{"id":"https://openalex.org/W4387868700","doi":"https://doi.org/10.29007/59w3","title":"Certified Private Inference on Neural Networks via Lipschitz-Guided Abstraction Refinement","display_name":"Certified Private Inference on Neural Networks via Lipschitz-Guided Abstraction Refinement","publication_year":2023,"publication_date":"2023-10-23","ids":{"openalex":"https://openalex.org/W4387868700","doi":"https://doi.org/10.29007/59w3"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.29007/59w3","pdf_url":"https://easychair.org/publications/open/bVbP","source":{"id":"https://openalex.org/S4220650884","display_name":"Kalpa publications in computing","issn_l":"2515-1762","issn":["2515-1762"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://easychair.org/publications/open/bVbP","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5028554978","display_name":"Edoardo Manino","orcid":"https://orcid.org/0000-0003-0028-5440"},"institutions":[{"id":"https://openalex.org/I28407311","display_name":"University of Manchester","ror":"https://ror.org/027m9bs27","country_code":"GB","type":"funder","lineage":["https://openalex.org/I28407311"]},{"id":"https://openalex.org/I4210146410","display_name":"Science Oxford","ror":"https://ror.org/04j8yhy50","country_code":"GB","type":"nonprofit","lineage":["https://openalex.org/I4210146410"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Edoardo Manino","raw_affiliation_strings":["The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom"],"affiliations":[{"raw_affiliation_string":"The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom","institution_ids":["https://openalex.org/I28407311","https://openalex.org/I4210146410"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067359936","display_name":"Bernardo Magri","orcid":"https://orcid.org/0000-0003-4537-7023"},"institutions":[{"id":"https://openalex.org/I28407311","display_name":"University of Manchester","ror":"https://ror.org/027m9bs27","country_code":"GB","type":"funder","lineage":["https://openalex.org/I28407311"]},{"id":"https://openalex.org/I4210146410","display_name":"Science Oxford","ror":"https://ror.org/04j8yhy50","country_code":"GB","type":"nonprofit","lineage":["https://openalex.org/I4210146410"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Bernardo Magri","raw_affiliation_strings":["The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom"],"affiliations":[{"raw_affiliation_string":"The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom","institution_ids":["https://openalex.org/I28407311","https://openalex.org/I4210146410"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5074423181","display_name":"Mustafa Mustafa","orcid":"https://orcid.org/0000-0002-8772-8023"},"institutions":[{"id":"https://openalex.org/I28407311","display_name":"University of Manchester","ror":"https://ror.org/027m9bs27","country_code":"GB","type":"funder","lineage":["https://openalex.org/I28407311"]},{"id":"https://openalex.org/I4210146410","display_name":"Science Oxford","ror":"https://ror.org/04j8yhy50","country_code":"GB","type":"nonprofit","lineage":["https://openalex.org/I4210146410"]},{"id":"https://openalex.org/I4210114974","display_name":"IMEC","ror":"https://ror.org/02kcbn207","country_code":"BE","type":"nonprofit","lineage":["https://openalex.org/I4210114974"]},{"id":"https://openalex.org/I99464096","display_name":"KU Leuven","ror":"https://ror.org/05f950310","country_code":"BE","type":"funder","lineage":["https://openalex.org/I99464096"]}],"countries":["BE","GB"],"is_corresponding":false,"raw_author_name":"Mustafa Mustafa","raw_affiliation_strings":["The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom","imec-COSIC, KU Leuven, Kasteelpark Arenberg 10, B-3001, Belgium"],"affiliations":[{"raw_affiliation_string":"The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom","institution_ids":["https://openalex.org/I28407311","https://openalex.org/I4210146410"]},{"raw_affiliation_string":"imec-COSIC, KU Leuven, Kasteelpark Arenberg 10, B-3001, Belgium","institution_ids":["https://openalex.org/I4210114974","https://openalex.org/I99464096"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5057689302","display_name":"Lucas C. Cordeiro","orcid":"https://orcid.org/0000-0002-6235-4272"},"institutions":[{"id":"https://openalex.org/I28407311","display_name":"University of Manchester","ror":"https://ror.org/027m9bs27","country_code":"GB","type":"funder","lineage":["https://openalex.org/I28407311"]},{"id":"https://openalex.org/I4210146410","display_name":"Science Oxford","ror":"https://ror.org/04j8yhy50","country_code":"GB","type":"nonprofit","lineage":["https://openalex.org/I4210146410"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Lucas Cordeiro","raw_affiliation_strings":["The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom"],"affiliations":[{"raw_affiliation_string":"The University of Manchester, Department of Computer Science, Oxford Road, Manchester M13 9PL, United Kingdom","institution_ids":["https://openalex.org/I28407311","https://openalex.org/I4210146410"]}]}],"institution_assertions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.285,"has_fulltext":true,"fulltext_origin":"pdf","cited_by_count":1,"citation_normalized_percentile":{"value":0.497511,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":66,"max":77},"biblio":{"volume":"16","issue":null,"first_page":"35","last_page":"22"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9998,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9998,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9967,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9901,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/pooling","display_name":"Pooling","score":0.5244929},{"id":"https://openalex.org/keywords/abstraction","display_name":"Abstraction","score":0.4810598}],"concepts":[{"id":"https://openalex.org/C22324862","wikidata":"https://www.wikidata.org/wiki/Q652707","display_name":"Lipschitz continuity","level":2,"score":0.8057818},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6792685},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6609845},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.5956049},{"id":"https://openalex.org/C70437156","wikidata":"https://www.wikidata.org/wiki/Q7228652","display_name":"Pooling","level":2,"score":0.5244929},{"id":"https://openalex.org/C90119067","wikidata":"https://www.wikidata.org/wiki/Q43260","display_name":"Polynomial","level":2,"score":0.48510182},{"id":"https://openalex.org/C124304363","wikidata":"https://www.wikidata.org/wiki/Q673661","display_name":"Abstraction","level":2,"score":0.4810598},{"id":"https://openalex.org/C126255220","wikidata":"https://www.wikidata.org/wiki/Q141495","display_name":"Mathematical optimization","level":1,"score":0.43569446},{"id":"https://openalex.org/C45374587","wikidata":"https://www.wikidata.org/wiki/Q12525525","display_name":"Computation","level":2,"score":0.42507654},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.42037117},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.4148514},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.33144027},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2369655},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.23127872},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":true,"landing_page_url":"https://doi.org/10.29007/59w3","pdf_url":"https://easychair.org/publications/open/bVbP","source":{"id":"https://openalex.org/S4220650884","display_name":"Kalpa publications in computing","issn_l":"2515-1762","issn":["2515-1762"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},{"is_oa":true,"landing_page_url":"https://research.manchester.ac.uk/en/publications/a55fc3b1-1f45-4546-a3da-9f8ad90c811e","pdf_url":"https://research.manchester.ac.uk/files/265713545/Certified_Private_Inference_on_Neural_Networks_revised_.pdf","source":{"id":"https://openalex.org/S4306400662","display_name":"Research Explorer (The University of Manchester)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I28407311","host_organization_name":"University of Manchester","host_organization_lineage":["https://openalex.org/I28407311"],"host_organization_lineage_names":["University of Manchester"],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.29007/59w3","pdf_url":"https://easychair.org/publications/open/bVbP","source":{"id":"https://openalex.org/S4220650884","display_name":"Kalpa publications in computing","issn_l":"2515-1762","issn":["2515-1762"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"sustainable_development_goals":[{"display_name":"Partnerships for the goals","id":"https://metadata.un.org/sdg/17","score":0.58}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":28,"referenced_works":["https://openalex.org/W1494049356","https://openalex.org/W1601795611","https://openalex.org/W1992282993","https://openalex.org/W2031533839","https://openalex.org/W2056232259","https://openalex.org/W2112796928","https://openalex.org/W2132172731","https://openalex.org/W2435473771","https://openalex.org/W253307310","https://openalex.org/W2585580772","https://openalex.org/W2891698621","https://openalex.org/W2963440492","https://openalex.org/W2974147052","https://openalex.org/W3012125688","https://openalex.org/W3131666037","https://openalex.org/W3134210339","https://openalex.org/W3134830965","https://openalex.org/W3165242465","https://openalex.org/W3173128495","https://openalex.org/W3195598474","https://openalex.org/W3217809002","https://openalex.org/W4225586916","https://openalex.org/W4232836212","https://openalex.org/W4287067343","https://openalex.org/W4306704288","https://openalex.org/W4307884510","https://openalex.org/W4376639489","https://openalex.org/W4387868700"],"related_works":["https://openalex.org/W4390975304","https://openalex.org/W4287804464","https://openalex.org/W4285021673","https://openalex.org/W3211292372","https://openalex.org/W3103989898","https://openalex.org/W3022252430","https://openalex.org/W2953234277","https://openalex.org/W2900413183","https://openalex.org/W2626256601","https://openalex.org/W147410782"],"abstract_inverted_index":{"Private":[0],"inference":[1,50],"on":[2,10,101,122,158],"neural":[3,14,78,160],"networks":[4,15],"requires":[5],"running":[6],"all":[7,56],"the":[8,46,58,74,77,102,123,131,139,142,156],"computation":[9],"encrypted":[11,40],"data.":[12],"Unfortunately,":[13],"contain":[16],"a":[17,34,62,90],"large":[18],"number":[19],"of":[20,48,57,76,141],"non-arithmetic":[21,59],"operations,":[22],"such":[23],"as":[24],"ReLU":[25],"activation":[26],"functions":[27],"and":[28,80,110],"max":[29],"pooling":[30],"layers,":[31],"which":[32,97],"incur":[33],"high":[35],"latency":[36],"cost":[37],"in":[38],"their":[39],"form.":[41],"To":[42],"address":[43],"this":[44,86],"issue,":[45],"majority":[47],"private":[49],"methods":[51],"re-":[52],"place":[53],"some":[54],"or":[55],"operations":[60],"with":[61],"polynomial":[63,134],"approximation.":[64],"This":[65],"step":[66],"introduces":[67],"approximation":[68,104],"errors":[69],"that":[70,150],"can":[71,152],"substantially":[72],"alter":[73],"output":[75],"network":[79],"decrease":[81],"its":[82],"predictive":[83],"performance.":[84],"In":[85],"paper,":[87],"we":[88],"propose":[89],"Lipschitz-":[91],"Guided":[92],"Abstraction":[93],"Refinement":[94],"method":[95,107],"(LiGAR),":[96],"provides":[98],"strong":[99],"guarantees":[100],"global":[103],"error.":[105,125],"Our":[106,146],"is":[108],"iterative,":[109],"leverages":[111],"state-of-the-art":[112],"Lipschitz":[113],"constant":[114],"estimation":[115],"techniques":[116],"to":[117,155],"produce":[118],"increasingly":[119],"tighter":[120],"bounds":[121],"worst-case":[124],"At":[126],"each":[127],"iteration,":[128],"LiGAR":[129,151],"designs":[130],"least":[132],"expensive":[133],"approx-":[135],"imation":[136],"by":[137],"solving":[138],"dual":[140],"corresponding":[143],"optimization":[144],"problem.":[145],"preliminary":[147],"experiments":[148],"show":[149],"easily":[153],"converge":[154],"optimum":[157],"medium-sized":[159],"networks.":[161]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W4387868700","counts_by_year":[{"year":2023,"cited_by_count":1}],"updated_date":"2025-03-16T22:09:32.735750","created_date":"2023-10-24"}