{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T23:33:35Z","timestamp":1773185615944,"version":"3.50.1"},"reference-count":35,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,12,1]],"date-time":"2025-12-01T00:00:00Z","timestamp":1764547200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/100007838","name":"Heilongjiang University","doi-asserted-by":"publisher","award":["KJCX201904"],"award-info":[{"award-number":["KJCX201904"]}],"id":[{"id":"10.13039\/100007838","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100007838","name":"Heilongjiang University","doi-asserted-by":"publisher","award":["2020-KYYWF-1001"],"award-info":[{"award-number":["2020-KYYWF-1001"]}],"id":[{"id":"10.13039\/100007838","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Neurocomputing"],"published-print":{"date-parts":[[2025,12]]},"DOI":"10.1016\/j.neucom.2025.131580","type":"journal-article","created":{"date-parts":[[2025,9,17]],"date-time":"2025-09-17T05:38:51Z","timestamp":1758087531000},"page":"131580","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["Single-client GAN-based backdoor attacks for Asynchronous Federated Learning"],"prefix":"10.1016","volume":"657","author":[{"given":"Siyu","family":"Guan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chunguang","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hai","family":"Cheng","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"78","reference":[{"key":"10.1016\/j.neucom.2025.131580_bib1","series-title":"Proceedings of the International Conference on Artificial Intelligence and Statistics","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"McMahan","year":"2017"},{"issue":"1\u20132","key":"10.1016\/j.neucom.2025.131580_bib2","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1561\/2200000083","article-title":"Advances and open problems in Federated Learning","volume":"14","author":"Kairouz","year":"2021","journal-title":"Foundations Trends\u00ae Machine Learning"},{"key":"10.1016\/j.neucom.2025.131580_bib3","series-title":"Proceedings of the International conference on artificial intelligence and statistics","first-page":"2938","article-title":"How to backdoor Federated Learning","author":"Bagdasaryan","year":"2020"},{"key":"10.1016\/j.neucom.2025.131580_bib4","series-title":"Proceedings of the 2019 IEEE Symposium on Security and Privacy (SP)","first-page":"739","article-title":"Comprehensive privacy analysis of deep learning: passive and active White-box inference attacks against centralized and Federated Learning","author":"Nasr","year":"2019"},{"issue":"04866","key":"10.1016\/j.neucom.2025.131580_bib5","article-title":"Mitigating sybils in Federated Learning poisoning","volume":"1808","author":"Fung","year":"2018","journal-title":"arXiv Prepr. arXiv"},{"key":"10.1016\/j.neucom.2025.131580_bib6","series-title":"Joint European Conference on Machine Learning and Knowledge Discovery in Databases","first-page":"21","article-title":"Asynchronous Federated Learning for geospatial applications","author":"Sprague","year":"2018"},{"key":"10.1016\/j.neucom.2025.131580_bib7","series-title":"Proceedings of the IEEE\/CVF International Conference on Computer Vision","first-page":"16463","article-title":"Invisible backdoor attack with sample-specific triggers","author":"Li","year":"2021"},{"key":"10.1016\/j.neucom.2025.131580_bib8","doi-asserted-by":"crossref","first-page":"148","DOI":"10.1016\/j.inffus.2022.09.011","article-title":"Survey on Federated Learning threats: concepts, taxonomy on attacks and defences, experimental study and challenges","volume":"90","author":"Rodr\u00edguez-Barroso","year":"2023","journal-title":"Inf. Fusion"},{"key":"10.1016\/j.neucom.2025.131580_bib9","first-page":"66364","article-title":"Iba: towards irreversible backdoor attacks in Federated Learning","volume":"36","author":"Nguyen","year":"2023","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2025.131580_bib10","first-page":"00127","article-title":"FTA: stealthy and adaptive backdoor attack with flexible triggers on Federated Learning","volume":"2309","author":"Qiao","year":"2023","journal-title":"arXiv Prepr. arXiv"},{"key":"10.1016\/j.neucom.2025.131580_bib11","first-page":"19601","article-title":"Infighting in the dark: multi-labels backdoor attack in Federated Learning","volume":"2409","author":"Li","year":"2024","journal-title":"arXiv Prepr. arXiv"},{"key":"10.1016\/j.neucom.2025.131580_bib12","series-title":"Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security","first-page":"603","article-title":"Deep models under the GAN: information leakage from collaborative deep learning","author":"Hitaj","year":"2017"},{"issue":"5","key":"10.1016\/j.neucom.2025.131580_bib13","doi-asserted-by":"crossref","first-page":"3310","DOI":"10.1109\/JIOT.2020.3023126","article-title":"PoisonGAN: generative poisoning attacks against federated learning in edge computing systems","volume":"8","author":"Zhang","year":"2020","journal-title":"IEEE Internet Things J."},{"key":"10.1016\/j.neucom.2025.131580_bib14","doi-asserted-by":"crossref","DOI":"10.1016\/j.media.2023.102965","article-title":"Backdoor attack and defense in federated generative adversarial network-based medical image synthesis","volume":"90","author":"Jin","year":"2023","journal-title":"Med. Image Anal."},{"key":"10.1016\/j.neucom.2025.131580_bib15","doi-asserted-by":"crossref","DOI":"10.1016\/j.knosys.2022.110023","article-title":"MagicGAN: multiagent attacks generate interferential category via GAN","volume":"258","author":"Chen","year":"2022","journal-title":"Knowl. Based Syst."},{"key":"10.1016\/j.neucom.2025.131580_bib16","series-title":"Proceedings of the IEEE INFOCOM 2024-IEEE Conference on Computer Communications Workshops (INFOCOM WKSHPS)","first-page":"1","article-title":"GAN-Based privacy abuse attack on Federated Learning in IoT networks","author":"Hao","year":"2024"},{"key":"10.1016\/j.neucom.2025.131580_bib17","doi-asserted-by":"crossref","first-page":"2723","DOI":"10.1016\/j.procs.2023.10.264","article-title":"Preventing image data poisoning attacks in federated machine learning by an encrypted verification key","volume":"225","author":"Jodayree","year":"2023","journal-title":"Procedia Comput. Sci."},{"key":"10.1016\/j.neucom.2025.131580_bib18","series-title":"Proceedings of the 2021 IEEE International Conference on Big Data (Big Data)","first-page":"1172","article-title":"Resisting distributed backdoor attacks in federated learning: a dynamic norm clipping approach","author":"Guo","year":"2021"},{"key":"10.1016\/j.neucom.2025.131580_bib19","series-title":"International Conference on Machine Learning","first-page":"11372","article-title":"Crfl: certifiably robust federated learning against backdoor attacks","author":"Xie","year":"2021"},{"key":"10.1016\/j.neucom.2025.131580_bib20","first-page":"30","article-title":"Machine learning with adversaries: byzantine tolerant gradient descent","author":"Blanchard","year":"2017","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2025.131580_bib21","doi-asserted-by":"crossref","first-page":"1142","DOI":"10.1109\/TSP.2022.3153135","article-title":"Robust aggregation for federated learning","volume":"70","author":"Pillutla","year":"2022","journal-title":"IEEE Trans. Signal Process."},{"issue":"10","key":"10.1016\/j.neucom.2025.131580_bib22","first-page":"9268","article-title":"Defending against backdoors in federated learning with robust learning rate","volume":"35","author":"Ozdayi","year":"2021","journal-title":"Proc. AAAI Conf. Artif. Intell."},{"key":"10.1016\/j.neucom.2025.131580_bib23","series-title":"Proceedings of the 23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2020)","first-page":"301","article-title":"The limitations of federated learning in sybil settings","author":"Fung","year":"2020"},{"key":"10.1016\/j.neucom.2025.131580_bib24","doi-asserted-by":"crossref","first-page":"140699","DOI":"10.1109\/ACCESS.2020.3013541","article-title":"Federated learning: a survey on enabling technologies, protocols, and applications","volume":"8","author":"Aledhari","year":"2020","journal-title":"IEEE Access"},{"issue":"2","key":"10.1016\/j.neucom.2025.131580_bib25","doi-asserted-by":"crossref","first-page":"513","DOI":"10.1007\/s13042-022-01647-y","article-title":"A survey on federated learning: challenges and applications","volume":"14","author":"Wen","year":"2023","journal-title":"Int. J. Mach. Learn. Cybern."},{"key":"10.1016\/j.neucom.2025.131580_bib26","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1007\/s41666-020-00082-4","article-title":"Federated Learning for healthcare informatics","volume":"5","author":"Xu","year":"2021","journal-title":"J. Healthc. Inform. Res."},{"key":"10.1016\/j.neucom.2025.131580_bib27","first-page":"00582","article-title":"Federated Learning with non-iid data","volume":"1806","author":"Zhao","year":"2018","journal-title":"arXiv Prepr. arXiv"},{"key":"10.1016\/j.neucom.2025.131580_bib28","series-title":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","first-page":"308","article-title":"Deep learning with differential privacy","author":"Abadi","year":"2016"},{"key":"10.1016\/j.neucom.2025.131580_bib29","series-title":"Proceedings on Privacy Enhancing Technologies","article-title":"Sok: secure aggregation based on cryptographic schemes for Federated Learning","author":"Mansouri","year":"2023"},{"key":"10.1016\/j.neucom.2025.131580_bib30","series-title":"Medical image computing and computer-assisted intervention\u2013MICCAI 2015: 18th international conference, Munich, Germany, October 5-9, 2015, proceedings, Part III 18","first-page":"234","article-title":"U-net: convolutional networks for biomedical image segmentation","author":"Ronneberger","year":"2015"},{"key":"10.1016\/j.neucom.2025.131580_bib31","series-title":"Proceedings of the International Conference on Artificial Intelligence and Statistics","first-page":"2938","article-title":"How to backdoor federated learning","author":"Bagdasaryan","year":"2020"},{"key":"10.1016\/j.neucom.2025.131580_bib32","first-page":"16070","article-title":"Attack of the tails: yes, you really can backdoor Federated Learning","volume":"33","author":"Wang","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2025.131580_bib33","series-title":"Proceedings of the International Conference on Learning Representations","article-title":"Dba: distributed backdoor attacks against federated learning","author":"Xie","year":"2019"},{"key":"10.1016\/j.neucom.2025.131580_bib34","first-page":"03934","article-title":"Asynchronous federated optimization","volume":"1903","author":"Xie","year":"2019","journal-title":"arXiv Prepr. arXiv"},{"key":"10.1016\/j.neucom.2025.131580_bib35","series-title":"Proceedings of the 2023 IEEE Conference on Secure and Trustworthy Machine Learning (SaTML)","first-page":"377","article-title":"Sniper backdoor: single client targeted backdoor attack in Federated Learning","author":"Abad","year":"2023"}],"container-title":["Neurocomputing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0925231225022520?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0925231225022520?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T04:16:38Z","timestamp":1773116198000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0925231225022520"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12]]},"references-count":35,"alternative-id":["S0925231225022520"],"URL":"https:\/\/doi.org\/10.1016\/j.neucom.2025.131580","relation":{},"ISSN":["0925-2312"],"issn-type":[{"value":"0925-2312","type":"print"}],"subject":[],"published":{"date-parts":[[2025,12]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"Single-client GAN-based backdoor attacks for Asynchronous Federated Learning","name":"articletitle","label":"Article Title"},{"value":"Neurocomputing","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.neucom.2025.131580","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2025 Published by Elsevier B.V.","name":"copyright","label":"Copyright"}],"article-number":"131580"}}