{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,14]],"date-time":"2026-03-14T18:00:37Z","timestamp":1773511237080,"version":"3.50.1"},"reference-count":41,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"3","license":[{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,7,1]],"date-time":"2023-07-01T00:00:00Z","timestamp":1688169600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["61602241"],"award-info":[{"award-number":["61602241"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62022041"],"award-info":[{"award-number":["62022041"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"CCF-NSFOCUS Kun-Peng Scientific Research Fund","award":["CCF-NSFOCUS 2021012"],"award-info":[{"award-number":["CCF-NSFOCUS 2021012"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Emerg. Topics Comput."],"published-print":{"date-parts":[[2023,7,1]]},"DOI":"10.1109\/tetc.2022.3231012","type":"journal-article","created":{"date-parts":[[2022,12,27]],"date-time":"2022-12-27T18:27:35Z","timestamp":1672165655000},"page":"664-678","source":"Crossref","is-referenced-by-count":20,"title":["AdvParams: An Active DNN Intellectual Property Protection Technique via Adversarial Perturbation Based Parameter Encryption"],"prefix":"10.1109","volume":"11","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2408-503X","authenticated-orcid":false,"given":"Mingfu","family":"Xue","sequence":"first","affiliation":[{"name":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"}]},{"given":"Zhiyu","family":"Wu","sequence":"additional","affiliation":[{"name":"Polytechnic Institute, Zhejiang University, Hangzhou, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8183-8435","authenticated-orcid":false,"given":"Yushu","family":"Zhang","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"}]},{"given":"Jian","family":"Wang","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8398-8648","authenticated-orcid":false,"given":"Weiqiang","family":"Liu","sequence":"additional","affiliation":[{"name":"College of Electronic and Information Engineering, Nanjing University of Aeronautics and Astronautics, Nanjing, China"}]}],"member":"263","reference":[{"key":"ref13","article-title":"Learning multiple layers of features from tiny images","author":"krizhevsky","year":"2009"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-51811-4_9"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.243"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3028448"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2011.6033395"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.3390\/app10103359"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref36","first-page":"1","article-title":"Rethinking the hyperparameters for fine-tuning","author":"li","year":"2020","journal-title":"Proc 8th Int Conf Learn Representations"},{"key":"ref31","first-page":"161","article-title":"Stochastic gradient descent: The LMS algorithm and its family","author":"theodoridis","year":"2015","journal-title":"Machine Learning A Bayesian and Optimization Perspective"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"ref11","article-title":"Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms","author":"xiao","year":"2017"},{"key":"ref33","first-page":"1","article-title":"Adam: A method for stochastic optimization","author":"kingma","year":"2015","journal-title":"Proc 3rd Int Conf Learn Representations"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/DAC18072.2020.9218651"},{"key":"ref32","first-page":"1","article-title":"SGDR: Stochastic gradient descent with warm restarts","author":"loshchilov","year":"2017","journal-title":"Proc 5th Int Conf Learn Representations"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3078971.3078974"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2015.152"},{"key":"ref17","first-page":"1615","article-title":"Turning your weakness into a strength: Watermarking deep neural networks by backdooring","author":"adi","year":"2018","journal-title":"Proc 27th USENIX Secur Symp"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-44709-1_26"},{"key":"ref16","first-page":"1106","article-title":"ImageNet classification with deep convolutional neural networks","author":"krizhevsky","year":"2012","journal-title":"Proc Int Conf Neural Inf Process"},{"key":"ref38","first-page":"1135","article-title":"Learning both weights and connections for efficient neural network","author":"han","year":"2015","journal-title":"Proc Annu Conf Neural Inf Process Syst"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3437526"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3240765.3240862"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/TCAD.2020.3018403"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6976"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196550"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3307650.3322251"},{"key":"ref20","first-page":"1","article-title":"Deep neural network fingerprinting by conferrable adversarial examples","author":"lukas","year":"2021","journal-title":"Proc 9th Int Conf Learn Representations"},{"key":"ref41","first-page":"1","article-title":"The design space of lightweight cryptography","author":"mouha","year":"2015","journal-title":"Cryptology-eprint-archive"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3394171.3413729"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2019.12.016"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3474085.3475591"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00044"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660326"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/WIFS.2018.8630791"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/GCCE50665.2020.9291813"},{"key":"ref9","first-page":"4716","article-title":"Rethinking deep neural network ownership verification: Embedding passports to defeat ambiguity attacks","author":"fan","year":"2019","journal-title":"Proc Annu Conf Neural Inf Process Syst"},{"key":"ref4","article-title":"BlackMarks: Blackbox multibit watermarking for deep neural networks","author":"chen","year":"2019"},{"key":"ref3","first-page":"485","article-title":"DeepSigns: An end-to-end watermarking framework for ownership protection of deep neural networks","author":"rouhani","year":"2019","journal-title":"Proc Int Conf Archit Support Program Lang Oper Syst"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TAI.2021.3133824"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-019-04434-z"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1080\/23742917.2017.1384917"}],"container-title":["IEEE Transactions on Emerging Topics in Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6245516\/10241249\/09999663.pdf?arnumber=9999663","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,25]],"date-time":"2023-09-25T18:26:08Z","timestamp":1695666368000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9999663\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,1]]},"references-count":41,"journal-issue":{"issue":"3"},"URL":"https:\/\/doi.org\/10.1109\/tetc.2022.3231012","relation":{},"ISSN":["2168-6750","2376-4562"],"issn-type":[{"value":"2168-6750","type":"electronic"},{"value":"2376-4562","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,7,1]]}}}