{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T12:18:16Z","timestamp":1779106696105,"version":"3.51.4"},"reference-count":46,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,8,1]],"date-time":"2026-08-01T00:00:00Z","timestamp":1785542400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/100020595","name":"National Science and Technology Council","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100020595","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Engineering Applications of Artificial Intelligence"],"published-print":{"date-parts":[[2026,8]]},"DOI":"10.1016\/j.engappai.2026.114734","type":"journal-article","created":{"date-parts":[[2026,4,25]],"date-time":"2026-04-25T09:18:27Z","timestamp":1777108707000},"page":"114734","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"P1","title":["Adaptive aggregation and robust client selection against poisoning and backdoor attacks in federated learning"],"prefix":"10.1016","volume":"177","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5164-9171","authenticated-orcid":false,"given":"Yung-Ting","family":"Chuang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qi-Xiang","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/j.engappai.2026.114734_b1","series-title":"Conference on Learning Theory","first-page":"39.1","article-title":"Analysis of thompson sampling for the multi-armed bandit problem","author":"Agrawal","year":"2012"},{"key":"10.1016\/j.engappai.2026.114734_b2","article-title":"Analysis of an intellectual mechanism of a novel crop recommendation system using improved heuristic algorithm-based attention and cascaded deep learning network","author":"Akkem","year":"2024","journal-title":"IEEE Trans. Artif. Intell."},{"issue":"2","key":"10.1016\/j.engappai.2026.114734_b3","doi-asserted-by":"crossref","DOI":"10.1088\/2631-8695\/ade19d","article-title":"AI-driven smart farming portal: overcoming language barriers and enhancing agricultural productivity through machine learning","volume":"7","author":"Akkem","year":"2025","journal-title":"Eng. Res. Express"},{"issue":"9","key":"10.1016\/j.engappai.2026.114734_b4","first-page":"42","article-title":"Design of improved agriculture crop recommendation with global-local interpretability","volume":"8","author":"Akkem","year":"2025","journal-title":"Istor. J."},{"issue":"1","key":"10.1016\/j.engappai.2026.114734_b5","first-page":"31","article-title":"Role of explainable AI in crop recommendation technique of smart farming","volume":"17","author":"Akkem","year":"2025","journal-title":"Int. J. Intell. Syst. Appl. (IJISA)"},{"key":"10.1016\/j.engappai.2026.114734_b6","first-page":"397","article-title":"Using confidence bounds for exploitation-exploration trade-offs","volume":"3","author":"Auer","year":"2002","journal-title":"J. Mach. Learn. Res."},{"key":"10.1016\/j.engappai.2026.114734_b7","series-title":"International Conference on Artificial Intelligence and Statistics","first-page":"2938","article-title":"How to backdoor federated learning","author":"Bagdasaryan","year":"2020"},{"key":"10.1016\/j.engappai.2026.114734_b8","series-title":"Poisoning attacks against support vector machines","author":"Biggio","year":"2012"},{"key":"10.1016\/j.engappai.2026.114734_b9","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume":"30","author":"Blanchard","year":"2017","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.engappai.2026.114734_b10","doi-asserted-by":"crossref","unstructured":"Cao, X., Fang, M., Liu, J., Gong, N.Z., 2021. FLTrust: Byzantine-robust Federated Learning via Trust Bootstrapping. In: Proceedings of the 28th Network and Distributed System Security Symposium. NDSS.","DOI":"10.14722\/ndss.2021.24434"},{"key":"10.1016\/j.engappai.2026.114734_b11","doi-asserted-by":"crossref","first-page":"3691","DOI":"10.1109\/TIFS.2022.3212174","article-title":"Flcert: Provably secure federated learning against poisoning attacks","volume":"17","author":"Cao","year":"2022","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"10.1016\/j.engappai.2026.114734_b12","first-page":"9687","article-title":"Federated Bayesian optimization via thompson sampling","volume":"33","author":"Dai","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.engappai.2026.114734_b13","series-title":"Cinic-10 is not imagenet or cifar-10","author":"Darlow","year":"2018"},{"issue":"11","key":"10.1016\/j.engappai.2026.114734_b14","first-page":"2661","article-title":"Flexible clustered federated learning for client-level data distribution shift","volume":"33","author":"Duan","year":"2021","journal-title":"IEEE Trans. Parallel Distrib. Syst."},{"key":"10.1016\/j.engappai.2026.114734_b15","series-title":"Mitigating sybils in federated learning poisoning","author":"Fung","year":"2018"},{"key":"10.1016\/j.engappai.2026.114734_b16","doi-asserted-by":"crossref","unstructured":"Ganju, K., Wang, Q., Yang, W., Gunter, C.A., Borisov, N., 2018. Property inference attacks on fully connected neural networks using permutation invariant representations. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. pp. 619\u2013633.","DOI":"10.1145\/3243734.3243834"},{"key":"10.1016\/j.engappai.2026.114734_b17","series-title":"2012 IEEE Congress on Evolutionary Computation","first-page":"1","article-title":"An exponential moving average algorithm","author":"Haynes","year":"2012"},{"key":"10.1016\/j.engappai.2026.114734_b18","series-title":"2022 56th Annual Conference on Information Sciences and Systems","first-page":"263","article-title":"Hidden vulnerabilities in cosine similarity based poisoning defense","author":"Kasyap","year":"2022"},{"key":"10.1016\/j.engappai.2026.114734_b19","series-title":"Artificial Intelligence and Statistics","first-page":"592","article-title":"On Bayesian upper confidence bounds for bandit problems","author":"Kaufmann","year":"2012"},{"key":"10.1016\/j.engappai.2026.114734_b20","series-title":"NIPS Workshop on Private Multi-Party Machine Learning","article-title":"Federated learning: Strategies for improving communication efficiency","author":"Kone\u010dn\u00fd","year":"2016"},{"key":"10.1016\/j.engappai.2026.114734_b21","article-title":"Federated learning minimal model replacement attack using optimal transport: an attacker perspective","author":"Kumar","year":"2024","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"10.1016\/j.engappai.2026.114734_b22","article-title":"Threats and defenses in the federated learning life cycle: a comprehensive survey and challenges","author":"Li","year":"2025","journal-title":"IEEE Trans. Neural Netw. Learn. Syst."},{"key":"10.1016\/j.engappai.2026.114734_b23","series-title":"ICASSP 2025-2025 IEEE International Conference on Acoustics, Speech and Signal Processing","first-page":"1","article-title":"Collaborative personalized federated learning via exponential moving average optimization","author":"Li","year":"2025"},{"key":"10.1016\/j.engappai.2026.114734_b24","article-title":"Lomar: A local defense against poisoning attack on federated learning","author":"Li","year":"2021","journal-title":"IEEE Trans. Dependable Secur. Comput."},{"key":"10.1016\/j.engappai.2026.114734_b25","series-title":"FLIP: A flexible and privacy-preserving layered federated learning framework","author":"Li","year":"2023"},{"key":"10.1016\/j.engappai.2026.114734_b26","doi-asserted-by":"crossref","first-page":"5575","DOI":"10.1109\/TIFS.2024.3402993","article-title":"Split aggregation: Lightweight privacy-preserving federated learning resistant to byzantine attacks","volume":"19","author":"Lu","year":"2024","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"10.1016\/j.engappai.2026.114734_b27","series-title":"Threats to federated learning: A survey","author":"Lyu","year":"2020"},{"key":"10.1016\/j.engappai.2026.114734_b28","doi-asserted-by":"crossref","first-page":"1639","DOI":"10.1109\/TIFS.2022.3169918","article-title":"Shieldfl: Mitigating model poisoning attacks in privacy-preserving federated learning","volume":"17","author":"Ma","year":"2022","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"10.1016\/j.engappai.2026.114734_b29","series-title":"Exponential moving average of weights in deep learning: Dynamics and benefits","author":"Morales-Brotons","year":"2024"},{"issue":"16","key":"10.1016\/j.engappai.2026.114734_b30","doi-asserted-by":"crossref","first-page":"12806","DOI":"10.1109\/JIOT.2021.3072611","article-title":"Federated learning meets blockchain in edge computing: Opportunities and challenges","volume":"8","author":"Nguyen","year":"2021","journal-title":"IEEE Internet Things J."},{"key":"10.1016\/j.engappai.2026.114734_b31","unstructured":"Nguyen, T.D., Rieger, P., Chen, H., Yalame, H., Helenius, H., Yin, L., Fischer, T., Marchal, S., Miettinen, M., Sadeghi, A.-R., et al., 2022. FLAME: Taming Backdoors in Federated Learning. In: Proceedings of the 31st USENIX Security Symposium. pp. 1415\u20131432."},{"issue":"3","key":"10.1016\/j.engappai.2026.114734_b32","doi-asserted-by":"crossref","first-page":"5983","DOI":"10.1109\/TCE.2024.3385440","article-title":"A review of federated learning methods in heterogeneous scenarios","volume":"70","author":"Pei","year":"2024","journal-title":"IEEE Trans. Consum. Electron."},{"key":"10.1016\/j.engappai.2026.114734_b33","series-title":"NDSS","article-title":"Manipulating the byzantine: Optimizing model poisoning attacks and defenses for federated learning","author":"Shejwalkar","year":"2021"},{"key":"10.1016\/j.engappai.2026.114734_b34","series-title":"NDSS","article-title":"Manipulating the byzantine: Optimizing model poisoning attacks and defenses for federated learning","author":"Shejwalkar","year":"2021"},{"key":"10.1016\/j.engappai.2026.114734_b35","series-title":"2017 IEEE Symposium on Security and Privacy","first-page":"3","article-title":"Membership inference attacks against machine learning models","author":"Shokri","year":"2017"},{"key":"10.1016\/j.engappai.2026.114734_b36","series-title":"2022 IEEE International Conferences on Internet of Things (IThings) and IEEE Green Computing & Communications (GreenCom) and IEEE Cyber, Physical & Social Computing (CPSCom) and IEEE Smart Data (SmartData) and IEEE Congress on Cybermatics (Cybermatics)","first-page":"533","article-title":"High precision method of federated learning based on cosine similarity and differential privacy","author":"Wang","year":"2022"},{"key":"10.1016\/j.engappai.2026.114734_b37","first-page":"16070","article-title":"Attack of the tails: Yes, you really can backdoor federated learning","volume":"33","author":"Wang","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.engappai.2026.114734_b38","doi-asserted-by":"crossref","first-page":"3454","DOI":"10.1109\/TIFS.2020.2988575","article-title":"Federated learning with differential privacy: Algorithms and performance analysis","volume":"15","author":"Wei","year":"2020","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"issue":"11","key":"10.1016\/j.engappai.2026.114734_b39","doi-asserted-by":"crossref","first-page":"7108","DOI":"10.1109\/TWC.2020.3008091","article-title":"Multi-armed bandit-based client scheduling for federated learning","volume":"19","author":"Xia","year":"2020","journal-title":"IEEE Trans. Wirel. Commun."},{"key":"10.1016\/j.engappai.2026.114734_b40","unstructured":"Xie, C., Huang, K., Chen, P.-Y., Li, B., 2020. DBA: Distributed Backdoor Attacks against Federated Learning. In: International Conference on Learning Representations. URL https:\/\/openreview.net\/forum?id=rkgyS0VFvr."},{"key":"10.1016\/j.engappai.2026.114734_b41","doi-asserted-by":"crossref","first-page":"1993","DOI":"10.1016\/j.procs.2025.04.450","article-title":"Enhancing transparency in smart farming: Local explanations for crop recommendations using LIME","volume":"258","author":"Yaganteeswarudu","year":"2025","journal-title":"Procedia Comput. Sci."},{"key":"10.1016\/j.engappai.2026.114734_b42","series-title":"2017 7th International Conference on Cloud Computing, Data Science & Engineering-Confluence","first-page":"543","article-title":"Software appication to prevent suicides of farmers with asp. net MVC","author":"Yaganteeswarudu","year":"2017"},{"issue":"2","key":"10.1016\/j.engappai.2026.114734_b43","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3298981","article-title":"Federated machine learning: Concept and applications","volume":"10","author":"Yang","year":"2019","journal-title":"ACM Trans. Intell. Syst. Technol. (TIST)"},{"key":"10.1016\/j.engappai.2026.114734_b44","doi-asserted-by":"crossref","first-page":"6693","DOI":"10.1109\/TIFS.2024.3420126","article-title":"A robust privacy-preserving federated learning model against model poisoning attacks","volume":"19","author":"Yazdinejad","year":"2024","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"10.1016\/j.engappai.2026.114734_b45","series-title":"International Conference on Machine Learning","first-page":"5650","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","author":"Yin","year":"2018"},{"issue":"12","key":"10.1016\/j.engappai.2026.114734_b46","doi-asserted-by":"crossref","first-page":"12131","DOI":"10.1109\/TMC.2024.3406554","article-title":"Understanding and improving model averaging in federated learning on heterogeneous data","volume":"23","author":"Zhou","year":"2024","journal-title":"IEEE Trans. Mob. Comput."}],"container-title":["Engineering Applications of Artificial Intelligence"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S095219762601016X?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S095219762601016X?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T11:57:48Z","timestamp":1779105468000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S095219762601016X"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,8]]},"references-count":46,"alternative-id":["S095219762601016X"],"URL":"https:\/\/doi.org\/10.1016\/j.engappai.2026.114734","relation":{},"ISSN":["0952-1976"],"issn-type":[{"value":"0952-1976","type":"print"}],"subject":[],"published":{"date-parts":[[2026,8]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"Adaptive aggregation and robust client selection against poisoning and backdoor attacks in federated learning","name":"articletitle","label":"Article Title"},{"value":"Engineering Applications of Artificial Intelligence","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.engappai.2026.114734","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Elsevier Ltd. All rights are reserved, including those for text and data mining, AI training, and similar technologies.","name":"copyright","label":"Copyright"}],"article-number":"114734"}}