{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T08:03:03Z","timestamp":1784361783647,"version":"3.55.0"},"publisher-location":"Singapore","reference-count":34,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819230174","type":"print"},{"value":"9789819230181","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-92-3018-1_14","type":"book-chapter","created":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T07:27:19Z","timestamp":1784359639000},"page":"304-323","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["SpecGate: Spectral Decomposition and\u00a0LOF-Gated Aggregation for\u00a0Defending Against Backdoor Attacks in\u00a0Federated Learning"],"prefix":"10.1007","author":[{"given":"Wenxiu","family":"Wu","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Haiyong","family":"Bao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Menghong","family":"Guan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiaan","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Hong-Ning","family":"Dai","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Cheng","family":"Huang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,7,18]]},"reference":[{"key":"14_CR1","doi-asserted-by":"publisher","unstructured":"Breunig, M.M., Kriegel, H.-P., Ng, R.T., Sander, J.: LOF: identifying density-based local outliers. In: Proceedings of the 2000 ACM SIGMOD International Conference on Management of Data, pp.\u00a093\u2013104. ACM (2000). https:\/\/doi.org\/10.1145\/342009.335388","DOI":"10.1145\/342009.335388"},{"key":"14_CR2","doi-asserted-by":"publisher","first-page":"112","DOI":"10.1016\/j.patrec.2023.08.020","volume":"174","author":"J Yang","year":"2023","unstructured":"Yang, J., Tan, X., Rahardja, S.: Outlier detection: how to select $$k$$ for $$k$$-nearest-neighbors-based outlier detectors. Pattern Recogn. Lett. 174, 112\u2013117 (2023)","journal-title":"Pattern Recogn. Lett."},{"issue":"4","key":"14_CR3","doi-asserted-by":"publisher","first-page":"764","DOI":"10.1016\/j.jesp.2013.03.013","volume":"49","author":"C Leys","year":"2013","unstructured":"Leys, C., Ley, C., Klein, O., Bernard, P., Licata, L.: Detecting outliers: do not use standard deviation around the mean, use absolute deviation around the median. J. Exp. Soc. Psychol. 49(4), 764\u2013766 (2013)","journal-title":"J. Exp. Soc. Psychol."},{"key":"14_CR4","unstructured":"Nguyen, T.D., et al.: FLAME: taming backdoors in federated learning. In: 31st USENIX Security Symposium (USENIX Security 2022), pp. 1415\u20131432 (2022)"},{"issue":"5","key":"14_CR5","doi-asserted-by":"publisher","first-page":"4619","DOI":"10.1109\/TDSC.2024.3354736","volume":"21","author":"Y Miao","year":"2024","unstructured":"Miao, Y., Xie, R., Li, X., Liu, Z., Choo, K.-K.R., Deng, R.H.: Efficient and secure federated learning against backdoor attacks. IEEE Trans. Dependable Secure Comput. 21(5), 4619\u20134636 (2024)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"14_CR6","unstructured":"Zhang, Z., et al.: Neurotoxin: durable backdoors in federated learning. In: International Conference on Machine Learning, pp. 26429\u201326446. PMLR (2022)"},{"key":"14_CR7","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2025.103529","volume":"126","author":"Q Li","year":"2026","unstructured":"Li, Q., et al.: Mitigating malicious model fusion in federated learning via confidence-aware defense. Inf. Fusion 126, 103529 (2026). https:\/\/doi.org\/10.1016\/j.inffus.2025.103529","journal-title":"Inf. Fusion"},{"issue":"5","key":"14_CR8","doi-asserted-by":"publisher","first-page":"316","DOI":"10.1177\/0926227X251335198","volume":"33","author":"X Tan","year":"2025","unstructured":"Tan, X., Chen, P.: FedRAB: robust federated learning against backdoor attacks based on collaborative defense with smoothing. J. Comput. Secur. 33(5), 316\u2013333 (2025). https:\/\/doi.org\/10.1177\/0926227X251335198","journal-title":"J. Comput. Secur."},{"key":"14_CR9","unstructured":"McMahan, H.B., Moore, E., Ramage, D., Hampson, S., Ag\u00fcera y Arcas, B.: Communication-efficient learning of deep networks from decentralized data. In: Proceedings of the 20th International Conference on Artificial Intelligence and Statistics (AISTATS), pp.\u00a01273\u20131282. PMLR (2017)"},{"key":"14_CR10","doi-asserted-by":"publisher","DOI":"10.1016\/j.cie.2020.106854","volume":"149","author":"L Li","year":"2020","unstructured":"Li, L., Fan, Y., Tse, M., Lin, K.-Y.: A review of applications in federated learning. Comput. Ind. Eng. 149, 106854 (2020)","journal-title":"Comput. Ind. Eng."},{"issue":"1","key":"14_CR11","doi-asserted-by":"publisher","first-page":"5","DOI":"10.1109\/TNNLS.2022.3182979","volume":"35","author":"Y Li","year":"2022","unstructured":"Li, Y., Jiang, Y., Li, Z., Xia, S.-T.: Backdoor learning: a survey. IEEE Trans. Neural Netw. Learn. Syst. 35(1), 5\u201322 (2022)","journal-title":"IEEE Trans. Neural Netw. Learn. Syst."},{"key":"14_CR12","doi-asserted-by":"crossref","unstructured":"Li, H., et al.: 3DFed: adaptive and extensible framework for covert backdoor attack in federated learning. In: 2023 IEEE Symposium on Security and Privacy (SP), pp.\u00a01893\u20131907. IEEE (2023)","DOI":"10.1109\/SP46215.2023.10179401"},{"key":"14_CR13","unstructured":"Blanchard, P., El Mhamdi, E.M., Guerraoui, R., Stainer, J.: Machine learning with adversaries: byzantine tolerant gradient descent. In: Advances in Neural Information Processing Systems, vol. 30 (2017)"},{"key":"14_CR14","doi-asserted-by":"publisher","first-page":"1142","DOI":"10.1109\/TSP.2022.3153135","volume":"70","author":"K Pillutla","year":"2022","unstructured":"Pillutla, K., Kakade, S.M., Harchaoui, Z.: Robust aggregation for federated learning. IEEE Trans. Signal Process. 70, 1142\u20131154 (2022)","journal-title":"IEEE Trans. Signal Process."},{"key":"14_CR15","doi-asserted-by":"crossref","unstructured":"Ozdayi, M.S., Kantarcioglu, M., Gel, Y.R.: Defending against backdoors in federated learning with robust learning rate. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 35, pp. 9268\u20139276 (2021)","DOI":"10.1609\/aaai.v35i10.17118"},{"key":"14_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"273","DOI":"10.1007\/978-3-030-00470-5_13","volume-title":"Research in Attacks, Intrusions, and Defenses","author":"K Liu","year":"2018","unstructured":"Liu, K., Dolan-Gavitt, B., Garg, S.: Fine-pruning: defending against backdooring attacks on deep neural networks. In: Bailey, M., Holz, T., Stamatogiannakis, M., Ioannidis, S. (eds.) RAID 2018. LNCS, vol. 11050, pp. 273\u2013294. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-030-00470-5_13"},{"key":"14_CR17","doi-asserted-by":"crossref","unstructured":"Huang, T., Hu, S., Chow, K.-H., Ilhan, F., Tekin, S., Liu, L.: Lockdown: backdoor defense for federated learning with isolated subspace training. In: Advances in Neural Information Processing Systems, vol. 36, pp. 10876\u201310896 (2023)","DOI":"10.52202\/075280-0478"},{"key":"14_CR18","unstructured":"Fung, C., Yoon, C.J.M., Beschastnikh, I.: The limitations of federated learning in sybil settings. In: 23rd International Symposium on Research in Attacks, Intrusions and Defenses, pp. 301\u2013316. RAID (2020)"},{"key":"14_CR19","series-title":"Lecture Notes in Computer Science (Lecture Notes in Artificial Intelligence)","doi-asserted-by":"publisher","first-page":"160","DOI":"10.1007\/978-3-642-37456-2_14","volume-title":"Advances in Knowledge Discovery and Data Mining","author":"RJGB Campello","year":"2013","unstructured":"Campello, R.J.G.B., Moulavi, D., Sander, J.: Density-based clustering based on hierarchical density estimates. In: Pei, J., Tseng, V.S., Cao, L., Motoda, H., Xu, G. (eds.) PAKDD 2013. LNCS (LNAI), vol. 7819, pp. 160\u2013172. Springer, Heidelberg (2013). https:\/\/doi.org\/10.1007\/978-3-642-37456-2_14"},{"key":"14_CR20","doi-asserted-by":"crossref","unstructured":"Huang, S., Li, Y., Chen, C., Shi, L., Gao, Y.: Multi-metrics adaptively identifies backdoors in federated learning. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision, pp. 4652\u20134662 (2023)","DOI":"10.1109\/ICCV51070.2023.00429"},{"key":"14_CR21","unstructured":"Bagdasaryan, E., Veit, A., Hua, Y., Estrin, D., Shmatikov, V.: How to backdoor federated learning. In: International Conference on Artificial Intelligence and Statistics, pp. 2938\u20132948. PMLR (2020)"},{"key":"14_CR22","doi-asserted-by":"crossref","unstructured":"Nguyen, T.D., Nguyen, T., Nguyen, P.L., Pham, H.H., Doan, K., Wong, K.-S.: Backdoor attacks and defenses in federated learning: survey, challenges and future research directions. Eng. Appl. Artif. Intell. 107166 (2024)","DOI":"10.1016\/j.engappai.2023.107166"},{"key":"14_CR23","unstructured":"MacQueen, J.B.: Some methods for classification and analysis of multivariate observations. In: Proceedings of the Fifth Berkeley Symposium on Mathematical Statistics and Probability, pp.\u00a0281\u2013297 (1967)"},{"key":"14_CR24","unstructured":"Ester, M., Kriegel, H.-P., Sander, J., Xu, X.: A density-based algorithm for discovering clusters in large spatial databases with noise. In: Proceedings of KDD 1996, pp. 226\u2013231 (1996)"},{"key":"14_CR25","doi-asserted-by":"publisher","unstructured":"Cao, X., Fang, M., Liu, J., Gong, N.Z.: FLTrust: byzantine-robust federated learning via trust bootstrapping. In: Network and Distributed System Security Symposium (NDSS) (2021). https:\/\/doi.org\/10.14722\/ndss.2021.24434","DOI":"10.14722\/ndss.2021.24434"},{"issue":"3","key":"14_CR26","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/BF02288367","volume":"1","author":"C Eckart","year":"1936","unstructured":"Eckart, C., Young, G.: The approximation of one matrix by another of lower rank. Psychometrika 1(3), 211\u2013218 (1936)","journal-title":"Psychometrika"},{"key":"14_CR27","doi-asserted-by":"publisher","unstructured":"Gao, Y., Xu, C., Wang, D., Chen, S., Ranasinghe, D.C., Nepal, S.: STRIP: a defence against trojan attacks on deep neural networks. In: Proceedings of the 35th Annual Computer Security Applications Conference, pp. 113\u2013125. ACM (2019). https:\/\/doi.org\/10.1145\/3359789.3359790","DOI":"10.1145\/3359789.3359790"},{"key":"14_CR28","doi-asserted-by":"publisher","first-page":"47230","DOI":"10.1109\/ACCESS.2019.2909068","volume":"7","author":"T Gu","year":"2019","unstructured":"Gu, T., Liu, K., Dolan-Gavitt, B., Garg, S.: BadNets: evaluating backdooring attacks on deep neural networks. IEEE Access 7, 47230\u201347244 (2019)","journal-title":"IEEE Access"},{"key":"14_CR29","doi-asserted-by":"publisher","unstructured":"Hinton, G., Vinyals, O., Dean, J.: Distilling the Knowledge in a Neural Network. arXiv preprint arXiv:1503.02531 (2015). https:\/\/doi.org\/10.48550\/arXiv.1503.02531","DOI":"10.48550\/arXiv.1503.02531"},{"key":"14_CR30","doi-asserted-by":"crossref","unstructured":"Naseri, M., Hayes, J., De Cristofaro, E.: Local and central differential privacy for robustness and privacy in federated learning. In: Network and Distributed System Security Symposium (NDSS) (2022)","DOI":"10.14722\/ndss.2022.23054"},{"key":"14_CR31","unstructured":"Xie, C., Huang, K., Chen, P.-Y., Li, B.: DBA: distributed backdoor attacks against federated learning. In: International Conference on Learning Representations (2020)"},{"key":"14_CR32","unstructured":"Yin, D., Chen, Y., Kannan, R., Bartlett, P.: Byzantine-robust distributed learning: towards optimal statistical rates. In: International Conference on Machine Learning, pp. 5650\u20135659. PMLR (2018)"},{"key":"14_CR33","unstructured":"Madry, A., Makelov, A., Schmidt, L., Tsipras, D., Vladu, A.: Towards deep learning models resistant to adversarial attacks. In: International Conference on Learning Representations (ICLR) (2018)"},{"key":"14_CR34","doi-asserted-by":"publisher","first-page":"176","DOI":"10.1016\/j.neuroimage.2018.03.016","volume":"175","author":"F Artoni","year":"2018","unstructured":"Artoni, F., Delorme, A., Makeig, S.: Applying dimension reduction to EEG data by principal component analysis reduces the quality of its subsequent independent component decomposition. Neuroimage 175, 176\u2013187 (2018)","journal-title":"Neuroimage"}],"container-title":["Lecture Notes in Computer Science","Information Security and Privacy"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-92-3018-1_14","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T07:27:21Z","timestamp":1784359641000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-92-3018-1_14"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9789819230174","9789819230181"],"references-count":34,"URL":"https:\/\/doi.org\/10.1007\/978-981-92-3018-1_14","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"18 July 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ACISP","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Australasian Conference on Information Security and Privacy","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Perth, WA","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Australia","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 July 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9 July 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"acisp2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/acisp-conference.github.io\/acisp2026\/index.html","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}