Fetching the paper…
Reading the bibliography…
This paper proposes a new approach for privacy-preserving and verifiable convolutional neural network (CNN) testing, enabling a CNN model developer to convince a user of the truthful CNN performance over non-public data from multiple testers, while respecting model privacy.
Y. LeCun, B. Boser et al. , “Backpropagation applied to handwritten zip code recognition,” Neural computation , vol. 1, no. 4, pp. 541–551, 1989
1989
Earlier work this paper cites.
R. Gennaro, C. Gentry et al. , “Quadratic span programs and succinct nizks without pcps,” https://eprint.iacr.org/2012/215.pdf , 2012
2012
Earlier work this paper cites.
J. Fan and F. Vercauteren, “Somewhat practical fully homomorphic encryption,” https://eprint.iacr.org/2012/144.pdf , 2012
2012
Earlier work this paper cites.
J. Thaler, “Time-optimal interactive proofs for circuit evaluation,” in Annual Cryptology Conference , 2013, pp. 71–89
2013
Earlier work this paper cites.
A. E. Kosba, D. Papadopoulos et al. , “Trueset: Faster verifiable set computations,” in Proc. of USENIX Security , 2014
2014
Earlier work this paper cites.
S. Goldwasser et al. , “Delegating computation: interactive proofs for muggles,” Journal of the ACM , vol. 62, no. 4, pp. 1–64, 2015
2015
Earlier work this paper cites.
G. Accident, “A google self-driving car caused a crash for the first time.” https://www.theverge.com/2016/2/29/11134344/google-self-driving-car-crash-report , 2016
2016
Earlier work this paper cites.
J. Groth, “On the size of pairing-based non-interactive arguments,” in EUROCRYPT , 2016, pp. 305–326
2016
Earlier work this paper cites.
R. Gilad-Bachrach, N. Dowlin et al. , “Cryptonets: Applying neural networks to encrypted data with high throughput and accuracy,” in ICML , 2016, pp. 201–210
2016
Earlier work this paper cites.
X. Liu, R. H. Deng et al. , “An efficient privacy-preserving outsourced calculation toolkit with multiple keys,” IEEE Transactions on Information Forensics and Security , vol. 11, no. 11, pp. 2401–2414, 2016
2016
Earlier work this paper cites.
X. Liu et al. , “Efficient and privacy-preserving outsourced calculation of rational numbers,” IEEE Transactions on Dependable and Secure Computing , vol. 15, no. 1, pp. 27–39, 2016
2016
Earlier work this paper cites.
Z. Ghodsi, T. Gu, and S. Garg, “Safetynets: Verifiable execution of deep neural networks on an untrusted cloud,” in Proc. of NIPS , 2017
2017
Earlier work this paper cites.
Y. Aono, T. Hayashi et al. , “Privacy-preserving deep learning via additively homomorphic encryption,” IEEE Transactions on Information Forensics and Security , vol. 13, no. 5, pp. 1333–1345, 2017
2017
Earlier work this paper cites.
P. Mohassel and Y. Zhang, “Secureml: A system for scalable privacy-preserving machine learning,” in Proc. Of IEEE S&P , 2017
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
R. Das, E. Piciucco et al. , “Convolutional neural network for finger-vein-based biometric identification,” IEEE Transactions on Information Forensics and Security , vol. 14, no. 2, pp. 360–373, 2018
2018
Earlier work this paper cites.
M. Wicker, X. Huang et al. , “Feature-guided black-box safety testing of deep neural networks,” in Proc. of TACAS , 2018
2018
Earlier work this paper cites.
L. Ma, F. Juefei-Xu et al. , “Deepgauge: Multi-granularity testing criteria for deep learning systems,” in Proc. of ACM/IEEE ICASE , 2018
2018
Earlier work this paper cites.
D. Hendrycks and T. Dietterich, “Benchmarking neural network robustness to common corruptions and perturbations,” in ICLR , 2018
2018
Cited alongside, same era.
J. Keuffer, R. Molva, and H. Chabanne, “Efficient proof composition for verifiable computation,” in Proc. of ESORICS , 2018
2018
Cited alongside, same era.
S. Agrawal, C. Ganesh et al. , “Non-interactive zero-knowledge proofs for composite statements,” in CRYPTO , 2018, pp. 643–673
2018
Cited alongside, same era.
C. Juvekar, V. Vaikuntanathan, and A. Chandrakasan, “ { \{ GAZELLE } \} : A low latency framework for secure neural network inference,” in Proc. of USENIX Security , 2018
2018
Cited alongside, same era.
X. Liu, R. H. Deng et al. , “Privacy-preserving outsourced calculation toolkit in the cloud,” IEEE Transactions on Dependable and Secure Computing , vol. 17, no. 5, pp. 898–911, 2018
2018
J. Zhang, Z. Fang et al. , “Zero knowledge proofs for decision tree predictions and accuracy,” in Proc. of ACM CCS , 2020
2020
Later among the works it cites.
P. Mishra, R. Lehmkuhl et al. , “Delphi: A cryptographic inference service for neural networks,” in USENIX Security , 2020, pp. 2505–2522
2020
Later among the works it cites.
N. Kumar, M. Rathee et al. , “Cryptflow: Secure tensorflow inference,” in IEEE S&P , 2020, pp. 336–353
2020
Later among the works it cites.
G. Xu, H. Li et al. , “Secure and verifiable inference in deep neural networks,” in Proc. of ACM ACSAC , 2020
2020
Later among the works it cites.
M. Yan et al. , “Cache telepathy: Leveraging shared resource attacks to learn dnn architectures,” in Proc. of USENIX Security , 2020
2020
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Cited alongside, same era.
M. Campanelli et al. , “Legosnark: Modular design and composition of succinct zero-knowledge proofs,” in Proc. of ACM CCS , 2019
2019
Cited alongside, same era.
“Bvlc/caffe,” https://github.com/BVLC/caffe/wiki/Model-Zoo , 2019
2019
Cited alongside, same era.
G. Xu et al. , “Verifynet: Secure and verifiable federated learning,” IEEE Transactions on Information Forensics and Security , vol. 15, pp. 911–926, 2019
2019
Cited alongside, same era.
Z. He, T. Zhang, and R. B. Lee, “Model inversion attacks against collaborative inference,” in Proc. of ACM ACSAC , 2019
2019
Cited alongside, same era.
T. Ryffel, E. Dufour-Sans et al. , “Partially encrypted machine learning using functional encryption,” in NIPS , 2019
2019
Cited alongside, same era.
K. Huang, X. Liu et al. , “A lightweight privacy-preserving cnn feature extraction framework for mobile sensing,” IEEE Transactions on Dependable and Secure Computing , vol. 18, no. 3, pp. 1441–1455, 2019
2019
Cited alongside, same era.
Z. He, T. Zhang et al. , “Sensitive-sample fingerprinting of deep neural networks,” in CVPR , 2019
2019
Cited alongside, same era.
A. Aggarwal, S. Shaikh, S. Hans, S. Haldar, R. Ananthanarayanan, and D. Saha, “Testing framework for black-box ai models,” in Proc. of IEEE/ACM ICSE-Companion , 2021
2021
Later among the works it cites.
L. Aroyo and P. Paritosh, “Uncovering unknown unknowns in machine learning,” https://ai.googleblog.com/2021/02/uncovering-unknown-unknowns-in-machine.html , 2021
2021
Later among the works it cites.
B. Feng, L. Qin, Z. Zhang, Y. Ding, and S. Chu, “Zen: An optimizing compiler for verifiable, zero-knowledge neural network inferences,” https://eprint.iacr.org/2021/087.pdf , 2021
2021
Later among the works it cites.
L. Zhao, Q. Wang et al. , “Veriml: Enabling integrity assurances and fair payments for machine learning as a service,” IEEE Transactions on Parallel and Distributed Systems , vol. 32, no. 10, pp. 2524–2540, 2021
2021
Later among the works it cites.
T. Liu, X. Xie et al. , “zkcnn: Zero knowledge proofs for convolutional neural network predictions and accuracy,” in Proc. of ACM CCS , 2021
2021
Later among the works it cites.
D. Mouris and N. G. Tsoutsos, “Zilch: A framework for deploying transparent zero-knowledge proofs,” IEEE Transactions on Information Forensics and Security , 2021
2021
Later among the works it cites.
S. G. Francesco Alesiani, “Method for verifying information,” https://patentimages.storage.googleapis.com/53/3c/62/0ed0b3f9bb163f/US20210091953A1.pdf , 2021
2021
Later among the works it cites.
J. Zhang, T. Liu et al. , “Doubly efficient interactive proofs for general arithmetic circuits with linear prover time,” in Proc. of ACM CCS , 2021
2021
Later among the works it cites.
C. Weng, K. Yang, X. Xie, J. Katz, and X. Wang, “Mystique: Efficient conversions for zero-knowledge proofs with applications to machine learning,” in Proc. of USENIX Security , 2021, pp. 501–518
2021
Later among the works it cites.
Y. Zhang et al. , “Stealing neural network structure through remote fpga side-channel analysis,” IEEE Transactions on Information Forensics and Security , vol. 16, pp. 4377–4388, 2021
2021
Later among the works it cites.
G. Saileshwar et al. , “Mirage: Mitigating conflict-based cache attacks with a practical fully-associative design.” in Proc. of USENIX Security , 2021
2021
Later among the works it cites.
N. Gailly, M. Maller, and A. Nitulescu, “Snarkpack: Practical snark aggregation.” in Proc. of RWC , 2022
2022
Closest in time.
C. Dong, J. Weng et al. , “Fusion: Efficient and secure inference resilient to malicious server and curious clients,” in Proc. of NDSS , 2023
2023
Closest in time.