{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,14]],"date-time":"2026-05-14T17:19:04Z","timestamp":1778779144853,"version":"3.51.4"},"reference-count":35,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62472251"],"award-info":[{"award-number":["62472251"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62072273"],"award-info":[{"award-number":["62072273"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["62372266"],"award-info":[{"award-number":["62372266"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Knowledge-Based Systems"],"published-print":{"date-parts":[[2026,6]]},"DOI":"10.1016\/j.knosys.2026.115974","type":"journal-article","created":{"date-parts":[[2026,4,13]],"date-time":"2026-04-13T17:22:52Z","timestamp":1776100972000},"page":"115974","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["PFedRobust: A personalized federated learning framework toward robustness against data poisoning attacks in IoT"],"prefix":"10.1016","volume":"343","author":[{"given":"Chunmei","family":"Li","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tao","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1451-9260","authenticated-orcid":false,"given":"Andrea","family":"Bracciali","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yilei","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hongwei","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Daojing","family":"He","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhiquan","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/j.knosys.2026.115974_b1","doi-asserted-by":"crossref","unstructured":"Y. Zhu, C. Markos, R. Zhao, Y. Zheng, J. James, FedOVA: One-vs-all training method for federated learning with non-IID data, in: 2021 Int. Joint Conf. Neural Networks, 2021, pp. 1\u20137.","DOI":"10.1109\/IJCNN52387.2021.9533409"},{"key":"10.1016\/j.knosys.2026.115974_b2","doi-asserted-by":"crossref","unstructured":"D. Wang, L. Shen, Y. Luo, H. Hu, K. Su, Y. Wen, D. Tao, FedABC: Targeting fair competition in personalized federated learning, in: Proc. AAAI Conf. Artif. Intell., Vol. 37, 2023, pp. 10095\u201310103.","DOI":"10.1609\/aaai.v37i8.26203"},{"key":"10.1016\/j.knosys.2026.115974_b3","doi-asserted-by":"crossref","unstructured":"S. Shan, W. Ding, J. Passananti, S. Wu, H. Zheng, B.Y. Zhao, Nightshade: Prompt-Specific Poisoning Attacks on Text-to-Image Generative Models, in: 2024 IEEE Symp. Secur. Privacy, 2024, pp. 212\u2013212.","DOI":"10.1109\/SP54263.2024.00207"},{"key":"10.1016\/j.knosys.2026.115974_b4","doi-asserted-by":"crossref","unstructured":"H. Zou, Y. Zhang, X. Que, Y. Liang, J. Crowcroft, Efficient federated learning under non-IID conditions with attackers, in: Proc. 1st ACM Workshop Data Privacy Fed. Learn. Technol. for Mobile Edge Network, 2022, pp. 13\u201318.","DOI":"10.1145\/3556557.3557951"},{"key":"10.1016\/j.knosys.2026.115974_b5","doi-asserted-by":"crossref","unstructured":"F. Sattler, K.-R. M\u00fcller, T. Wiegand, W. Samek, On the byzantine robustness of clustered federated learning, in: 2020 IEEE Int. Conf. Acoust., Speech Signal Proc., 2020, pp. 8861\u20138865.","DOI":"10.1109\/ICASSP40776.2020.9054676"},{"key":"10.1016\/j.knosys.2026.115974_b6","unstructured":"R. Ye, Z. Ni, F. Wu, S. Chen, Y. Wang, Personalized federated learning with inferred collaboration graphs, in: Int. Conf. Mach. Learn., 2023, pp. 39801\u201339817."},{"key":"10.1016\/j.knosys.2026.115974_b7","doi-asserted-by":"crossref","first-page":"182","DOI":"10.1016\/j.future.2023.10.005","article-title":"Personalized federated learning-based intrusion detection system: Poisoning attack and defense","volume":"153","author":"Thein","year":"2024","journal-title":"Future Gener. Comput. Syst."},{"key":"10.1016\/j.knosys.2026.115974_b8","doi-asserted-by":"crossref","first-page":"7186","DOI":"10.1109\/TII.2022.3150324","article-title":"CPFL: An effective secure cognitive personalized federated learning mechanism for industry 4.0","volume":"18","author":"Wang","year":"2022","journal-title":"IEEE Trans. Ind. Inf."},{"key":"10.1016\/j.knosys.2026.115974_b9","first-page":"101","article-title":"In defense of one-vs-all classification","volume":"5","author":"Rifkin","year":"2004","journal-title":"J. Mach. Learn. Res."},{"key":"10.1016\/j.knosys.2026.115974_b10","unstructured":"H. Park, M. Kim, M. Kwon, Localizing Partial Model for Personalized Federated Learning, in: ICML Workshop Localized Learn., 2023."},{"key":"10.1016\/j.knosys.2026.115974_b11","doi-asserted-by":"crossref","first-page":"2278","DOI":"10.1109\/5.726791","article-title":"Gradient-based learning applied to document recognition","volume":"86","author":"LeCun","year":"1998","journal-title":"Proc. IEEE"},{"key":"10.1016\/j.knosys.2026.115974_b12","article-title":"Learning multiple layers of features from tiny images","volume":"1","author":"Krizhevsky","year":"2009","journal-title":"Handb. Syst. Auto. Dis."},{"key":"10.1016\/j.knosys.2026.115974_b13","doi-asserted-by":"crossref","unstructured":"K. Chauhan, P. Shenoy, M. Gupta, D. Sridharan, et al., Robust outlier detection by de-biasing VAE likelihoods, in: Proc. IEEE\/CVF Conf. Comput. Vision Pattern Recognit., 2022, pp. 9881\u20139890.","DOI":"10.1109\/CVPR52688.2022.00965"},{"key":"10.1016\/j.knosys.2026.115974_b14","doi-asserted-by":"crossref","unstructured":"G. Cohen, S. Afshar, J. Tapson, A. Van Schaik, EMNIST: Extending MNIST to handwritten letters, in: 2017 Int. Joint Conf. Neural Networks, 2017, pp. 2921\u20132926.","DOI":"10.1109\/IJCNN.2017.7966217"},{"key":"10.1016\/j.knosys.2026.115974_b15","series-title":"Federated learning with matched averaging","author":"Wang","year":"2020"},{"key":"10.1016\/j.knosys.2026.115974_b16","unstructured":"M. Yurochkin, M. Agarwal, S. Ghosh, K. Greenewald, N. Hoang, Y. Khazaeni, Bayesian nonparametric federated learning of neural networks, in: Int. Conf. Mach. Learn., 2019, pp. 7252\u20137261."},{"key":"10.1016\/j.knosys.2026.115974_b17","doi-asserted-by":"crossref","unstructured":"Y. Huang, L. Chu, Z. Zhou, L. Wang, J. Liu, J. Pei, Y. Zhang, Personalized cross-silo federated learning on non-IID data, in: Proc. AAAI Conf. Artif. Intell., Vol. 35, 2021, pp. 7865\u20137873.","DOI":"10.1609\/aaai.v35i9.16960"},{"key":"10.1016\/j.knosys.2026.115974_b18","unstructured":"E. Rosenfeld, E. Winston, P. Ravikumar, Z. Kolter, Certified robustness to label-flipping attacks via randomized smoothing, in: Int. Conf. Mach. Learn., 2020, pp. 8230\u20138241."},{"key":"10.1016\/j.knosys.2026.115974_b19","doi-asserted-by":"crossref","first-page":"7668","DOI":"10.1109\/TPAMI.2022.3220849","article-title":"Rethinking label flipping attack: From sample masking to sample thresholding","volume":"45","author":"Xu","year":"2022","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"issue":"11","key":"10.1016\/j.knosys.2026.115974_b20","doi-asserted-by":"crossref","first-page":"3548","DOI":"10.1109\/JSAC.2023.3310094","article-title":"TFL-DT: A trust evaluation scheme for federated learning in digital twin for mobile networks","volume":"41","author":"Guo","year":"2023","journal-title":"IEEE J. Sel. Areas Commun."},{"issue":"5","key":"10.1016\/j.knosys.2026.115974_b21","doi-asserted-by":"crossref","first-page":"4619","DOI":"10.1109\/TDSC.2024.3354736","article-title":"Efficient and secure federated learning against backdoor attacks","volume":"21","author":"Miao","year":"2024","journal-title":"IEEE Trans. Dependable Secur. Comput."},{"key":"10.1016\/j.knosys.2026.115974_b22","doi-asserted-by":"crossref","unstructured":"V. Tolpegin, S. Truex, M.E. Gursoy, L. Liu, Data poisoning attacks against federated learning systems, in: 25th Eur. Symp. Res. Comput. Secur., 2020, pp. 480\u2013501.","DOI":"10.1007\/978-3-030-58951-6_24"},{"key":"10.1016\/j.knosys.2026.115974_b23","unstructured":"E. Rosenfeld, E. Winston, P. Ravikumar, Z. Kolter, Certified robustness to label-flipping attacks via randomized smoothing, in: Int. Conf. Mach. Learn., 2020, pp. 8230\u20138241."},{"key":"10.1016\/j.knosys.2026.115974_b24","doi-asserted-by":"crossref","unstructured":"M.S. Ozdayi, M. Kantarcioglu, Y.R. Gel, Defending against backdoors in federated learning with robust learning rate, in: Proc. AAAI Conf. Artif. Intell., Vol. 35, 2021, pp. 9268\u20139276.","DOI":"10.1609\/aaai.v35i10.17118"},{"key":"10.1016\/j.knosys.2026.115974_b25","doi-asserted-by":"crossref","first-page":"778","DOI":"10.1159\/000332703","article-title":"False negative rate","volume":"41","author":"Nagy","year":"1997","journal-title":"Acta Cytol."},{"key":"10.1016\/j.knosys.2026.115974_b26","doi-asserted-by":"crossref","unstructured":"J. Zhang, Y. Hua, H. Wang, T. Song, Z. Xue, R. Ma, H. Guan, FedALA: Adaptive Local Aggregation for Personalized Federated Learning, in: Proc. AAAI Conf. Artif. Intell., Vol. 37, 2023, pp. 11237\u201311244.","DOI":"10.1609\/aaai.v37i9.26330"},{"key":"10.1016\/j.knosys.2026.115974_b27","first-page":"429","article-title":"Federated optimization in heterogeneous networks","volume":"2","author":"Li","year":"2020","journal-title":"Proc. Mach. Learn. Syst."},{"key":"10.1016\/j.knosys.2026.115974_b28","doi-asserted-by":"crossref","unstructured":"L. Li, W. Xu, T. Chen, G.B. Giannakis, Q. Ling, RSA: Byzantine-robust stochastic aggregation methods for distributed learning from heterogeneous datasets, in: Proc. AAAI Conf. Artif. Intell., Vol. 33, 2019, pp. 1544\u20131551.","DOI":"10.1609\/aaai.v33i01.33011544"},{"key":"10.1016\/j.knosys.2026.115974_b29","unstructured":"T. Li, S. Hu, A. Beirami, V. Smith, Ditto: Fair and robust federated learning through personalization, in: Int. Conf. Mach. Learn., 2021, pp. 6357\u20136368."},{"key":"10.1016\/j.knosys.2026.115974_b30","doi-asserted-by":"crossref","first-page":"705","DOI":"10.2514\/2.3293","article-title":"Galileo probe heat shield ablation experiment","volume":"34","author":"Milos","year":"1997","journal-title":"J. Spacecr. Rocket."},{"key":"10.1016\/j.knosys.2026.115974_b31","unstructured":"M. Zhang, K. Sapra, S. Fidler, S. Yeung, J.M. Alvarez, Personalized federated learning with first order model optimization, in: Proc. Int. Conf. Learn. Represent, 2021, pp. 1\u201317."},{"key":"10.1016\/j.knosys.2026.115974_b32","doi-asserted-by":"crossref","unstructured":"V.S. Sheng, F. Provost, P.G. Ipeirotis, Get another label? improving data quality and data mining using multiple, noisy labelers, in: Proc. 14th ACM SIGKDD Int. Conf. Knowledge Discovery Data Mining, 2008, pp. 614\u2013622.","DOI":"10.1145\/1401890.1401965"},{"key":"10.1016\/j.knosys.2026.115974_b33","doi-asserted-by":"crossref","unstructured":"Y. Kawano, K. Yanai, Automatic expansion of a food image dataset leveraging existing categories with domain adaptation, in: Comput. Vision-ECCV 2014 Workshops, 2015, pp. 3\u201317.","DOI":"10.1007\/978-3-319-16199-0_1"},{"key":"10.1016\/j.knosys.2026.115974_b34","doi-asserted-by":"crossref","first-page":"473","DOI":"10.1007\/s11192-007-1975-6","article-title":"Expansion of scientific journal categories using reference analysis: How can it be done and does it make a difference?","volume":"79","author":"L\u00f3pez-Illescas","year":"2009","journal-title":"Scientometrics"},{"key":"10.1016\/j.knosys.2026.115974_b35","doi-asserted-by":"crossref","unstructured":"D. Gragnaniello, D. Cozzolino, F. Marra, G. Poggi, L. Verdoliva, Are GAN generated images easy to detect? A critical analysis of the state-of-the-art, in: 2021 IEEE Int. Conf. Multimedia Expo, 2021, pp. 1\u20136.","DOI":"10.1109\/ICME51207.2021.9428429"}],"container-title":["Knowledge-Based Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0950705126007008?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0950705126007008?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,5,14]],"date-time":"2026-05-14T17:05:07Z","timestamp":1778778307000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0950705126007008"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,6]]},"references-count":35,"alternative-id":["S0950705126007008"],"URL":"https:\/\/doi.org\/10.1016\/j.knosys.2026.115974","relation":{},"ISSN":["0950-7051"],"issn-type":[{"value":"0950-7051","type":"print"}],"subject":[],"published":{"date-parts":[[2026,6]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"PFedRobust: A personalized federated learning framework toward robustness against data poisoning attacks in IoT","name":"articletitle","label":"Article Title"},{"value":"Knowledge-Based Systems","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.knosys.2026.115974","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Elsevier B.V. All rights are reserved, including those for text and data mining, AI training, and similar technologies.","name":"copyright","label":"Copyright"}],"article-number":"115974"}}