{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T20:33:16Z","timestamp":1770409996086,"version":"3.49.0"},"publisher-location":"Singapore","reference-count":30,"publisher":"Springer Nature Singapore","isbn-type":[{"value":"9789819569625","type":"print"},{"value":"9789819569632","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-95-6963-2_3","type":"book-chapter","created":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T10:08:16Z","timestamp":1770372496000},"page":"31-44","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["A Backdoor Attack via\u00a0Fixed Patch Triggers in\u00a0Frequency Domain"],"prefix":"10.1007","author":[{"given":"Song","family":"Xue","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiayu","family":"Du","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wei","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qiulong","family":"Yang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,2,7]]},"reference":[{"key":"3_CR1","unstructured":"BackdoorBench, GitHub. https:\/\/github.com\/SCLBD\/BackdoorBench"},{"key":"3_CR2","unstructured":"ISSBA, GitHub. https:\/\/github.com\/yuezunli\/ISSBA"},{"key":"3_CR3","unstructured":"Nguyen, T.A., Tran, A.T.: Wanet-imperceptible warping-based backdoor attack. In: International Conference on Learning Representations(ICLR) (2021)"},{"key":"3_CR4","doi-asserted-by":"crossref","unstructured":"Doan, K., Lao, Y., Zhao, W., Li, P.: Lira: learnable, imperceptible and robust backdoor attacks. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision (ICCV), pp. 11966\u201311976 (2021)","DOI":"10.1109\/ICCV48922.2021.01175"},{"key":"3_CR5","doi-asserted-by":"crossref","unstructured":"Li, Y., Li, Y., Wu, B., Li, L., He, R., Lyu, S.: Invisible backdoor attack with sample-specific triggers. In: Proceedings of the IEEE\/CVF International Conference on Computer Vision (ICCV), pp. 16463\u201316472 (2021)","DOI":"10.1109\/ICCV48922.2021.01615"},{"key":"3_CR6","doi-asserted-by":"crossref","unstructured":"Gao, Y., Li, Y., Gong, X., Li, Z., Xia, S., Wang, Q.: Backdoor attack with sparse and invisible trigger. IEEE Trans. Inf. Forensics Secur. 19 (2024)","DOI":"10.1109\/TIFS.2024.3411936"},{"key":"3_CR7","doi-asserted-by":"crossref","unstructured":"Wang, B., et al.: Neural cleanse: identifying and mitigating backdoor attacks in neural networks. In: 2019 IEEE Symposium on Security and Privacy (SP), pp. 707\u2013723. IEEE (2019)","DOI":"10.1109\/SP.2019.00031"},{"key":"3_CR8","doi-asserted-by":"crossref","unstructured":"Gao, Y., Xu, C., Wang, D., Chen, S., Ranasinghe, D.C., Nepal, S.: Strip: a defence against tro jan attacks on deep neural networks. In: Proceedings of the 35th Annual Computer Security Applications Conference (ACSAC), pp. 113\u2013125 (2019)","DOI":"10.1145\/3359789.3359790"},{"key":"3_CR9","doi-asserted-by":"crossref","unstructured":"Chou, E., Tram\u00e8, F., Pellegrino, G.: SentiNet: detecting localized universal attacks against deep learning systems. In Proceedings of IEEE Security on Privacy Workshops (SPW), pp. 48\u201354 (2020)","DOI":"10.1109\/SPW50608.2020.00025"},{"key":"3_CR10","unstructured":"Zhu, M., Wei, S., Zha, H., Wu, B.: Neural polarizer: a lightweight and effective backdoor defense via purifying poisoned features. In: 37th Conference on Neural Information Processing Systems (2023)"},{"key":"3_CR11","doi-asserted-by":"publisher","first-page":"47230","DOI":"10.1109\/ACCESS.2019.2909068","volume":"7","author":"T Gu","year":"2019","unstructured":"Gu, T., Liu, K., Brendan, D.G., Siddharth, G.: Badnets: evaluating backdooring attacks on deep neural networks. IEEE Access 7, 47230\u201347244 (2019)","journal-title":"IEEE Access"},{"key":"3_CR12","doi-asserted-by":"crossref","unstructured":"Wenger, E., Passanati, J., Bhagoji, A.N., Yao, Y., Zheng, H., Zhao, B.: Backdoor attacks against deep learning systems in the physical world. In: the 2021 Conference on Computer Vision and Pattern Recognition(CVPR), pp. 6202\u20136211(2021)","DOI":"10.1109\/CVPR46437.2021.00614"},{"key":"3_CR13","unstructured":"Chen, X., Liu, C., Li, B., Lu, K., Song, D.: Targeted backdoor attacks on deep learning systems using data poisoning. arXiv preprint arXiv:1712.05526 (2017)"},{"key":"3_CR14","unstructured":"Erwin, Q., Konrad R.: Backdooring and poisoning neural networks with image-scaling attacks. In: IEEE S &P Workshop (2020)"},{"key":"3_CR15","unstructured":"Aniruddha S., Akshayvarun S., Hamed, P.: Hidden trigger backdoor attacks. In: AAAI (2020)"},{"key":"3_CR16","doi-asserted-by":"crossref","unstructured":"Zhao, S., Ma, X., Zheng, X., James B., Chen, J., Jiang, Y.: Clean-label backdoor attacks on video recognition models. In: CVPR (2020)","DOI":"10.1109\/CVPR42600.2020.01445"},{"key":"3_CR17","doi-asserted-by":"crossref","unstructured":"Wang, T., Yao, Y., Xu, F., An, S., Tong, H., Wang, T.: An invisible black-box backdoor attack through frequency domain. In: Computer Vision \u2013 ECCV (2022)","DOI":"10.1007\/978-3-031-19778-9_23"},{"key":"3_CR18","unstructured":"Qiao, X., Yang, Y., Li, H.: Defending neural backdoors via generative distribution modeling. In: NeurIPS (2019)"},{"key":"3_CR19","doi-asserted-by":"crossref","unstructured":"Guo, W., Wang, L., Xu, Y., Xing, X., Du, M., Song, D.: Towards inspecting and eliminating trojan backdoors in deep neural networks. In: ICDM. (2020)","DOI":"10.1109\/ICDM50108.2020.00025"},{"key":"3_CR20","doi-asserted-by":"crossref","unstructured":"Wang, R., Zhang, G., Liu, S., Chen, P.Y., Xiong, J., Wang, M.: Practical detection of trojan neural networks: data-limited and data-free cases. In: ECCV (2020)","DOI":"10.1007\/978-3-030-58592-1_14"},{"key":"3_CR21","doi-asserted-by":"crossref","unstructured":"Selvaraju, R.R., Cogswell, M., Das, A., Vedantam, R., Parikh, D., Batra, D.: Grad-cam: visual explanations from deep networks via gradient-based localization. In: ICCV (2017)","DOI":"10.1109\/ICCV.2017.74"},{"key":"3_CR22","unstructured":"Huang, X., Alzantot, M., Srivastava, M.: Neuroninspect: detecting backdoors in neural networks via output explanations. arXiv preprint arXiv:1911.07399. (2019)"},{"key":"3_CR23","doi-asserted-by":"publisher","first-page":"317","DOI":"10.1016\/j.patcog.2018.07.023","volume":"84","author":"B Biggio","year":"2018","unstructured":"Biggio, B., Roli, F.: Wild patterns: ten years after the rise of adversarial machine learning. Pattern Recogn. 84, 317\u2013331 (2018)","journal-title":"Pattern Recogn."},{"key":"3_CR24","doi-asserted-by":"crossref","unstructured":"Barni, M., Kallas, K., Tondi, B.: A new backdoor attack in CNNS by training set corruption without label poisoning. In: Proceedings of IEEE International Conference on Image Processing (ICIP), pp. 101\u2013105 (2019)","DOI":"10.1109\/ICIP.2019.8802997"},{"key":"3_CR25","doi-asserted-by":"crossref","unstructured":"Duan, R., Chen, Y., Niu, D., Yang, Y., Qin, A.K., He, Y.: AdvDrop: adversarial attack to DNNs by dropping information. In: 2021 IEEE\/CVF International Conference on Computer Vision (ICCV) (2021)","DOI":"10.1109\/ICCV48922.2021.00741"},{"key":"3_CR26","doi-asserted-by":"crossref","unstructured":"Long, Y., et al.: Frequency domain model augmentation for adversarial attack. In: European Conference on Computer Vision, pp. 549\u2013566. Springer, Heidelberg (2022)","DOI":"10.1007\/978-3-031-19772-7_32"},{"key":"3_CR27","unstructured":"Salem, A., Wen, R., Backes, M., Ma, S., Zhang, Y.: Dynamic backdoor attacks against machine learning models. arXiv preprint arXiv:2003.03675 (2020)"},{"key":"3_CR28","doi-asserted-by":"crossref","unstructured":"He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: Proceedings of IEEE Conference on Computer Vision and Pattern Recognition (CVPR), pp. 770\u2013778 (2016)","DOI":"10.1109\/CVPR.2016.90"},{"key":"3_CR29","unstructured":"Simonyan, K., Zisserman, A.: Very deep convolutional networks for large-scale image recognition. arXiv:1409.1556. (2014)"},{"key":"3_CR30","doi-asserted-by":"crossref","unstructured":"Wang, J., Chan, K., Chen, C.L.: Exploring CLIP for assessing the look and feel of images. In: Proceedings of the AAAI Conference on Artificial Intelligence, vol. 37, pp. 2555\u20132563 (2023)","DOI":"10.1609\/aaai.v37i2.25353"}],"container-title":["Lecture Notes in Computer Science","MultiMedia Modeling"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-95-6963-2_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T10:08:21Z","timestamp":1770372501000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-95-6963-2_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9789819569625","9789819569632"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-981-95-6963-2_3","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"7 February 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"MMM","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Multimedia Modeling","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Prague","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Czech Republic","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 January 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31 January 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"32","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"mmm2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/mmm2026.cz\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}