{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T18:10:24Z","timestamp":1780337424413,"version":"3.54.1"},"reference-count":56,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,10,1]],"date-time":"2026-10-01T00:00:00Z","timestamp":1790812800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,5,21]],"date-time":"2026-05-21T00:00:00Z","timestamp":1779321600000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Neurocomputing"],"published-print":{"date-parts":[[2026,10]]},"DOI":"10.1016\/j.neucom.2026.134042","type":"journal-article","created":{"date-parts":[[2026,5,21]],"date-time":"2026-05-21T06:50:33Z","timestamp":1779346233000},"page":"134042","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["Let\u2019s focus: Focused backdoor attack against federated transfer learning"],"prefix":"10.1016","volume":"696","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3371-307X","authenticated-orcid":false,"given":"Marco","family":"Arazzi","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6543-4801","authenticated-orcid":false,"given":"Stefanos","family":"Koffas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2120-2341","authenticated-orcid":false,"given":"Antonino","family":"Nocera","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Stjepan","family":"Picek","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.neucom.2026.134042_bib0005","author":"Arazzi"},{"key":"10.1016\/j.neucom.2026.134042_bib0010","author":"Arazzi"},{"key":"10.1016\/j.neucom.2026.134042_bib0015","series-title":"Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security","first-page":"1482","article-title":"Turning privacy-preserving mechanisms against federated learning","author":"Arazzi","year":"2023"},{"key":"10.1016\/j.neucom.2026.134042_bib0020","author":"Arazzi"},{"key":"10.1016\/j.neucom.2026.134042_bib0025","series-title":"30th USENIX Security Symposium (USENIX Security 21)","first-page":"1505","article-title":"Blind backdoors in deep learning models","author":"Bagdasaryan","year":"2021"},{"key":"10.1016\/j.neucom.2026.134042_bib0030","series-title":"International Conference on Artificial Intelligence and Statistics","first-page":"2938","article-title":"How to backdoor federated learning","author":"Bagdasaryan","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0035","first-page":"32","article-title":"A little is enough: circumventing defenses for distributed learning","author":"Baruch","year":"2019","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2026.134042_bib0040","first-page":"30","article-title":"Machine learning with adversaries: byzantine tolerant gradient descent","author":"Blanchard","year":"2017","journal-title":"Adv. Neural Inf. Process. Syst."},{"issue":"4","key":"10.1016\/j.neucom.2026.134042_bib0045","doi-asserted-by":"crossref","first-page":"83","DOI":"10.1109\/MIS.2020.2988604","article-title":"Fedhealth: a federated transfer learning framework for wearable healthcare","volume":"35","author":"Chen","year":"2020","journal-title":"IEEE Intell. Syst."},{"key":"10.1016\/j.neucom.2026.134042_bib0050","author":"Darlow"},{"key":"10.1016\/j.neucom.2026.134042_bib0055","series-title":"Raid","first-page":"301","article-title":"The limitations of federated learning in sybil settings","author":"Fung","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0060","series-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","first-page":"4367","article-title":"Dynamic few-shot visual learning without forgetting","author":"Gidaris","year":"2018"},{"key":"10.1016\/j.neucom.2026.134042_bib0065","author":"Tianyu"},{"key":"10.1016\/j.neucom.2026.134042_bib0070","author":"Guo"},{"key":"10.1016\/j.neucom.2026.134042_bib0075","series-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","first-page":"770","article-title":"Deep residual learning for image recognition","author":"Kaiming","year":"2016"},{"key":"10.1016\/j.neucom.2026.134042_bib0080","author":"Hinton"},{"key":"10.1016\/j.neucom.2026.134042_bib0085","first-page":"8068","article-title":"Handcrafted backdoors in deep neural networks","volume":"35","author":"Hong","year":"2022","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2026.134042_bib0090","author":"Jing"},{"key":"10.1016\/j.neucom.2026.134042_bib0095","series-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition Workshops","first-page":"424","article-title":"Investigating loss functions for extreme super-resolution","author":"Younghyun","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0100","series-title":"2020 42nd Annual International Conference of the IEEE Engineering in Medicine & Biology Society (EMBC)","first-page":"3040","article-title":"Federated transfer learning for EEG signal classification","author":"Ju","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0105","series-title":"International Conference on Machine Learning","first-page":"5132","article-title":"Scaffold: stochastic controlled averaging for federated learning","author":"Karimireddy","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0110","series-title":"Proceedings of naacL-HLT","first-page":"2","article-title":"Pre-training of deep bidirectional transformers for language understanding","volume":"vol. 1","author":"Kenton","year":"2019"},{"key":"10.1016\/j.neucom.2026.134042_bib0115","series-title":"Learning Multiple Layers of Features From Tiny Images","author":"Krizhevsky","year":"2009"},{"key":"10.1016\/j.neucom.2026.134042_bib0120","doi-asserted-by":"crossref","DOI":"10.1016\/j.cie.2020.106854","article-title":"A review of applications in federated learning","volume":"149","author":"Li","year":"2020","journal-title":"Comput. Ind. Eng."},{"key":"10.1016\/j.neucom.2026.134042_bib0125","unstructured":"L. Xiang, K. Huang, W. Yang, S. Wang, Z. Zhang, On the convergence of fedavg on non-iid data. In: International Conference on Learning Representations. In International Conference on Learning Representations."},{"key":"10.1016\/j.neucom.2026.134042_bib0130","series-title":"Federated and Transfer Learning","first-page":"357","article-title":"Federated transfer reinforcement learning for autonomous driving","author":"Liang","year":"2022"},{"issue":"4","key":"10.1016\/j.neucom.2026.134042_bib0135","doi-asserted-by":"crossref","first-page":"70","DOI":"10.1109\/MIS.2020.2988525","article-title":"A secure federated transfer learning framework","volume":"35","author":"Liu","year":"2020","journal-title":"IEEE Intell. Syst."},{"issue":"7","key":"10.1016\/j.neucom.2026.134042_bib0140","doi-asserted-by":"crossref","first-page":"3615","DOI":"10.1109\/TKDE.2024.3352628","article-title":"Vertical federated learning: concepts, advances, and challenges","volume":"36","author":"Liu","year":"2024","journal-title":"IEEE Trans. Knowl. Data Eng."},{"key":"10.1016\/j.neucom.2026.134042_bib0145","author":"Liu"},{"key":"10.1016\/j.neucom.2026.134042_bib0150","series-title":"Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition","first-page":"12156","article-title":"Content-aware GAN compression","author":"Liu","year":"2021"},{"key":"10.1016\/j.neucom.2026.134042_bib0155","series-title":"Proceedings of the 49th Annual Meeting of the Association for Computational Linguistics: Human Language Technologies","first-page":"142","article-title":"Learning word vectors for sentiment analysis","author":"Maas","year":"2011"},{"key":"10.1016\/j.neucom.2026.134042_bib0160","series-title":"Proceedings of the 20th International Conference on Artificial Intelligence and Statistics Volume 54 of Proceedings of Machine Learning Research","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"McMahan","year":"2017"},{"key":"10.1016\/j.neucom.2026.134042_bib0165","series-title":"Artificial Intelligence and Statistics","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"McMahan","year":"2017"},{"key":"10.1016\/j.neucom.2026.134042_bib0170","series-title":"NIPS Workshop on Deep Learning and Unsupervised Feature Learning","first-page":"7","article-title":"Reading digits in natural images with unsupervised feature learning","volume":"vol. 2011","author":"Netzer","year":"2011"},{"key":"10.1016\/j.neucom.2026.134042_bib0175","series-title":"31st USENIX Security Symposium (USENIX Security 22)","first-page":"1415","article-title":"Flame: taming backdoors in federated learning","author":"Nguyen","year":"2022"},{"key":"10.1016\/j.neucom.2026.134042_bib0180","series-title":"Proceedings of the AAAI Conference on Artificial Intelligence","first-page":"15576","article-title":"Industry-scale orchestrated federated learning for drug discovery","volume":"vol. 37","author":"Oldenhof","year":"2023"},{"issue":"111837","key":"10.1016\/j.neucom.2026.134042_bib0185","article-title":"Federated transfer learning for machinery fault diagnosis: a comprehensive review of technique and application","volume":"223","author":"Qian","year":"2025","journal-title":"Mech. Syst. Signal Process."},{"key":"10.1016\/j.neucom.2026.134042_bib0190","author":"Rieger"},{"issue":"1","key":"10.1016\/j.neucom.2026.134042_bib0195","first-page":"35","article-title":"Federated transfer learning: concept and applications","volume":"15","author":"Saha","year":"2021","journal-title":"Intell. Artif."},{"key":"10.1016\/j.neucom.2026.134042_bib0200","series-title":"Proceedings of the 2018 Conference on Empirical Methods in Natural Language Processing","first-page":"3687","article-title":"CARER: contextualized affect representations for emotion recognition","author":"Saravia","year":"2018"},{"key":"10.1016\/j.neucom.2026.134042_bib0205","first-page":"4765","article-title":"A unified approach to interpreting model predictions","volume":"30","author":"Scott","year":"2017","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2026.134042_bib0210","series-title":"Proceedings of the IEEE International Conference on Computer Vision","first-page":"618","article-title":"Grad-CAM: visual explanations from deep networks via gradient-based localization","author":"Selvaraju","year":"2017"},{"key":"10.1016\/j.neucom.2026.134042_bib0215","author":"Simonyan"},{"key":"10.1016\/j.neucom.2026.134042_bib0220","doi-asserted-by":"crossref","first-page":"323","DOI":"10.1016\/j.neunet.2012.02.016","article-title":"Man vs. computer: benchmarking machine learning algorithms for traffic sign recognition","volume":"32","author":"Stallkamp","year":"2012","journal-title":"Neural Netw."},{"key":"10.1016\/j.neucom.2026.134042_bib0225","series-title":"Proceedings of the AAAI Conference on Artificial Intelligence","article-title":"Return of frustratingly easy domain adaptation","volume":"vol. 30","author":"Sun","year":"2016"},{"key":"10.1016\/j.neucom.2026.134042_bib0230","series-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","first-page":"2818","article-title":"Rethinking the inception architecture for computer vision","author":"Szegedy","year":"2016"},{"key":"10.1016\/j.neucom.2026.134042_bib0235","first-page":"16070","article-title":"Attack of the tails: yes, you really can backdoor federated learning","volume":"33","author":"Wang","year":"2020","journal-title":"Adv. Neural Inf. Process. Syst."},{"key":"10.1016\/j.neucom.2026.134042_bib0240","series-title":"International Conference on Learning Representations","article-title":"DBA: distributed backdoor attacks against federated learning","author":"Xie","year":"2019"},{"key":"10.1016\/j.neucom.2026.134042_bib0245","series-title":"Proceedings of the 38th Annual Computer Security Applications Conference","first-page":"684","article-title":"More is better (mostly): on the backdoor attacks in federated graph neural networks","author":"Jing","year":"2022"},{"key":"10.1016\/j.neucom.2026.134042_bib0250","series-title":"IEEE 18th International Symposium on Biomedical Imaging (ISBI)","first-page":"191","article-title":"MedMNIST classification decathlon: a lightweight automl benchmark for medical image analysis","author":"Yang","year":"2021"},{"issue":"2","key":"10.1016\/j.neucom.2026.134042_bib0255","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3298981","article-title":"Federated machine learning: concept and applications","volume":"10","author":"Yang","year":"2019","journal-title":"ACM Trans. Intell. Syst. Technol. (TIST)"},{"key":"10.1016\/j.neucom.2026.134042_bib0260","series-title":"International Conference on Machine Learning","first-page":"5650","article-title":"Byzantine-robust distributed learning: towards optimal statistical rates","author":"Yin","year":"2018"},{"key":"10.1016\/j.neucom.2026.134042_bib0265","series-title":"Advances in Neural Information Processing Systems","first-page":"61213","article-title":"A3fl: adversarially adaptive backdoor attacks to federated learning","volume":"vol. 36","author":"Zhang","year":"2023"},{"key":"10.1016\/j.neucom.2026.134042_bib0270","series-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","first-page":"586","article-title":"The unreasonable effectiveness of deep features as a perceptual metric","author":"Zhang","year":"2018"},{"key":"10.1016\/j.neucom.2026.134042_bib0275","series-title":"International Conference on Learning Representations","article-title":"Dataset condensation with gradient matching","author":"Zhao","year":"2020"},{"key":"10.1016\/j.neucom.2026.134042_bib0280","series-title":"Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition","first-page":"2921","article-title":"Learning deep features for discriminative localization","author":"Zhou","year":"2016"}],"container-title":["Neurocomputing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0925231226014402?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0925231226014402?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T17:39:33Z","timestamp":1780335573000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0925231226014402"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,10]]},"references-count":56,"alternative-id":["S0925231226014402"],"URL":"https:\/\/doi.org\/10.1016\/j.neucom.2026.134042","relation":{},"ISSN":["0925-2312"],"issn-type":[{"value":"0925-2312","type":"print"}],"subject":[],"published":{"date-parts":[[2026,10]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"Let\u2019s focus: Focused backdoor attack against federated transfer learning","name":"articletitle","label":"Article Title"},{"value":"Neurocomputing","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.neucom.2026.134042","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 The Authors. Published by Elsevier B.V.","name":"copyright","label":"Copyright"}],"article-number":"134042"}}