{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,17]],"date-time":"2025-11-17T22:12:01Z","timestamp":1763417521869,"version":"3.45.0"},"publisher-location":"Singapore","reference-count":28,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819530519","type":"print"},{"value":"9789819530526","type":"electronic"}],"license":[{"start":{"date-parts":[[2025,11,18]],"date-time":"2025-11-18T00:00:00Z","timestamp":1763424000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,11,18]],"date-time":"2025-11-18T00:00:00Z","timestamp":1763424000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-95-3052-6_28","type":"book-chapter","created":{"date-parts":[[2025,11,17]],"date-time":"2025-11-17T22:07:21Z","timestamp":1763417241000},"page":"364-379","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["BackdoorHunter: Poisoned Training Data Removal via\u00a0Contrastive Responses Under Pruned Models"],"prefix":"10.1007","author":[{"given":"Rixi","family":"Liang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuai","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mingxu","family":"Zhu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chi","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Minfeng","family":"Qi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,11,18]]},"reference":[{"key":"28_CR1","doi-asserted-by":"crossref","unstructured":"Alam, M., Lamri, H., Maniatakos, M.: ReVeil: unconstrained concealed backdoor attack on deep neural networks using machine unlearning. arXiv preprint arXiv:2502.11687 (2025)","DOI":"10.1109\/DAC63849.2025.11133199"},{"key":"28_CR2","unstructured":"Chen, B., et al.: Detecting backdoor attacks on deep neural networks by activation clustering. arXiv preprint arXiv:1811.03728 (2018)"},{"key":"28_CR3","doi-asserted-by":"crossref","unstructured":"Chou, E., Tramer, F., Pellegrino, G.: SentiNet: detecting localized universal attack against deep learning systems. In: IEEE Security and Privacy Workshops (SPW), pp. 1\u201310 (2020)","DOI":"10.1109\/SPW50608.2020.00025"},{"key":"28_CR4","doi-asserted-by":"crossref","unstructured":"Gao, Y., Xu, C., Wang, D., Chen, S., Ranasinghe, D., Nepal, S.: STRIP: a defence against trojan attacks on deep neural networks. In: Proceedings of the 35th Annual Computer Security Applications Conference, pp. 113\u2013125 (2019)","DOI":"10.1145\/3359789.3359790"},{"key":"28_CR5","unstructured":"Hayase, J., Kong, W., Somani, R., Oh, S.: SPECTRE: defending against backdoor attacks using robust statistics. In: Proceedings of the 38th International Conference on Machine Learning, vol.\u00a0139, pp. 4129\u20134139. PMLR (2021). https:\/\/proceedings.mlr.press\/v139\/hayase21a.html"},{"key":"28_CR6","doi-asserted-by":"crossref","unstructured":"Hu, B., Chang, C.H.: Diffense: defense against backdoor attacks on deep neural networks with latent diffusion. IEEE J. Emerg. Sel. Top. Circuit Syst. (2024)","DOI":"10.1109\/JETCAS.2024.3469377"},{"key":"28_CR7","unstructured":"Huang, K., Li, Y., Wu, B., Qin, Z., Ren, K.: Backdoor defense via decoupling the training process. arXiv preprint arXiv:2202.03423 (2022)"},{"key":"28_CR8","doi-asserted-by":"crossref","unstructured":"Jiang, Y., et al.: BrinstFlip: a universal tool for attacking DNN-based power line fault detection models. In: 2024 IEEE\/CIC International Conference on Communications in China (ICCC), pp. 1650\u20131655. IEEE (2024)","DOI":"10.1109\/ICCC62479.2024.10681810"},{"issue":"1","key":"28_CR9","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1186\/s13635-024-00180-5","volume":"2024","author":"K Kallas","year":"2024","unstructured":"Kallas, K., Le Roux, Q., Hamidouche, W., Furon, T.: Strategic safeguarding: a game theoretic approach for analyzing attacker-defender behavior in DNN backdoors. EURASIP J. Inf. Secur. 2024(1), 32 (2024)","journal-title":"EURASIP J. Inf. Secur."},{"key":"28_CR10","doi-asserted-by":"crossref","unstructured":"Le\u00a0Roux, Q., Bourbao, E., Teglia, Y., Kallas, K.: A comprehensive survey on backdoor attacks and their defenses in face recognition systems. IEEE Access (2024)","DOI":"10.1109\/ACCESS.2024.3382584"},{"key":"28_CR11","doi-asserted-by":"crossref","unstructured":"Le\u00a0Roux, Q., Kallas, K., Furon, T.: A double-edged sword: the power of two in defending against DNN backdoor attacks. In: 2024 32nd European Signal Processing Conference (EUSIPCO), pp. 2007\u20132011. IEEE (2024)","DOI":"10.23919\/EUSIPCO63174.2024.10715340"},{"key":"28_CR12","doi-asserted-by":"crossref","unstructured":"Le\u00a0Roux, Q., Kallas, K., Furon, T.: Restore: exploring a black-box defense against DNN backdoors using rare event simulation. In: 2024 IEEE Conference on Secure and Trustworthy Machine Learning (SaTML), pp. 286\u2013308. IEEE (2024)","DOI":"10.1109\/SaTML59370.2024.00021"},{"key":"28_CR13","unstructured":"Li, Y., Lyu, X., Koren, N., Lyu, L., Li, B., Ma, X.: Anti-backdoor learning: training clean models on poisoned data. In: Advances in Neural Information Processing Systems, vol.\u00a034, pp. 14946\u201314958 (2021)"},{"key":"28_CR14","unstructured":"Li, Y., Lyu, X., Koren, N., Lyu, L., Li, B., Ma, X.: Neural attention distillation: erasing backdoor triggers from deep neural networks. arXiv preprint arXiv:2101.05930 (2021)"},{"key":"28_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"273","DOI":"10.1007\/978-3-030-00470-5_13","volume-title":"Research in Attacks, Intrusions, and Defenses","author":"K Liu","year":"2018","unstructured":"Liu, K., Dolan-Gavitt, B., Garg, S.: Fine-pruning: defending against backdooring attacks on deep neural networks. In: Bailey, M., Holz, T., Stamatogiannakis, M., Ioannidis, S. (eds.) RAID 2018. LNCS, vol. 11050, pp. 273\u2013294. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-030-00470-5_13"},{"key":"28_CR16","doi-asserted-by":"publisher","first-page":"29004","DOI":"10.1109\/ACCESS.2024.3355816","volume":"12","author":"O Mengara","year":"2024","unstructured":"Mengara, O., Avila, A., Falk, T.H.: Backdoor attacks to deep neural networks: a survey of the literature, challenges, and future research directions. IEEE Access 12, 29004\u201329023 (2024)","journal-title":"IEEE Access"},{"key":"28_CR17","unstructured":"Min, R., Qin, Z., Zhang, N.L., Shen, L., Cheng, M.: Uncovering, explaining, and mitigating the superficial safety of backdoor defense. arXiv preprint arXiv:2410.09838 (2024)"},{"key":"28_CR18","unstructured":"Qi, X., Xie, T., Li, Y., Mahloujifar, S., Mittal, P.: Revisiting the assumption of latent separability for backdoor defenses. In: International Conference on Learning Representations (2023)"},{"key":"28_CR19","doi-asserted-by":"crossref","unstructured":"Tan, T.J.L., Shokri, R.: Bypassing backdoor detection algorithms in deep learning. arXiv preprint arXiv:1905.13409 (2019)","DOI":"10.1109\/EuroSP48549.2020.00019"},{"key":"28_CR20","unstructured":"Tang, D., Wang, X., Tang, H., Zhang, K.: Demon in the variant: statistical analysis of DNNs for robust backdoor contamination detection. In: 30th USENIX Security Symposium (USENIX Security 2021), pp. 1541\u20131558 (2021)"},{"key":"28_CR21","doi-asserted-by":"crossref","unstructured":"Tao, G., et al.: Model orthogonalization: class distance hardening in neural networks for better security. In: 2022 IEEE Symposium on Security and Privacy (SP), pp. 1372\u20131389. IEEE (2022)","DOI":"10.1109\/SP46214.2022.9833688"},{"key":"28_CR22","unstructured":"Tran, B., Li, J., Madry, A.: Spectral signatures in backdoor attacks. In: Advances in Neural Information Processing Systems, pp. 8000\u20138010 (2018)"},{"key":"28_CR23","doi-asserted-by":"crossref","unstructured":"Wang, B., et al.: Neural cleanse: identifying and mitigating backdoor attacks in neural networks. In: 2019 IEEE Symposium on Security and Privacy (SP), pp. 707\u2013723. IEEE (2019)","DOI":"10.1109\/SP.2019.00031"},{"key":"28_CR24","unstructured":"Wang, Z., Ding, H., Zhai, J., Ma, S.: Training with more confidence: mitigating injected and natural backdoors during training. In: Advances in Neural Information Processing Systems, vol.\u00a035, pp. 36396\u201336410 (2022)"},{"key":"28_CR25","unstructured":"Wu, D., Wang, Y., Yu, S., Liu, X.: Adversarial neuron pruning purifies backdoored deep models. In: Advances in Neural Information Processing Systems, vol.\u00a034, pp. 16913\u201316925 (2021)"},{"issue":"4","key":"28_CR26","first-page":"1","volume":"57","author":"S Zhang","year":"2024","unstructured":"Zhang, S., Pan, Y., Liu, Q., Yan, Z., Choo, K.K.R., Wang, G.: Backdoor attacks and defenses targeting multi-domain AI models: a comprehensive review. ACM Comput. Surv. 57(4), 1\u201335 (2024)","journal-title":"ACM Comput. Surv."},{"key":"28_CR27","doi-asserted-by":"crossref","unstructured":"Zhao, T., Wang, X., Zhang, J., Mao, S.: Explanation-guided backdoor attacks on model-agnostic RF fingerprinting. In: IEEE INFOCOM 2024-IEEE Conference on Computer Communications, pp. 221\u2013230. IEEE (2024)","DOI":"10.1109\/INFOCOM52122.2024.10621289"},{"key":"28_CR28","doi-asserted-by":"crossref","unstructured":"Zhou, S., Liu, C., Ye, D., Zhu, T., Zhou, W., Yu, P.S.: Adversarial attacks and defenses in deep learning: from a perspective of cybersecurity. ACM Comput. Surv. 55(8) (2022)","DOI":"10.1145\/3547330"}],"container-title":["Lecture Notes in Computer Science","Knowledge Science, Engineering and Management"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-95-3052-6_28","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,11,17]],"date-time":"2025-11-17T22:07:28Z","timestamp":1763417248000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-95-3052-6_28"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,18]]},"ISBN":["9789819530519","9789819530526"],"references-count":28,"URL":"https:\/\/doi.org\/10.1007\/978-981-95-3052-6_28","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,11,18]]},"assertion":[{"value":"18 November 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"KSEM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Knowledge Science, Engineering and Management","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Macao","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 August 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"7 August 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ksem2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/ksem2025.scimeeting.cn\/en\/web\/index\/27434","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}