{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,3]],"date-time":"2026-02-03T02:21:55Z","timestamp":1770085315219,"version":"3.49.0"},"reference-count":44,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2026,2,1]],"date-time":"2026-02-01T00:00:00Z","timestamp":1769904000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2026,2,2]],"date-time":"2026-02-02T00:00:00Z","timestamp":1769990400000},"content-version":"vor","delay-in-days":1,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Mach. Intell. Res."],"published-print":{"date-parts":[[2026,2]]},"abstract":"<jats:title>Abstract<\/jats:title>\n                  <jats:p>\n                    When artificial intelligence is becoming popular, the concern and the need for regulation are growing, besides other requirements of the data privacy. In this context, federated learning is proposed as a solution to data privacy concerns derived from different source data scenarios due to its distributed learning. The defense mechanisms proposed in the literature focus only on defending against adversarial attacks and maintaining performance, ignoring other important qualities such as explainability and fairness to poor quality clients, dynamism in terms of attack configuration and generality in terms of being resilient against different kinds of attacks. In this work, we propose RAB\n                    <jats:sup>2<\/jats:sup>\n                    -DEF, a resilient defense against byzantine and backdoor attacks which is dynamic, explainable and fair to poor clients via local linear explanations. We test the performance of RAB\n                    <jats:sup>2<\/jats:sup>\n                    -DEF on image datasets and defending against the byzantine and backdoor attacks considering the state-of-the-art defenses, and the result reveals that RAB\n                    <jats:sup>2<\/jats:sup>\n                    -DEF is a proper defense while also enhancing the other qualities toward trustworthy artificial intelligence.\n                  <\/jats:p>","DOI":"10.1007\/s11633-025-1557-1","type":"journal-article","created":{"date-parts":[[2026,2,2]],"date-time":"2026-02-02T14:11:51Z","timestamp":1770041511000},"page":"133-146","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["RAB2-DEF: Dynamic and Explainable Defense Against Adversarial Attacks in Federated Learning to Fair Poor Clients"],"prefix":"10.1007","volume":"23","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7172-9059","authenticated-orcid":false,"given":"Nuria","family":"Rodr\u00edguez-Barroso","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7674-2137","authenticated-orcid":false,"given":"M. Victoria","family":"Luz\u00f3n","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7283-312X","authenticated-orcid":false,"given":"Francisco","family":"Herrera","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,2,2]]},"reference":[{"issue":"2","key":"1557_CR1","doi-asserted-by":"publisher","first-page":"447","DOI":"10.1007\/s12525-020-00441-4","volume":"31","author":"S Thiebes","year":"2021","unstructured":"S. Thiebes, S. Lins, A. Sunyaev. Trustworthy artificial intelligence. Electronic Markets, vol. 31, no. 2, pp. 447\u2013464, 2021. DOI: https:\/\/doi.org\/10.1007\/s12525-020-00441-4.","journal-title":"Electronic Markets"},{"key":"1557_CR2","doi-asserted-by":"publisher","unstructured":"N. D\u00edaz-Rodr\u00edguez, J. Del Ser, M. Coeckelbergh, M. L. de Prado, E. Herrera-Viedma, F. Herrera. Connecting the dots in trustworthy artificial intelligence: From AI principles, ethics, and key requirements to responsible AI systems and regulation. Information Fusion, vol. 99, Article number 101896, 2023. DOI: https:\/\/doi.org\/10.1016\/j.inffus.2023.101896.","DOI":"10.1016\/j.inffus.2023.101896"},{"issue":"6","key":"1557_CR3","doi-asserted-by":"publisher","first-page":"703","DOI":"10.2501\/IJMR-2017-050","volume":"59","author":"M Goddard","year":"2017","unstructured":"M. Goddard. The EU general data protection regulation (GDPR): European regulation that has a global impact. International Journal of Market Research, vol. 59, no. 6, pp. 703\u2013705, 2017. DOI: https:\/\/doi.org\/10.2501\/IJMR-2017-050.","journal-title":"International Journal of Market Research"},{"key":"1557_CR4","unstructured":"United Nations. Interim report of the United Nations advisory body on artificial intelligence, [Online], Available: https:\/\/www.un.org\/sites\/un2.un.org\/files\/un_ai_advisory_body_governing_ai_for_humanity_interim_report.pdf, 2024-09-26."},{"key":"1557_CR5","doi-asserted-by":"crossref","unstructured":"P. Kairouz, H. B. McMahan, B. Avent, A. Bellet, M. Bennis, A. N. Bhagoji, K. Bonawitz, Z. Charles, G. Cormode, R. Cummings, R. G. L. D\u2019Oliveira, H. Eichner, S. El Rouayheb, D. Evans, J. Gardner, Z. Garrett, A. Gasc\u00e1n, B. Ghazi, P. B. Gibbons, M. Gruteser, Z. Harchaoui, C. He, L. He, Z. Huo, B. Hutchinson, J. Hsu, M. Jaggi, T. Javidi, G. Joshi, M. Khodak, J. Konecn\u00fd, A. Korolova, F. Koushanfar, S. Koyejo, T. Lepoint, Y. Liu, P. Mittal, M. Mohri, R. Nock, A. \u00d6zg\u00fcr, R. Pagh, H. Qi, D. Ramage, R. Raskar, M. Raykova, D. Song, W. Song, S. U. Stich, Z. Sun, A. T. Suresh, F. Tram\u0155, P. Vepakomma, J. Wang, L. Xiong, Z. Xu, Q. Yang, F. X. Yu, H. Yu, S. Zhao. Advances and open problems in federated learning. Foundations and Trends in Machine Learning, vol. 14, no. 1\u20132, 2021.","DOI":"10.1561\/9781680837896"},{"key":"1557_CR6","doi-asserted-by":"publisher","first-page":"183","DOI":"10.1016\/j.future.2024.04.017","volume":"158","author":"E S Erdol","year":"2024","unstructured":"E. S. Erdol, B. Ustubioglu, H. Erdol, G. Ulutas. Low dimensional secure federated learning framework against poisoning attacks. Future Generation Computer Systems, vol. 158, pp. 183\u2013199, 2024. DOI: https:\/\/doi.org\/10.1016\/j.future.2024.04.017.","journal-title":"Future Generation Computer Systems"},{"key":"1557_CR7","doi-asserted-by":"publisher","first-page":"148","DOI":"10.1016\/j.inffus.2022.09.011","volume":"90","author":"N Rodr\u00edguez-Barroso","year":"2023","unstructured":"N. Rodr\u00edguez-Barroso, D. Jim\u00e9nez-L\u00f3pez, M. V. Luz\u00f3n, F. Herrera, E. Mart\u00ednez-C\u00e1mara. Survey on federated learning threats: Concepts, taxonomy on attacks and defences, experimental study and challenges. Information Fusion, vol. 90, pp. 148\u2013173, 2023. DOI: https:\/\/doi.org\/10.1016\/j.inffus.2022.09.011.","journal-title":"Information Fusion"},{"key":"1557_CR8","doi-asserted-by":"publisher","first-page":"784","DOI":"10.1016\/j.future.2024.06.044","volume":"160","author":"F Colosimo","year":"2024","unstructured":"F. Colosimo, F. De Rango. Dynamic gradient filtering in federated learning with byzantine failure robustness. Future Generation Computer Systems, vol. 160, pp. 784\u2013797, 2024. DOI: https:\/\/doi.org\/10.1016\/j.future.2024.06.044.","journal-title":"Future Generation Computer Systems"},{"key":"1557_CR9","doi-asserted-by":"publisher","first-page":"711","DOI":"10.1016\/j.future.2024.06.030","volume":"160","author":"Y Luo","year":"2024","unstructured":"Y. Luo, T. Zhu, Z. Liu, T. Mao, Z. Chen, H. Pi, Y. Lin. GANFAT: Robust federated adversarial learning with label distribution skew. Future Generation Computer Systems, vol. 160, pp. 711\u2013723, 2024. DOI: https:\/\/doi.org\/10.1016\/j.future.2024.06.030.","journal-title":"Future Generation Computer Systems"},{"issue":"7","key":"1557_CR10","doi-asserted-by":"publisher","first-page":"8726","DOI":"10.1109\/TNNLS.2022.3216981","volume":"35","author":"L Lyu","year":"2024","unstructured":"L. Lyu, H. Yu, X. Ma, C. Chen, L. Sun, J. Zhao, Q. Yang, P. S. Yu. Privacy and robustness in federated learning: Attacks and defenses. IEEE Transactions on Neural Networks and Learning Systems, vol. 35, no. 7, pp. 8726\u20138746, 2024. DOI: https:\/\/doi.org\/10.1109\/TNNLS.2022.3216981.","journal-title":"IEEE Transactions on Neural Networks and Learning Systems"},{"key":"1557_CR11","doi-asserted-by":"publisher","first-page":"185","DOI":"10.1016\/j.future.2024.05.049","volume":"160","author":"Y Jiang","year":"2024","unstructured":"Y. Jiang, D. Wang, B. Song, S. Luo. HDHRFL: A hierarchical robust federated learning framework for dual-heterogeneous and noisy clients. Future Generation Computer Systems, vol. 160, pp. 185\u2013196, 2024. DOI: https:\/\/doi.org\/10.1016\/j.future.2024.05.049.","journal-title":"Future Generation Computer Systems"},{"key":"1557_CR12","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1016\/j.future.2022.03.003","volume":"133","author":"N Rodr\u00edguez-Barroso","year":"2022","unstructured":"N. Rodr\u00edguez-Barroso, E. Martr\u00ednez-C\u00e1mara, M. V. Luz\u00f3n, F. Herrera. Dynamic defense against byzantine poisoning attacks in federated learning. Future Generation Computer Systems, vol. 133, pp. 1\u20139, 2022. DOI: https:\/\/doi.org\/10.1016\/j.future.2022.03.003.","journal-title":"Future Generation Computer Systems"},{"key":"1557_CR13","doi-asserted-by":"publisher","unstructured":"I. Sevillano-Garc\u00eda, J. Luengo, F. Herrera. REVEL framework to measure local linear explanations for blackbox models: Deep learning image classification case study. International Journal of Intelligent Systems, vol. 2023, no. 1, Article number 8068569, 2023. DOI: https:\/\/doi.org\/10.1155\/2023\/8068569.","DOI":"10.1155\/2023\/8068569"},{"key":"1557_CR14","first-page":"3996","volume-title":"Proceedings of the 41st International Conference on Machine Learning","author":"P Biecek","year":"2024","unstructured":"P. Biecek, W. Samek. Position: Explain to question not to justify. In Proceedings of the 41st International Conference on Machine Learning, Vienna, Austria, pp. 3996\u20134006, 2024."},{"key":"1557_CR15","doi-asserted-by":"publisher","first-page":"10062","DOI":"10.1109\/CVPR52688.2022.00983","volume-title":"Proceedings of IEEE\/CVF Conference on Computer Vision and Pattern Recognition","author":"X Fang","year":"2022","unstructured":"X. Fang, M. Ye. Robust federated learning with noisy and heterogeneous clients. In Proceedings of IEEE\/CVF Conference on Computer Vision and Pattern Recognition, New Orleans, USA, pp. 10062\u201310071, 2022. DOI: https:\/\/doi.org\/10.1109\/CVPR52688.2022.00983."},{"issue":"12","key":"1557_CR16","doi-asserted-by":"publisher","first-page":"9587","DOI":"10.1109\/TNNLS.2022.3160699","volume":"34","author":"A Z Tan","year":"2023","unstructured":"A. Z. Tan, H. Yu, L. Cui, Q. Yang. Towards personalized federated learning. IEEE Transactions on Neural Networks and Learning Systems, vol. 34, no. 12, pp. 9587\u20139603, 2023. DOI: https:\/\/doi.org\/10.1109\/TNNLS.2022.3160699.","journal-title":"IEEE Transactions on Neural Networks and Learning Systems"},{"issue":"4","key":"1557_CR17","doi-asserted-by":"publisher","first-page":"824","DOI":"10.1109\/JAS.2024.124215","volume":"11","author":"M V Luz\u00f3n","year":"2024","unstructured":"M. V. Luz\u00f3n, N. Rodr\u00edguez-Barroso, A. Argente-Garrido, D. Jim\u00e9nez-L\u00f3pez, J. M. Moyano, J. Del Ser, W. Ding, F. Herrera. A tutorial on federated learning from theory to practice: Foundations, software frameworks, exemplary use cases, and selected trends. IEEE\/CAA Journal of Automatica Sinica, vol. 11, no. 4, pp. 824\u2013850, 2024. DOI: https:\/\/doi.org\/10.1109\/JAS.2024.124215.","journal-title":"IEEE\/CAA Journal of Automatica Sinica"},{"key":"1557_CR18","first-page":"2938","volume-title":"Proceedings of the 23rd International Conference on Artificial Intelligence and Statistics","author":"E Bagdasaryan","year":"2020","unstructured":"E. Bagdasaryan, A. Veit, Y. Hua, D. Estrin, V. Shmatikov. How to backdoor federated learning. In Proceedings of the 23rd International Conference on Artificial Intelligence and Statistics, Palermo, Italy, pp. 2938\u20132948, 2020."},{"issue":"2","key":"1557_CR19","doi-asserted-by":"publisher","first-page":"114","DOI":"10.1109\/MWC.017.2100714","volume":"30","author":"X Gong","year":"2023","unstructured":"X. Gong, Y. Chen, Q. Wang, W. Kong. Backdoor attacks and defenses in federated learning: State-of-the-art, taxonomy, and future directions. IEEE Wireless Communications, vol. 30, no. 2, pp. 114\u2013121, 2023. DOI: https:\/\/doi.org\/10.1109\/MWC.017.2100714.","journal-title":"IEEE Wireless Communications"},{"key":"1557_CR20","volume-title":"Proceedings of the 34th International Conference on Neural Information Processing Systems","author":"H Wang","year":"2020","unstructured":"H. Wang, K. Sreenivasan, S. Rajput, H. Vishwakarma, S. Agarwal, J. Y. Sohn, K. Lee, D. Papailiopoulos. Attack of the tails: Yes, you really can backdoor federated learning. In Proceedings of the 34th International Conference on Neural Information Processing Systems, Vancouver, Canada, Article number 1348, 2020."},{"key":"1557_CR21","doi-asserted-by":"publisher","first-page":"139","DOI":"10.1109\/TrustCom56396.2022.00030","volume-title":"Proceedings of IEEE International Conference on Trust, Security and Privacy in Computing and Communications","author":"J Shi","year":"2022","unstructured":"J. Shi, W. Wan, S. Hu, J. Lu, L. Y. Zhang. Challenges and approaches for mitigating byzantine attacks in federated learning. In Proceedings of IEEE International Conference on Trust, Security and Privacy in Computing and Communications, Wuhan, China, pp. 139\u2013146, 2022. DOI: https:\/\/doi.org\/10.1109\/TrustCom56396.2022.00030."},{"key":"1557_CR22","doi-asserted-by":"publisher","unstructured":"Z. Tian, L. Cui, J. Liang, S. Yu. A comprehensive survey on poisoning attacks and countermeasures in machine learning. ACM Computing Surveys, vol. 55, no. 8, Article number 166, 2022. DOI: https:\/\/doi.org\/10.1145\/3551636.","DOI":"10.1145\/3551636"},{"key":"1557_CR23","doi-asserted-by":"publisher","unstructured":"F. A. Yerlikaya, \u015e. Bahtiyar. Data poisoning attacks against machine learning algorithms. Expert Systems with Applications, vol. 208, Article number 118101, 2022. DOI: https:\/\/doi.org\/10.1016\/j.eswa.2022.118101.","DOI":"10.1016\/j.eswa.2022.118101"},{"key":"1557_CR24","doi-asserted-by":"publisher","first-page":"490","DOI":"10.1007\/978-3-031-22677-9_26","volume-title":"Proceedings of the 22nd International Conference on Algorithms and Architectures for Parallel Processing","author":"Q Li","year":"2022","unstructured":"Q. Li, X. Wang, F. Wang, C. Wang. A label flipping attack on machine learning model and its defense mechanism. In Proceedings of the 22nd International Conference on Algorithms and Architectures for Parallel Processing, Copenhagen, Denmark, pp. 490\u2013506, 2022. DOI: https:\/\/doi.org\/10.1007\/978-3-031-22677-9_26."},{"key":"1557_CR25","doi-asserted-by":"publisher","unstructured":"H. Chen, F. Koushanfar. Tutorial: Toward robust deep learning against poisoning attacks. ACM Transactions on Embedded Computing Systems, vol. 22, no. 3, Article number 42, 2023. DOI: https:\/\/doi.org\/10.1145\/3574159.","DOI":"10.1145\/3574159"},{"key":"1557_CR26","first-page":"118","volume-title":"Proceedings of the 31st International Conference on Neural Information Processing Systems","author":"P Blanchard","year":"2017","unstructured":"P. Blanchard, E. M. El Mhamdi, R. Guerraoui, J. Stainer. Machine learning with adversaries: Byzantine tolerant gradient descent. In Proceedings of the 31st International Conference on Neural Information Processing Systems, Long Beach, USA, pp. 118\u2013128, 2017."},{"key":"1557_CR27","first-page":"3521","volume-title":"Proceedings of the 35th International Conference on Machine Learning","author":"E M El Mhamdi","year":"2018","unstructured":"E. M. El Mhamdi, R. Guerraoui, S. Rouault. The hidden vulnerability of distributed learning in Byzantium. In Proceedings of the 35th International Conference on Machine Learning, Stockholm, Sweden, pp. 3521\u20133530, 2018."},{"key":"1557_CR28","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP49357.2023.10096606","volume-title":"Proceedings of IEEE International Conference on Acoustics, Speech and Signal Processing","author":"Y Wen","year":"2023","unstructured":"Y. Wen, J. Geiping, M. Goldblum, T. Goldstein. STYX: Adaptive poisoning attacks against byzantine-robust defenses in federated learning. In Proceedings of IEEE International Conference on Acoustics, Speech and Signal Processing, Rhodes Island, Greece, 2023. DOI: https:\/\/doi.org\/10.1109\/ICASSP49357.2023.10096606."},{"key":"1557_CR29","doi-asserted-by":"publisher","unstructured":"M. Ye, X. Fang, B. Du, P. C. Yuen, D. Tao. Heterogeneous federated learning: State-of-the-art and research challenges. ACM Computing Surveys, vol. 56, no. 3, Article number 79, 2023. DOI: https:\/\/doi.org\/10.1145\/3625558.","DOI":"10.1145\/3625558"},{"key":"1557_CR30","doi-asserted-by":"publisher","first-page":"82","DOI":"10.1016\/j.inffus.2019.12.012","volume":"58","author":"A B Arrieta","year":"2020","unstructured":"A. B. Arrieta, N. D\u00edaz-Rodr\u00edguez, J. Del Ser, A. Bennetot, S. Tabik, A. Barbado, S. Garc\u00eda, S. Gil-Lopez, D. Molina, R. Benjamins, R. Chatila, F. Herrera. Explainable artificial intelligence (XAI): Concepts, taxonomies, opportunities and challenges toward responsible AI. Information Fusion, vol. 58, pp. 82\u2013115, 2020. DOI: https:\/\/doi.org\/10.1016\/j.inffus.2019.12.012.","journal-title":"Information Fusion"},{"key":"1557_CR31","first-page":"104","volume-title":"Proceedings of the 3rd Italian Workshop on Explainable Artificial Intelligence Co-Located with the 21th International Conference of the Italian Association for Artificial Intelligence","author":"J L C B\u00e1rcena","year":"2022","unstructured":"J. L. C. B\u00e1rcena, M. Daole, P. Ducange, F. Marcelloni, A. Renda, F. Ruffini, A. Schiavo. Fed-XAI: Federated learning of explainable artificial intelligence models. In Proceedings of the 3rd Italian Workshop on Explainable Artificial Intelligence Co-Located with the 21th International Conference of the Italian Association for Artificial Intelligence, Udine, Italy, pp. 104\u2013117, 2022."},{"key":"1557_CR32","doi-asserted-by":"publisher","first-page":"189","DOI":"10.1007\/978-3-030-63076-8_14","volume-title":"Federated Learning: Privacy and Incentive","author":"L Lyu","year":"2020","unstructured":"L. Lyu, X. Xu, Q. Wang, H. Yu. Collaborative fairness in federated learning. Federated Learning: Privacy and Incentive, Q. Yang, L. Fan, H. Yu, Eds., Cham, Switzerland, Springer, pp. 189\u2013204, 2020. DOI: https:\/\/doi.org\/10.1007\/978-3-030-63076-8_14."},{"key":"1557_CR33","doi-asserted-by":"publisher","first-page":"393","DOI":"10.1145\/3375627.3375840","volume-title":"Proceedings of AAAI\/ACM Conference on AI, Ethics, and Society","author":"H Yu","year":"2020","unstructured":"H. Yu, Z. Liu, Y. Liu, T. Chen, M. Cong, X. Weng, D. Niyato, Q. Yang. A fairness-aware incentive scheme for federated learning. In Proceedings of AAAI\/ACM Conference on AI, Ethics, and Society, New York, USA, pp. 393\u2013399, 2020. DOI: https:\/\/doi.org\/10.1145\/3375627.3375840."},{"key":"1557_CR34","doi-asserted-by":"publisher","first-page":"7494","DOI":"10.1609\/aaai.v37i6.25911","volume-title":"Proceedings of the 37th AAAI Conference on Artificial Intelligence","author":"Y H Ezzeldin","year":"2023","unstructured":"Y. H. Ezzeldin, S. Yan, C. He, E. Ferrara, A. S. Avestimehr. FairFed: Enabling group fairness in federated learning. In Proceedings of the 37th AAAI Conference on Artificial Intelligence, Washington DC, USA, pp. 7494\u20137502, 2023. DOI: https:\/\/doi.org\/10.1609\/aaai.v37i6.25911."},{"issue":"11","key":"1557_CR35","doi-asserted-by":"publisher","first-page":"2278","DOI":"10.1109\/5.726791","volume":"86","author":"Y LeCun","year":"1998","unstructured":"Y. LeCun, L. Bottou, Y. Bengio, P. Haffner. Gradientbased learning applied to document recognition. Proceedings of the IEEE, vol. 86, no. 11, pp. 2278\u20132324, 1998. DOI: https:\/\/doi.org\/10.1109\/5.726791.","journal-title":"Proceedings of the IEEE"},{"key":"1557_CR36","volume-title":"Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms","author":"H Xiao","year":"2017","unstructured":"H. Xiao, K. Rasul, R. Vollgraf. Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms, [Online], Available: https:\/\/arxiv.org\/abs\/1708.07747, 2017."},{"issue":"11","key":"1557_CR37","doi-asserted-by":"publisher","first-page":"1958","DOI":"10.1109\/TPAMI.2008.128","volume":"30","author":"A Torralba","year":"2008","unstructured":"A. Torralba, R. Fergus, W. T. Freeman. 80 million tiny images: A large data set for nonparametric object and scene recognition. IEEE Transactions on Pattern Analysis and Machine Intelligence, vol. 30, no. 11, pp. 1958\u20131970, 2008. DOI: https:\/\/doi.org\/10.1109\/TPAMI.2008.128.","journal-title":"IEEE Transactions on Pattern Analysis and Machine Intelligence"},{"key":"1557_CR38","doi-asserted-by":"publisher","DOI":"10.1145\/3219617.3219655","volume-title":"Proceedings of ACM International Conference on Measurement and Modeling of Computer Systems","author":"Y Chen","year":"2018","unstructured":"Y. Chen, L. Su, J. Xu. Distributed statistical machine learning in adversarial settings: Byzantine gradient descent. In Proceedings of ACM International Conference on Measurement and Modeling of Computer Systems, Irvine, USA, Article number 96, 2018. DOI: https:\/\/doi.org\/10.1145\/3219617.3219655."},{"key":"1557_CR39","first-page":"5650","volume-title":"Proceedings of the 35th International Conference on Machine Learning","author":"D Yin","year":"2018","unstructured":"D. Yin, Y. Chen, R. Kannan, P. Bartlett. Byzantine-robust distributed learning: Towards optimal statistical rates. In Proceedings of the 35th International Conference on Machine Learning, Stockholm, Sweden, pp. 5650\u20135659, 2018."},{"key":"1557_CR40","volume-title":"Can you really backdoor federated learning?","author":"Z Sun","year":"2019","unstructured":"Z. Sun, P. Kairouz, A. T. Suresh, H. B. McMahan. Can you really backdoor federated learning? [Online], Available: https:\/\/arxiv.org\/abs\/1911.07963, 2019."},{"key":"1557_CR41","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1","volume-title":"Proceedings of the 33rd International Colloquium on Automata, Languages, and Programming","author":"C Dwork","year":"2006","unstructured":"C. Dwork. Differential privacy. In Proceedings of the 33rd International Colloquium on Automata, Languages, and Programming, Venice, Italy, 2006. DOI: https:\/\/doi.org\/10.1007\/11787006_1."},{"key":"1557_CR42","doi-asserted-by":"publisher","first-page":"9268","DOI":"10.1609\/aaai.v35i10.17118","volume-title":"Proceedings of the 35th AAAI Conference on Artificial Intelligence","author":"M S Ozdayi","year":"2021","unstructured":"M. S. Ozdayi, M. Kantarcioglu, Y. R. Gel. Defending against backdoors in federated learning with robust learning rate. In Proceedings of the 35th AAAI Conference on Artificial Intelligence, pp. 9268\u20139276, 2021. DOI: https:\/\/doi.org\/10.1609\/aaai.v35i10.17118."},{"key":"1557_CR43","doi-asserted-by":"publisher","first-page":"480","DOI":"10.1007\/978-3-030-58951-6_24","volume-title":"Proceedings of the 25th European Symposium on Research in Computer Security","author":"V Tolpegin","year":"2020","unstructured":"V. Tolpegin, S. Truex, M. E. Gursoy, L. Liu. Data poisoning attacks against federated learning systems. In Proceedings of the 25th European Symposium on Research in Computer Security, Guildford, UK, pp. 480\u2013501, 2020. DOI: https:\/\/doi.org\/10.1007\/978-3-030-58951-6_24."},{"issue":"3","key":"1557_CR44","doi-asserted-by":"publisher","first-page":"4377","DOI":"10.1109\/JIOT.2023.3298606","volume":"11","author":"B Wang","year":"2024","unstructured":"B. Wang, H. Li, X. Liu, Y. Guo. FRAD: Free-rider attacks detection mechanism for federated learning in AIoT. IEEE Internet of Things Journal, vol. 11, no. 3, pp. 4377\u20134388, 2024. DOI: https:\/\/doi.org\/10.1109\/JIOT.2023.3298606.","journal-title":"IEEE Internet of Things Journal"}],"container-title":["Machine Intelligence Research"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11633-025-1557-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11633-025-1557-1","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11633-025-1557-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,2]],"date-time":"2026-02-02T14:11:54Z","timestamp":1770041514000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11633-025-1557-1"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,2]]},"references-count":44,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2026,2]]}},"alternative-id":["1557"],"URL":"https:\/\/doi.org\/10.1007\/s11633-025-1557-1","relation":{},"ISSN":["2731-538X","2731-5398"],"issn-type":[{"value":"2731-538X","type":"print"},{"value":"2731-5398","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,2]]},"assertion":[{"value":"30 October 2024","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"3 April 2025","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"2 February 2026","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"The authors declared that they have no conflicts of interest to this work.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations of conflict of interest"}}]}}