26},{"year":2023,"cited_by_count":22},{"year":2022,"cited_by_count":23},{"year":2021,"cited_by_count":20},{"year":2020,"cited_by_count":5}],"updated_date":"2026-04-23T09:07:50.710637","created_date":"2019-12-05T00:00:00"}
