{"id":"https://openalex.org/W4214553824","doi":"https://doi.org/10.3390/e24030349","title":"DNN Intellectual Property Extraction Using Composite Data","display_name":"DNN Intellectual Property Extraction Using Composite Data","publication_year":2022,"publication_date":"2022-02-28","ids":{"openalex":"https://openalex.org/W4214553824","doi":"https://doi.org/10.3390/e24030349","pmid":"https://pubmed.ncbi.nlm.nih.gov/35327860"},"language":"en","primary_location":{"id":"doi:10.3390/e24030349","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e24030349","pdf_url":"https://www.mdpi.com/1099-4300/24/3/349/pdf?version=1646100131","source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj","pubmed"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/1099-4300/24/3/349/pdf?version=1646100131","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5018086675","display_name":"Itay Mosafi","orcid":"https://orcid.org/0000-0001-7772-1664"},"institutions":[{"id":"https://openalex.org/I13955877","display_name":"Bar-Ilan University","ror":"https://ror.org/03kgsv495","country_code":"IL","type":"education","lineage":["https://openalex.org/I13955877"]}],"countries":["IL"],"is_corresponding":true,"raw_author_name":"Itay Mosafi","raw_affiliation_strings":["Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel"],"raw_orcid":"https://orcid.org/0000-0001-7772-1664","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel","institution_ids":["https://openalex.org/I13955877"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025274307","display_name":"Eli David","orcid":"https://orcid.org/0000-0003-2904-4982"},"institutions":[{"id":"https://openalex.org/I13955877","display_name":"Bar-Ilan University","ror":"https://ror.org/03kgsv495","country_code":"IL","type":"education","lineage":["https://openalex.org/I13955877"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Eli (Omid) David","raw_affiliation_strings":["Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel"],"raw_orcid":"https://orcid.org/0000-0003-2904-4982","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel","institution_ids":["https://openalex.org/I13955877"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5054642987","display_name":"Yaniv Altshuler","orcid":"https://orcid.org/0000-0002-3410-9587"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yaniv Altshuler","raw_affiliation_strings":["MIT Media Lab, 77 Mass. Ave., E14/E15, Cambridge, MA 02139-4307, USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"MIT Media Lab, 77 Mass. Ave., E14/E15, Cambridge, MA 02139-4307, USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5024299231","display_name":"Nathan S. Netanyahu","orcid":"https://orcid.org/0000-0001-6648-9441"},"institutions":[{"id":"https://openalex.org/I13955877","display_name":"Bar-Ilan University","ror":"https://ror.org/03kgsv495","country_code":"IL","type":"education","lineage":["https://openalex.org/I13955877"]},{"id":"https://openalex.org/I4210141944","display_name":"College of Law and Business","ror":"https://ror.org/04wymav61","country_code":"IL","type":"nonprofit","lineage":["https://openalex.org/I4210141944"]}],"countries":["IL"],"is_corresponding":false,"raw_author_name":"Nathan S. Netanyahu","raw_affiliation_strings":["Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel","Department of Computer Science, College of Law and Business, Ramat-Gan 5257346, Israel"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Bar-Ilan University, Ramat-Gan 5290002, Israel","institution_ids":["https://openalex.org/I13955877"]},{"raw_affiliation_string":"Department of Computer Science, College of Law and Business, Ramat-Gan 5257346, Israel","institution_ids":["https://openalex.org/I4210141944"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5018086675"],"corresponding_institution_ids":["https://openalex.org/I13955877"],"apc_list":{"value":2000,"currency":"CHF","value_usd":2165},"apc_paid":{"value":2000,"currency":"CHF","value_usd":2165},"fwci":0.4162,"has_fulltext":true,"cited_by_count":3,"citation_normalized_percentile":{"value":0.66612255,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":"24","issue":"3","first_page":"349","last_page":"349"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9966999888420105,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/softmax-function","display_name":"Softmax function","score":0.8775386214256287},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7453605532646179},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6183220744132996},{"id":"https://openalex.org/keywords/property","display_name":"Property (philosophy)","score":0.49676281213760376},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.4593402147293091},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4585840702056885},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.45644882321357727},{"id":"https://openalex.org/keywords/copying","display_name":"Copying","score":0.436398983001709},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.370037317276001}],"concepts":[{"id":"https://openalex.org/C188441871","wikidata":"https://www.wikidata.org/wiki/Q7554146","display_name":"Softmax function","level":3,"score":0.8775386214256287},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7453605532646179},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6183220744132996},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.49676281213760376},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.4593402147293091},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4585840702056885},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.45644882321357727},{"id":"https://openalex.org/C2779151265","wikidata":"https://www.wikidata.org/wiki/Q1156791","display_name":"Copying","level":2,"score":0.436398983001709},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.370037317276001},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":5,"locations":[{"id":"doi:10.3390/e24030349","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e24030349","pdf_url":"https://www.mdpi.com/1099-4300/24/3/349/pdf?version=1646100131","source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},{"id":"pmid:35327860","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/35327860","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy (Basel, Switzerland)","raw_type":null},{"id":"pmh:oai:doaj.org/article:31e524d6a75e4b0a930395a8e040c5c9","is_oa":true,"landing_page_url":"https://doaj.org/article/31e524d6a75e4b0a930395a8e040c5c9","pdf_url":null,"source":{"id":"https://openalex.org/S4306401280","display_name":"DOAJ (DOAJ: Directory of Open Access Journals)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Entropy, Vol 24, Iss 3, p 349 (2022)","raw_type":"article"},{"id":"pmh:oai:mdpi.com:/1099-4300/24/3/349/","is_oa":true,"landing_page_url":"https://dx.doi.org/10.3390/e24030349","pdf_url":null,"source":{"id":"https://openalex.org/S4306400947","display_name":"MDPI (MDPI AG)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210097602","host_organization_name":"Multidisciplinary Digital Publishing Institute (Switzerland)","host_organization_lineage":["https://openalex.org/I4210097602"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Entropy; Volume 24; Issue 3; Pages: 349","raw_type":"Text"},{"id":"pmh:oai:pubmedcentral.nih.gov:8947501","is_oa":true,"landing_page_url":"https://www.ncbi.nlm.nih.gov/pmc/articles/8947501","pdf_url":null,"source":{"id":"https://openalex.org/S2764455111","display_name":"PubMed Central","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Entropy (Basel)","raw_type":"Text"}],"best_oa_location":{"id":"doi:10.3390/e24030349","is_oa":true,"landing_page_url":"https://doi.org/10.3390/e24030349","pdf_url":"https://www.mdpi.com/1099-4300/24/3/349/pdf?version=1646100131","source":{"id":"https://openalex.org/S195231649","display_name":"Entropy","issn_l":"1099-4300","issn":["1099-4300"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Entropy","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.6600000262260437,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320321449","display_name":"Bar-Ilan University","ror":"https://ror.org/03kgsv495"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4214553824.pdf","grobid_xml":"https://content.openalex.org/works/W4214553824.grobid-xml"},"referenced_works_count":89,"referenced_works":["https://openalex.org/W564586781","https://openalex.org/W639708223","https://openalex.org/W1481863523","https://openalex.org/W1498804459","https://openalex.org/W1504506037","https://openalex.org/W1507332434","https://openalex.org/W1536680647","https://openalex.org/W1585268453","https://openalex.org/W1591555402","https://openalex.org/W1594427586","https://openalex.org/W1600633911","https://openalex.org/W1787255075","https://openalex.org/W1788061570","https://openalex.org/W1902237438","https://openalex.org/W1955857676","https://openalex.org/W1966028333","https://openalex.org/W1980996216","https://openalex.org/W2002853559","https://openalex.org/W2016613339","https://openalex.org/W2024453793","https://openalex.org/W2025183033","https://openalex.org/W2025636081","https://openalex.org/W2031592884","https://openalex.org/W2048287448","https://openalex.org/W2051267297","https://openalex.org/W2060768315","https://openalex.org/W2067764213","https://openalex.org/W2072013063","https://openalex.org/W2080026951","https://openalex.org/W2084204985","https://openalex.org/W2093051821","https://openalex.org/W2097266277","https://openalex.org/W2097856935","https://openalex.org/W2108598243","https://openalex.org/W2114510811","https://openalex.org/W2119112357","https://openalex.org/W2119693819","https://openalex.org/W2124763987","https://openalex.org/W2135459805","https://openalex.org/W2136752877","https://openalex.org/W2137714578","https://openalex.org/W2155800262","https://openalex.org/W2161647295","https://openalex.org/W2168787512","https://openalex.org/W2297442600","https://openalex.org/W2461943168","https://openalex.org/W2468345220","https://openalex.org/W2502609170","https://openalex.org/W2506051587","https://openalex.org/W2548121634","https://openalex.org/W2555199926","https://openalex.org/W2579318729","https://openalex.org/W2745262649","https://openalex.org/W2753783305","https://openalex.org/W2766677542","https://openalex.org/W2786379237","https://openalex.org/W2787075213","https://openalex.org/W2794651469","https://openalex.org/W2806082141","https://openalex.org/W2808195004","https://openalex.org/W2883532348","https://openalex.org/W2963037989","https://openalex.org/W2971769726","https://openalex.org/W2973414778","https://openalex.org/W2978872500","https://openalex.org/W2989825574","https://openalex.org/W2999567898","https://openalex.org/W3011609700","https://openalex.org/W3015751240","https://openalex.org/W3023896661","https://openalex.org/W3025204993","https://openalex.org/W3091076647","https://openalex.org/W3096019139","https://openalex.org/W3103387846","https://openalex.org/W3103932910","https://openalex.org/W3105676597","https://openalex.org/W3106038055","https://openalex.org/W3108671495","https://openalex.org/W3196026007","https://openalex.org/W3209101326","https://openalex.org/W4233019818","https://openalex.org/W4233709901","https://openalex.org/W4234792859","https://openalex.org/W4244612170","https://openalex.org/W6620707391","https://openalex.org/W6628852983","https://openalex.org/W6630120185","https://openalex.org/W6665592057","https://openalex.org/W7024574818"],"related_works":["https://openalex.org/W3107204728","https://openalex.org/W4287591324","https://openalex.org/W4226420367","https://openalex.org/W2980176872","https://openalex.org/W2962876041","https://openalex.org/W3090555870","https://openalex.org/W3108503355","https://openalex.org/W2249953602","https://openalex.org/W2801655600","https://openalex.org/W3170224572"],"abstract_inverted_index":{"As":[0],"state-of-the-art":[1],"deep":[2],"neural":[3,147,182,253],"networks":[4,63,254],"are":[5,255],"being":[6,237],"deployed":[7],"at":[8],"the":[9,21,32,83,100,119,128,159,171,180,206,211,225,268,275],"core":[10],"level":[11],"of":[12,16,72,85,187,194],"increasingly":[13],"large":[14,70,189],"numbers":[15],"AI-based":[17],"products":[18],"and":[19,75,184,233,273],"services,":[20],"incentive":[22],"for":[23,139,143],"\u201ccopying":[24],"them\u201d":[25],"(i.e.,":[26],"their":[27,77],"intellectual":[28],"property,":[29],"manifested":[30],"through":[31],"knowledge":[33,60],"that":[34,219,250,274,278],"is":[35,45,64,80,114,185,227],"encapsulated":[36,196],"in":[37],"them)":[38],"either":[39],"by":[40,65,82,243],"adversaries":[41],"or":[42,58,164],"commercial":[43],"competitors":[44],"expected":[46],"to":[47,56,90,107,115,205,229,257],"considerably":[48],"increase":[49],"over":[50],"time.":[51],"The":[52,103],"most":[53,104,269],"efficient":[54],"way":[55,106],"extract":[57],"steal":[59],"from":[61],"such":[62,110],"querying":[66],"them":[67,280],"using":[68,149,285],"a":[69,86,111,136,145,150,240],"dataset":[71],"random":[73],"samples":[74],"recording":[76],"output,":[78,272],"which":[79],"followed":[81],"training":[84,161],"student":[87,151,199,221,276],"network,":[88],"aiming":[89],"eventually":[91],"mimic":[92],"these":[93],"outputs,":[94],"without":[95],"making":[96],"any":[97],"assumption":[98],"about":[99],"original":[101],"networks.":[102],"effective":[105],"protect":[108],"against":[109],"mimicking":[112,258],"attack":[113],"answer":[116],"queries":[117],"with":[118,127],"classification":[120],"result":[121],"only,":[122],"omitting":[123],"confidence":[124],"values":[125],"associated":[126],"softmax":[129,173],"layer.":[130],"In":[131,215],"this":[132],"paper,":[133],"we":[134,217],"present":[135],"novel":[137],"method":[138,154,177],"generating":[140],"composite":[141],"images":[142],"attacking":[144],"mentor":[146,208],"network":[148,183,222],"model.":[152],"Our":[153,198,247],"assumes":[155],"no":[156,168],"information":[157,169],"regarding":[158,170],"mentor\u2019s":[160,172],"dataset,":[162],"architecture,":[163],"weights.":[165],"Furthermore,":[166],"assuming":[167],"output":[174],"values,":[175],"our":[176,220],"successfully":[178],"mimics":[179,279],"given":[181],"capable":[186],"stealing":[188],"portions":[190],"(and":[191],"sometimes":[192],"all)":[193],"its":[195],"knowledge.":[197],"model":[200,209,242,277],"achieved":[201],"99%":[202],"relative":[203],"accuracy":[204],"protected":[207],"on":[210],"Cifar-10":[212],"test":[213],"set.":[214],"addition,":[216],"demonstrate":[218],"(which":[223],"copies":[224],"mentor)":[226],"impervious":[228],"watermarking":[230],"protection":[231],"methods":[232],"thus":[234],"would":[235],"evade":[236],"detected":[238,284],"as":[239],"stolen":[241],"existing":[244],"dedicated":[245],"techniques.":[246,288],"results":[248],"imply":[249],"all":[251],"current":[252],"vulnerable":[256],"attacks,":[259],"even":[260],"if":[261],"they":[262],"do":[263],"not":[264],"divulge":[265],"anything":[266],"but":[267],"basic":[270],"required":[271],"cannot":[281],"be":[282],"easily":[283],"currently":[286],"available":[287]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":2}],"updated_date":"2026-05-21T06:26:12.895304","created_date":"2025-10-10T00:00:00"}
