{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T23:03:19Z","timestamp":1784329399633,"version":"3.55.0"},"publisher-location":"Singapore","reference-count":29,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819233939","type":"print"},{"value":"9789819233946","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T00:00:00Z","timestamp":1784332800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T00:00:00Z","timestamp":1784332800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2027]]},"DOI":"10.1007\/978-981-92-3394-6_14","type":"book-chapter","created":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T22:22:15Z","timestamp":1784326935000},"page":"158-171","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Robust Heterogeneous Federated Learning Against Untargeted Poisoning Attacks via Sign-Space Consistency"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-0941-8038","authenticated-orcid":false,"given":"Yilei","family":"Xue","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jianhua","family":"Li","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-8246-0374","authenticated-orcid":false,"given":"Heyi","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,7,18]]},"reference":[{"key":"14_CR1","unstructured":"Baruch, G., Baruch, M., Goldberg, Y.: A little is enough: circumventing defenses for distributed learning. In: Advances in Neural Information Processing Systems, vol. 32 (2019)"},{"key":"14_CR2","unstructured":"Blanchard, P., El Mhamdi, E.M., Guerraoui, R., Stainer, J.: Machine learning with adversaries: byzantine tolerant gradient descent. In: Advances in neural information processing systems, vol.30 (2017)"},{"key":"14_CR3","doi-asserted-by":"crossref","unstructured":"Cao, X., Fang, M., Liu, J., Gong, N.Z.: Fltrust: byzantine-robust federated learning via trust bootstrapping. In: Network and Distributed Systems Security (NDSS 2021), pp. 1\u201318 (2021)","DOI":"10.14722\/ndss.2021.24434"},{"key":"14_CR4","doi-asserted-by":"crossref","unstructured":"Choudhary, S., Kolluri, A., Saxena, P.: Attacking byzantine robust aggregation in high dimensions. In: 2024 IEEE Symposium on Security and Privacy (SP), pp. 1325\u20131344. IEEE (2024)","DOI":"10.1109\/SP54263.2024.00217"},{"key":"14_CR5","unstructured":"Damaskinos, G., Guerraoui, R., Patra, R., Taziki, M., Rouault, S.: Asynchronous byzantine machine learning (the case of SGD). In: International Conference on Machine Learning, pp. 1145\u20131154. PMLR (2018)"},{"key":"14_CR6","unstructured":"Fang, M., Cao, X., Jia, J., Gong, N.: Local model poisoning attacks to byzantine-robust federated learning. In: 29th USENIX security symposium (USENIX Security 20), pp. 1605\u20131622 (2020)"},{"key":"14_CR7","doi-asserted-by":"crossref","unstructured":"Fereidooni, H., Pegoraro, A., Rieger, P., Dmitrienko, A., Sadeghi, A.R.: Freqfed: a frequency analysis-based approach for mitigating poisoning attacks in federated learning. In: NDSS (2024)","DOI":"10.14722\/ndss.2024.24620"},{"key":"14_CR8","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103474","volume":"135","author":"Z Guo","year":"2023","unstructured":"Guo, Z., Xu, L., Zhu, L.: Fedsign: a sign-based federated learning framework with privacy and robustness guarantees. Comput. Secur. 135, 103474 (2023)","journal-title":"Comput. Secur."},{"key":"14_CR9","doi-asserted-by":"crossref","unstructured":"Houben, S., Stallkamp, J., Salmen, J., Schlipsing, M., Igel, C.: Detection of traffic signs in real-world images: the German traffic sign detection benchmark. In: International Joint Conference on Neural Networks. No. 1288 (2013)","DOI":"10.1109\/IJCNN.2013.6706807"},{"key":"14_CR10","unstructured":"Iandola, F.N., Han, S., Moskewicz, M.W., Ashraf, K., Dally, W.J., Keutzer, K.: Squeezenet: alexnet-level accuracy with 50x fewer parameters and< 0.5 mb model size. arXiv preprint. https:\/\/arxiv.org\/abs\/1602.07360 (2016)"},{"key":"14_CR11","unstructured":"Iglewicz, B., Hoaglin, D.: Volume 16: how to detect and handle outliers. ASQ Quality Press. https:\/\/books.google.com.hk\/books?id=E4QK0QEACAAJ (1993)"},{"key":"14_CR12","unstructured":"Karimireddy, S.P., He, L., Jaggi, M.: Byzantine-robust learning on heterogeneous datasets via bucketing. In: International Conference on Learning Representations (2022). https:\/\/openreview.net\/forum?id=jXKKDEi5vJt"},{"key":"14_CR13","unstructured":"Krizhevsky, A., Hinton, G.: Learning multiple layers of features from tiny images. University of Toronto (04 2009)"},{"issue":"11","key":"14_CR14","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"LeCun, Y., Bottou, L., Bengio, Y., Haffner, P.: Gradient-based learning applied to document recognition. Proc. IEEE. 86(11), 2278\u20132324 (1998)","journal-title":"Proc. IEEE"},{"key":"14_CR15","unstructured":"McMahan, B., Moore, E., Ramage, D., Hampson, S., Arcas, B.A.: Communication-efficient learning of deep networks from decentralized data. In: Artificial Intelligence and Statistics, pp. 1273\u20131282. PMLR (2017)"},{"key":"14_CR16","unstructured":"Netzer, Y., Wang, T., Coates, A., Bissacco, A., Wu, B., Ng, A.Y.: Reading digits in natural images with unsupervised feature learning. In: NIPS Workshop on Deep Learning and Unsupervised Feature Learning, vol. 2011, p. 7. Granada (2011)"},{"key":"14_CR17","unstructured":"Panda, A., Mahloujifar, S., Bhagoji, A.N., Jafari Siavoshani, M.M., Mittal, P.: Sparsefed: mitigating model poisoning attacks in federated learning with sparsification. In: International Conference on Artificial Intelligence and Statistics, pp. 7587\u20137624. PMLR (2022)"},{"key":"14_CR18","doi-asserted-by":"publisher","first-page":"1142","DOI":"10.1109\/TSP.2022.3153135","volume":"70","author":"K Pillutla","year":"2022","unstructured":"Pillutla, K., Kakade, S.M., Harchaoui, Z.: Robust aggregation for federated learning. IEEE Trans. Signal Process. 70, 1142\u20131154 (2022)","journal-title":"IEEE Trans. Signal Process."},{"key":"14_CR19","doi-asserted-by":"crossref","unstructured":"Sandler, M., Howard, A., Zhu, M., Zhmoginov, A., Chen, L.C.: Mobilenetv2: inverted residuals and linear bottlenecks. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 4510\u20134520 (2018)","DOI":"10.1109\/CVPR.2018.00474"},{"key":"14_CR20","doi-asserted-by":"crossref","unstructured":"Shejwalkar, V., Houmansadr, A.: Manipulating the byzantine: optimizing model poisoning attacks and defenses for federated learning. In: Network and Distributed Systems Security (NDSS 2021), pp. 1\u201318 (2021)","DOI":"10.14722\/ndss.2021.24498"},{"issue":"4","key":"14_CR21","doi-asserted-by":"publisher","first-page":"3993","DOI":"10.1109\/TDSC.2025.3542437","volume":"22","author":"P Tang","year":"2025","unstructured":"Tang, P., Zhu, X., Qiu, W., Huang, Z., Mu, Z., Li, S.: Flad: byzantine-robust federated learning based on gradient feature anomaly detection. IEEE Trans. Dependable Secure Comput. 22(4), 3993\u20134009 (2025)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"14_CR22","unstructured":"Xiao, H., Rasul, K., Vollgraf, R.: Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms. arXiv preprint. https:\/\/arxiv.org\/abs\/1708.07747 (2017)"},{"key":"14_CR23","unstructured":"Xie, C., Koyejo, O., Gupta, I.: Fall of empires: breaking byzantine-tolerant SGD by inner product manipulation. In: Uncertainty in Artificial Intelligence, pp. 261\u2013270. PMLR (2020)"},{"key":"14_CR24","doi-asserted-by":"crossref","unstructured":"Xu, J., Zhang, Z., Hu, R.: Achieving byzantine-resilient federated learning via layer-adaptive sparsified model aggregation. In: 2025 IEEE\/CVF Winter Conference on Applications of Computer Vision (WACV), pp. 1508\u20131517. IEEE (2025)","DOI":"10.1109\/WACV61041.2025.00154"},{"key":"14_CR25","doi-asserted-by":"crossref","unstructured":"Xu, J., Huang, S.L., Song, L., Lan, T.: Byzantine-robust federated learning through collaborative malicious gradient filtering. In: IEEE 42nd International Conference on Distributed Computing Systems (ICDCS 2022), pp. 1223\u20131235. IEEE (2022)","DOI":"10.1109\/ICDCS54860.2022.00120"},{"key":"14_CR26","doi-asserted-by":"publisher","first-page":"1287","DOI":"10.1109\/TIFS.2025.3650413","volume":"21","author":"H Zhang","year":"2026","unstructured":"Zhang, H., He, X., Wu, J., Wang, Q.: Building trust beyond update divergence: dual-refined aggregation for byzantine-robust federated learning. IEEE Trans. Inf. Forensics Secur. 21, 1287\u20131299 (2026)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"14_CR27","unstructured":"Zhang, H., Liu, Y., He, X., Wu, J., Cong, T., Huang, X.: Sok: benchmarking poisoning attacks and defenses in federated learning. https:\/\/arxiv.org\/abs\/2502.03801 (2025)"},{"key":"14_CR28","doi-asserted-by":"crossref","unstructured":"Zhang, H., Wu, J., Pan, Q.: Byzantine-resilient differentially private federated learning: a dual-phase group-wise aggregation approach. In: Wireless Artificial Intelligent Computing Systems and Applications, pp. 194\u2013204 (2025)","DOI":"10.1007\/978-981-96-8731-2_19"},{"key":"14_CR29","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Cao, X., Jia, J., Gong, N.Z.: Fldetector: defending federated learning against model poisoning attacks via detecting malicious clients. In: Proceedings of the 28th ACM SIGKDD Conference on Knowledge Discovery and Data Mining, pp. 2545\u20132555 (2022)","DOI":"10.1145\/3534678.3539231"}],"container-title":["Lecture Notes in Computer Science","Advanced Intelligent Computing Technology and Applications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-92-3394-6_14","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T22:22:17Z","timestamp":1784326937000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-92-3394-6_14"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,7,18]]},"ISBN":["9789819233939","9789819233946"],"references-count":29,"URL":"https:\/\/doi.org\/10.1007\/978-981-92-3394-6_14","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,7,18]]},"assertion":[{"value":"18 July 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICIC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Intelligent Computing","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Toronto","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Canada","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 July 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"26 July 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icic2026a","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.ic-icc.cn\/2026\/index.htm","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}