{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,4,22]],"date-time":"2025-04-22T11:40:04Z","timestamp":1745322004973,"version":"3.40.4"},"publisher-location":"Cham","reference-count":31,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031710247"},{"type":"electronic","value":"9783031710254"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-031-71025-4_6","type":"book-chapter","created":{"date-parts":[[2025,1,6]],"date-time":"2025-01-06T07:46:12Z","timestamp":1736149572000},"page":"99-115","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Assessing Backdoor Risk in Deepfake Detection"],"prefix":"10.1007","author":[{"given":"Jiawen","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Boquan","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Min","family":"Yu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kam-Pui","family":"Chow","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jianguo","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fuqiang","family":"Du","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiang","family":"Meng","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Weiqing","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,1,7]]},"reference":[{"key":"6_CR1","doi-asserted-by":"crossref","unstructured":"D. Afchar, V. Nozick, J. Yamagishi and I. Echizen, MesoNet: A compact facial video forgery detection network, Proceedings of the IEEE International Workshop on Information Forensics and Security, 2018.","DOI":"10.1109\/WIFS.2018.8630761"},{"key":"6_CR2","unstructured":"Agence France-Presse, Chinese deepfake app Zao sparks privacy row after going viral, September 2, 2019."},{"key":"6_CR3","doi-asserted-by":"crossref","unstructured":"I. Amerini, L. Galteri, R. Caldelli and A. Del Bimbo, Deepfake video detection through optical-flow-based CNN, Proceedings of the IEEE\/CVF International Conference on Computer Vision Workshop, pp. 1205\u20131207, 2019.","DOI":"10.1109\/ICCVW.2019.00152"},{"key":"6_CR4","doi-asserted-by":"crossref","unstructured":"V. Badrinarayanan, A. Kendall and R.\u00a0Cipolla, Segnet: A deep convolutional encoder-decoder architecture for image segmentation, IEEE Transactions on Pattern Analysis and Machine Intelligence, vol. 39(12), pp. 2481\u20132495, 2017.","DOI":"10.1109\/TPAMI.2016.2644615"},{"key":"6_CR5","doi-asserted-by":"crossref","unstructured":"X. Cao and N. Gong, Understanding the security of deepfake detection, in Digital Forensics and Cyber Crime, P. Gladyshev, S. Goel, J. James, G. Markowsky and D. Johnson (Eds.), Springer, Cham, Switzerland, pp. 360\u2013378, 2022.","DOI":"10.1007\/978-3-031-06365-7_22"},{"key":"6_CR6","doi-asserted-by":"crossref","unstructured":"R. Chesney and D. Citron, Deepfakes: A looming challenge for privacy, democracy and national security, California Law Review, vol. 107, pp. 1753\u20131820, 2019.","DOI":"10.2139\/ssrn.3213954"},{"key":"6_CR7","doi-asserted-by":"crossref","unstructured":"F. Chollet, Xception: Deep learning with depthwise separable convolutions, Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 1800\u20131807, 2017.","DOI":"10.1109\/CVPR.2017.195"},{"key":"6_CR8","doi-asserted-by":"crossref","unstructured":"A. Gandhi and S. Jain, Adversarial perturbations fool deepfake detectors, Proceedings of the International Joint Conference on Neural Networks, 2020.","DOI":"10.1109\/IJCNN48605.2020.9207034"},{"key":"6_CR9","doi-asserted-by":"crossref","unstructured":"I. Goodfellow, J. Pouget-Abadie, M. Mirza, B. Xu, D. Warde-Farley, S. Ozair, A. Courville and Y. Bengio, Generative adversarial networks, Communications of the ACM, vol. 63(11), pp. 139\u2013144, 2020.","DOI":"10.1145\/3422622"},{"key":"6_CR10","unstructured":"T. Gu, B. Dolan-Gavitt and S. Garg, Badnets: Identifying Vulnerabilities in the Machine Learning Model Supply Chain, arXiv: 1708.06733v1 (arxiv.org\/abs\/1708.06733v1), 2019."},{"key":"6_CR11","doi-asserted-by":"crossref","unstructured":"D. Guera and E. Delp, Deepfake video detection using recurrent neural networks, Proceedings of the Fifteenth IEEE International Conference on Advanced Video and Signal Based Surveillance, 2018.","DOI":"10.1109\/AVSS.2018.8639163"},{"key":"6_CR12","doi-asserted-by":"crossref","unstructured":"F. Hampel, The influence curve and its role in robust estimation, Journal of the American Statistical Association, vol. 69(346), pp. 383\u2013393, 1974.","DOI":"10.1080\/01621459.1974.10482962"},{"key":"6_CR13","unstructured":"S. Hussain, P. Neekhara, M. Jere, F. Koushanfar and J. McAuley, Adversarial Deepfakes: Evaluating Vulnerability of Deepfake Detectors to Adversarial Examples, arXiv: 2002.12749v3 (arxiv.org\/abs\/2002.12749v3), 2020."},{"key":"6_CR14","doi-asserted-by":"crossref","unstructured":"J. Jiang, B. Li, S. Yu, C. Liu, S. An, M. Liu and M. Yu, A residual fingerprint-based defense against adversarial deepfakes, Proceedings of the Thirty-Third IEEE International Conference on High Performance Computing and Communications, Seventh IEEE International Conference on Data Science and Systems, Nineteenth IEEE International Conference on Smart City and Seventh IEEE International Conference on Dependability in Sensor, Cloud and Big Data Systems and Applications, pp. 797\u2013804, 2021.","DOI":"10.1109\/HPCC-DSS-SmartCity-DependSys53884.2021.00129"},{"key":"6_CR15","doi-asserted-by":"crossref","unstructured":"Y. Li, Y. Jiang, Z. Li and S. Xia, Backdoor learning: A survey, IEEE Transactions on Neural Networks and Learning Systems, vol. 35(1), pp. 5\u201322, 2024.","DOI":"10.1109\/TNNLS.2022.3182979"},{"key":"6_CR16","unstructured":"Y. Li and S. Lyu, Exposing deepfake videos by detecting face warping artifacts, Proceedings of the IEEE\/CVF International Conference on Computer Vision Workshop, pp. 46\u201352, 2019."},{"key":"6_CR17","doi-asserted-by":"crossref","unstructured":"Y. Li, X. Yang, P. Sun, H. Qi and S. Lyu, Celeb-DF: A large-scale challenging dataset for deepfake forensics, Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition, pp. 3204\u20133213, 2020.","DOI":"10.1109\/CVPR42600.2020.00327"},{"key":"6_CR18","unstructured":"Malavida, Fakeapp 2.2.0, Ontecnia Media Networks, Valencia, Spain (www.malavida.com\/en\/soft\/fakeapp), 2024."},{"key":"6_CR19","doi-asserted-by":"crossref","unstructured":"F. Matern, C. Riess and M. Stamminger, Exploiting visual artifacts to expose deepfakes and face manipulations, Proceedings of the IEEE Winter Applications of Computer Vision Workshops, pp. 83\u201392, 2019.","DOI":"10.1109\/WACVW.2019.00020"},{"key":"6_CR20","unstructured":"P. Neekhara, B. Dolhansky, J. Bitton and C. Canton-Ferrer, Adversarial Threats to Deepfake Detection: A Practical Perspective, arXiv: 2011.09957 (arxiv.org\/abs\/2011.09957), 2020."},{"key":"6_CR21","doi-asserted-by":"crossref","unstructured":"T. Nguyen, C. Nguyen, D. Nguyen, D. Nguyen, S. Nahavandi, T. Nguyen and Q. Pham, Deep learning for deepfake creation and detection, Computer Vision and Image Understanding, vol. 223, article no. 103525, 2022.","DOI":"10.1016\/j.cviu.2022.103525"},{"key":"6_CR22","unstructured":"A. Rossler, D. Cozzolino, L. Verdoliva, C. Riess, J. Thies and M. Niesner, FaceForensics++: Learning to Detect Manipulated Facial Images, arXiv: 1901.08971v3 (arxiv.org\/abs\/1901.08971v3), 2019."},{"key":"6_CR23","unstructured":"S. Samuel, A guy made a deepfake app to turn photos of women into nudes. It didn\u2019t go well, Vox, June 27, 2019."},{"key":"6_CR24","doi-asserted-by":"crossref","unstructured":"S. Tariq, S. Lee, H. Kim, Y. Shin and S. Woo, GAN is a friend or foe? A framework to detect various fake face images, Proceedings of the Thirty-Fourth ACM\/SIGAPP Symposium on Applied Computing, pp. 1296\u20131303, 2019.","DOI":"10.1145\/3297280.3297410"},{"key":"6_CR25","doi-asserted-by":"crossref","unstructured":"J. Thies, M. Zollhofer, M. Stamminger, C. Theobalt and M. Niessner, Face2Face: Real-time face capture and reenactment of RGB videos, Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 2387\u20132395, 2016.","DOI":"10.1109\/CVPR.2016.262"},{"key":"6_CR26","doi-asserted-by":"crossref","unstructured":"T. To, H. Luong, N. Nguyen, T. Nguyen, M. Tran and T. Do, Deepfake detection using EfficientNet: Working towards dense sampling and frame selection, Proceedings of the RIVF International Conference on Computing and Communication Technologies, pp. 612\u2013617, 2022.","DOI":"10.1109\/RIVF55975.2022.10013900"},{"key":"6_CR27","doi-asserted-by":"crossref","unstructured":"R. Tolosana, R. Vera-Rodriguez, J. Fierrez, A. Morales and J. Ortega-Garcia, Deepfakes and beyond: A survey of face manipulation and fake detection, Information Fusion, vol. 64, pp. 131\u2013148, 2020.","DOI":"10.1016\/j.inffus.2020.06.014"},{"key":"6_CR28","doi-asserted-by":"crossref","unstructured":"B. Wang, Y. Yao, S. Shan, H. Li, B. Viswanath, H. Zheng and B. Zhao, Neural Cleanse: Identifying and mitigating backdoor attacks in neural networks, Proceedings of the IEEE Symposium on Security and Privacy, pp. 707\u2013723, 2019.","DOI":"10.1109\/SP.2019.00031"},{"key":"6_CR29","unstructured":"R. Wiyatno, A. Xu, O. Dia and A. de Berker, Adversarial Examples in Modern Machine Learning: A Review, arXiv: 9110.5268v2 (arxiv.org\/abs\/1911.05268v2), 2019."},{"key":"6_CR30","unstructured":"Z. Xiang, D. Miller and G. Kesidis, Post-Training Detection of Backdoor Attacks for Two-Class and Multi-Attack Scenarios, arXiv: 2201.08474v2 (arxiv.org\/abs\/2201.08474v2), 2022."},{"key":"6_CR31","doi-asserted-by":"crossref","unstructured":"X. Yang, Y. Li and S. Lyu, Exposing deepfakes using inconsistent head poses, Proceedings of the IEEE International Conference on Acoustics, Speech and Signal Processing, pp. 8261\u20138265, 2019.","DOI":"10.1109\/ICASSP.2019.8683164"}],"container-title":["IFIP Advances in Information and Communication Technology","Advances in Digital Forensics XX"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-71025-4_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,22]],"date-time":"2025-04-22T11:15:46Z","timestamp":1745320546000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-71025-4_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783031710247","9783031710254"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-71025-4_6","relation":{},"ISSN":["1868-4238","1868-422X"],"issn-type":[{"type":"print","value":"1868-4238"},{"type":"electronic","value":"1868-422X"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"7 January 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DigitalForensics","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP International Conference on Digital Forensics","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"New Delhi","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"India","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"3 January 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 January 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"digitalforensics2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.ifip119.org\/Conferences\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}