{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,7]],"date-time":"2026-06-07T20:58:22Z","timestamp":1780865902822,"version":"3.54.1"},"reference-count":60,"publisher":"Elsevier BV","license":[{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/tdm\/userlicense\/1.0\/"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.elsevier.com\/legal\/tdmrep-license"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-017"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-012"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,11,1]],"date-time":"2026-11-01T00:00:00Z","timestamp":1793491200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-004"}],"funder":[{"DOI":"10.13039\/501100022070","name":"National University of Computer and Emerging Sciences","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100022070","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["elsevier.com","sciencedirect.com"],"crossmark-restriction":true},"short-container-title":["Neural Networks"],"published-print":{"date-parts":[[2026,11]]},"DOI":"10.1016\/j.neunet.2026.109157","type":"journal-article","created":{"date-parts":[[2026,5,22]],"date-time":"2026-05-22T06:57:07Z","timestamp":1779433027000},"page":"109157","update-policy":"https:\/\/doi.org\/10.1016\/elsevier_cm_policy","source":"Crossref","is-referenced-by-count":0,"special_numbering":"C","title":["XAI-DTBD: Explainable dynamic threshold-based backdoor detection in graph neural networks"],"prefix":"10.1016","volume":"203","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-7004-6182","authenticated-orcid":false,"given":"Adil","family":"Ahmad","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5859-1219","authenticated-orcid":false,"given":"Anwar","family":"Shah","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Muhamamd","family":"Adnan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Chau","family":"Yuen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"78","reference":[{"key":"10.1016\/j.neunet.2026.109157_bib0001","article-title":"GraphGuard: An adaptive approach for restoring accuracy in backdoor-compromised GNNs","volume":"193","author":"Ahmad","year":"2025","journal-title":"Neural Networks"},{"issue":"10","key":"10.1016\/j.neunet.2026.109157_bib0002","doi-asserted-by":"crossref","first-page":"2822","DOI":"10.1109\/TC.2023.3271126","article-title":"PoisonedGNN: Backdoor attack on graph neural networks-based hardware security systems","volume":"72","author":"Alrahis","year":"2023","journal-title":"IEEE Transactions on Computers"},{"key":"10.1016\/j.neunet.2026.109157_bib0003","series-title":"Aip conference proceedings","doi-asserted-by":"crossref","DOI":"10.1063\/5.0234148","article-title":"Model based anomaly detection in cyber physical power systems","volume":"vol. 3207","author":"Awad","year":"2024"},{"issue":"3","key":"10.1016\/j.neunet.2026.109157_bib0004","first-page":"1895","article-title":"Foobar: Fault fooling backdoor attack on neural network training","volume":"20","author":"Breier","year":"2022","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"10.1016\/j.neunet.2026.109157_bib0005","unstructured":"Chen, B., Carvalho, W., Baracaldo, N., Ludwig, H., Edwards, B., Lee, T., Molloy, I., & Srivastava, B. (2018a). Detecting backdoor attacks on deep neural networks by activation clustering. arXiv: 1811.03728."},{"key":"10.1016\/j.neunet.2026.109157_bib0006","series-title":"Ijcai","first-page":"8","article-title":"Deepinspect: A black-box Trojan detection and mitigation framework for deep neural networks","volume":"vol. 2","author":"Chen","year":"2019"},{"key":"10.1016\/j.neunet.2026.109157_bib0007","series-title":"Proceedings of the IEEE\/CVF international conference on computer vision","first-page":"7718","article-title":"Proflip: Targeted trojan attack with progressive bit flips","author":"Chen","year":"2021"},{"key":"10.1016\/j.neunet.2026.109157_bib0008","series-title":"Proceedings of the eleventh ACM international conference on web search and data mining","first-page":"99","article-title":"Improving negative sampling for word representation using self-embedded features","author":"Chen","year":"2018"},{"issue":"8","key":"10.1016\/j.neunet.2026.109157_bib0009","doi-asserted-by":"crossref","first-page":"325","DOI":"10.1007\/s40747-025-01934-5","article-title":"Stealthy graph backdoor attack based on feature trigger","volume":"11","author":"Chen","year":"2025","journal-title":"Complex & Intelligent Systems"},{"issue":"8","key":"10.1016\/j.neunet.2026.109157_bib0010","doi-asserted-by":"crossref","first-page":"13628","DOI":"10.1109\/TNNLS.2025.3540303","article-title":"Backdoor attacks and countermeasures in natural language processing models: A comprehensive security review","volume":"36","author":"Cheng","year":"2025","journal-title":"IEEE Transactions on Neural Networks and Learning Systems"},{"key":"10.1016\/j.neunet.2026.109157_bib0011","series-title":"Proceedings of the AAAI conference on artificial intelligence","first-page":"1148","article-title":"Deep feature space trojan attack of neural networks by controlled detoxification","volume":"vol. 35","author":"Cheng","year":"2021"},{"key":"10.1016\/j.neunet.2026.109157_bib0012","unstructured":"Downer, J., Wang, R., & Wang, B. (2024). Securing GNNs: Explanation-based identification of backdoored training graphs. arXiv e-prints\u20132403."},{"key":"10.1016\/j.neunet.2026.109157_bib0013","unstructured":"Du, M., Jia, R., & Song, D. (2019). Robust anomaly detection and backdoor attack detection via differential privacy. arXiv: 1911.07116."},{"key":"10.1016\/j.neunet.2026.109157_bib0014","doi-asserted-by":"crossref","first-page":"15","DOI":"10.37943\/ELGD6408","article-title":"Negative-sampling word-embedding method","volume":"10","author":"Erzhankyzy","year":"2022","journal-title":"Scientific Journal of Astana IT University"},{"key":"10.1016\/j.neunet.2026.109157_bib0015","series-title":"Proceedings of the 35th annual computer security applications conference","first-page":"113","article-title":"Strip: A defence against Trojan attacks on deep neural networks","author":"Gao","year":"2019"},{"key":"10.1016\/j.neunet.2026.109157_bib0016","unstructured":"Gu, T., Dolan-Gavitt, B., & Garg, S. (2017). BadNets: Identifying vulnerabilities in the machine learning model supply chain. arXiv: 1708.06733."},{"key":"10.1016\/j.neunet.2026.109157_bib0017","doi-asserted-by":"crossref","unstructured":"Guan, Z., Du, M., & Liu, N. (2023). XGBD: Explanation-guided graph backdoor detection. arXiv: 2308.04406.","DOI":"10.3233\/FAIA230363"},{"key":"10.1016\/j.neunet.2026.109157_bib0018","doi-asserted-by":"crossref","first-page":"261","DOI":"10.1109\/OJSP.2022.3190213","article-title":"An overview of backdoor attacks against deep neural networks and possible defences","volume":"3","author":"Guo","year":"2022","journal-title":"IEEE Open Journal of Signal Processing"},{"key":"10.1016\/j.neunet.2026.109157_bib0019","doi-asserted-by":"crossref","first-page":"970","DOI":"10.1109\/TIFS.2023.3329426","article-title":"Universal detection of backdoor attacks via density-based clustering and centroids analysis","volume":"19","author":"Guo","year":"2024","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"10.1016\/j.neunet.2026.109157_bib0020","doi-asserted-by":"crossref","first-page":"996","DOI":"10.1162\/tacl_a_00684","article-title":"SEEP: Training dynamics grounds latent representation search for mitigating backdoor poisoning attacks","volume":"12","author":"He","year":"2024","journal-title":"Transactions of the Association for Computational Linguistics"},{"issue":"4","key":"10.1016\/j.neunet.2026.109157_bib0021","doi-asserted-by":"crossref","first-page":"3371","DOI":"10.1109\/TDSC.2025.3525756","article-title":"DBSSL: A scheme to detect backdoor attacks in self-supervised learning models","volume":"22","author":"Huang","year":"2025","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"10.1016\/j.neunet.2026.109157_bib0022","series-title":"Asian conference on intelligent information and database systems","first-page":"269","article-title":"Graph classification via graph structure learning","author":"Huynh","year":"2022"},{"key":"10.1016\/j.neunet.2026.109157_bib0023","series-title":"2011 6th international conference on computer sciences and convergence information technology (ICCIT)","first-page":"367","article-title":"Citation network visualization of citeseer dataset","author":"Khalid","year":"2011"},{"key":"10.1016\/j.neunet.2026.109157_bib0024","series-title":"Proceedings of the IEEE\/CVF conference on computer vision and pattern recognition","first-page":"301","article-title":"Universal litmus patterns: Revealing backdoor attacks in cnns","author":"Kolouri","year":"2020"},{"key":"10.1016\/j.neunet.2026.109157_bib0025","series-title":"Data poisoning in network anomaly detection systems","author":"Li","year":"2024"},{"key":"10.1016\/j.neunet.2026.109157_bib0026","series-title":"2021\u202fIEEE\/ACM 43rd international conference on software engineering (ICSE)","first-page":"263","article-title":"DeepPayload: Black-box backdoor attack on deep learning models through neural payload injection","author":"Li","year":"2021"},{"key":"10.1016\/j.neunet.2026.109157_bib0027","first-page":"14900","article-title":"Anti-backdoor learning: Training clean models on poisoned data","volume":"34","author":"Li","year":"2021","journal-title":"Advances in Neural Information Processing Systems"},{"key":"10.1016\/j.neunet.2026.109157_bib0028","doi-asserted-by":"crossref","unstructured":"Li, Y., Xu, Z., Jiang, F., Niu, L., Sahabandu, D., Ramasubramanian, B., & Poovendran, R. (2024). CleanGen: Mitigating backdoor attacks for generation tasks in large language models. arXiv: 2406.12257.","DOI":"10.18653\/v1\/2024.emnlp-main.514"},{"key":"10.1016\/j.neunet.2026.109157_bib0029","series-title":"25th Annual Network And Distributed System Security Symposium (NDSS 2018)","article-title":"Trojaning attack on neural networks","author":"Liu","year":"2018"},{"key":"10.1016\/j.neunet.2026.109157_bib0030","article-title":"Cora graph dataset","author":"McCallum","year":"2017","journal-title":"McCallum, Andrew. Cora Dataset. Ann Arbor, MI: Inter-university Consortium for Political and Social Research [distributor], 2017-07-21. https:\/\/doi.org\/10.3886\/E100859V1"},{"key":"10.1016\/j.neunet.2026.109157_bib0031","unstructured":"Popovic, D., Sadeghi, A., Yu, T., Chawla, S., & Khalil, I. (2025). DeBackdoor: A deductive framework for detecting backdoor attacks on deep models with limited data. arXiv: 2503.21305."},{"issue":"4","key":"10.1016\/j.neunet.2026.109157_bib0032","doi-asserted-by":"crossref","first-page":"42","DOI":"10.1002\/cplx.20075","article-title":"Activation clustering in neural and social networks","volume":"10","author":"Puljic","year":"2005","journal-title":"Complexity"},{"key":"10.1016\/j.neunet.2026.109157_bib0033","article-title":"Defending neural backdoors via generative distribution modeling","volume":"32","author":"Qiao","year":"2019"},{"key":"10.1016\/j.neunet.2026.109157_bib0034","series-title":"An Innovative Big Data Analytics Method for Detecting Data Abnormalities in Business Organisations","author":"Sabharwal","year":"2025"},{"key":"10.1016\/j.neunet.2026.109157_bib0035","unstructured":"Schulth, L., Berghoff, C., & Neu, M. (2022). Detecting backdoor poisoning attacks on deep neural networks by heatmap clustering. arXiv: 2204.12848."},{"issue":"7","key":"10.1016\/j.neunet.2026.109157_bib0036","doi-asserted-by":"crossref","first-page":"5783","DOI":"10.1007\/s10115-025-02402-9","article-title":"Multi-attention DeepCRNN: An efficient and explainable intrusion detection framework for Internet of Medical Things environments","volume":"67","author":"Sharma","year":"2025","journal-title":"Knowledge and Information Systems"},{"key":"10.1016\/j.neunet.2026.109157_bib0037","series-title":"Ceur workshop proc","first-page":"239","article-title":"Detection and prediction of the vulnerabilities in software systems based on behavioral analysis with machine learning","volume":"vol. 3736","author":"Sierhieiev","year":"2024"},{"key":"10.1016\/j.neunet.2026.109157_bib0038","unstructured":"Su, Y., Zhang, J., Li, Y., Zhang, T., Guo, Q., Zhang, W., Yu, N., Lukas, N., & Zhou, W. (2025). BURN: Backdoor unlearning via adversarial boundary analysis. arXiv: 2507.10491."},{"key":"10.1016\/j.neunet.2026.109157_bib0039","unstructured":"Sui, H., Chen, B., Zhang, J., Zhu, C., Wu, D., Lu, Q., & Long, G. (2024). DMGNN: Detecting and mitigating backdoor attacks in graph neural networks. arXiv: 2410.14105."},{"key":"10.1016\/j.neunet.2026.109157_bib0040","series-title":"Dynamic Ransomware Detection with Adaptive Encryption Pattern Recognition Techniques","author":"Totham","year":"2024"},{"key":"10.1016\/j.neunet.2026.109157_bib0041","article-title":"Spectral signatures in backdoor attacks","volume":"31","author":"Tran","year":"2018","journal-title":"Advances in Neural Information Processing Systems"},{"key":"10.1016\/j.neunet.2026.109157_bib0042","doi-asserted-by":"crossref","unstructured":"Vartak, A., Hossain, K. M., & Oates, T. (2025). DeBUGCN\u2013detecting backdoors in CNNs using graph convolutional networks. arXiv: 2502.18592.","DOI":"10.1109\/IJCNN64981.2025.11227981"},{"key":"10.1016\/j.neunet.2026.109157_bib0043","doi-asserted-by":"crossref","first-page":"18215","DOI":"10.1109\/ACCESS.2025.3531716","article-title":"Efficient method for robust backdoor detection and removal in feature space using clean data","volume":"13","author":"Vr\u0161nak","year":"2025","journal-title":"IEEE Access"},{"key":"10.1016\/j.neunet.2026.109157_bib0044","series-title":"2019\u202fIEEE Symposium on security and privacy (SP)","first-page":"707","article-title":"Neural cleanse: Identifying and mitigating backdoor attacks in neural networks","author":"Wang","year":"2019"},{"key":"10.1016\/j.neunet.2026.109157_bib0045","unstructured":"Wang, J., Zhang, P., Tao, R., Yang, J., Liu, H., Liu, X., Wei, Y., & Zhao, Y. (2024). Behavior backdoor for deep learning models. arXiv: 2412.01369."},{"key":"10.1016\/j.neunet.2026.109157_bib0046","first-page":"43549","article-title":"Waveattack: Asymmetric frequency obfuscation-based backdoor attacks against deep neural networks","volume":"37","author":"Xia","year":"2024","journal-title":"Advances in Neural Information Processing Systems"},{"key":"10.1016\/j.neunet.2026.109157_bib0047","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2021.102280","article-title":"Reverse engineering imperceptible backdoor attacks on deep neural networks for detection and training set cleansing","volume":"106","author":"Xiang","year":"2021","journal-title":"Computers & Security"},{"issue":"1","key":"10.1016\/j.neunet.2026.109157_bib0048","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1186\/s42400-024-00305-w","article-title":"A graph backdoor detection method for data collection scenarios","volume":"8","author":"Xing","year":"2025","journal-title":"Cybersecurity"},{"issue":"1","key":"10.1016\/j.neunet.2026.109157_bib0049","doi-asserted-by":"crossref","first-page":"205","DOI":"10.1038\/s41597-020-0543-2","article-title":"Building a pubmed knowledge graph","volume":"7","author":"Xu","year":"2020","journal-title":"Scientific Data"},{"key":"10.1016\/j.neunet.2026.109157_bib0050","series-title":"Proceedings of the 38th annual computer security applications conference","first-page":"684","article-title":"More is better (mostly): On the backdoor attacks in federated graph neural networks","author":"Xu","year":"2022"},{"issue":"11","key":"10.1016\/j.neunet.2026.109157_bib0051","first-page":"2973","article-title":"Deepro: Provenance-based APT campaigns detection via GNN","volume":"16","author":"Yan","year":"2022","journal-title":"IEE Conference on Trust, Security and Privacy"},{"key":"10.1016\/j.neunet.2026.109157_bib0052","unstructured":"Yang, X., Li, G., & Li, J. (2024a). Graph neural backdoor: Fundamentals, methodologies, applications, and future directions. arXiv: 2406.10573."},{"issue":"8","key":"10.1016\/j.neunet.2026.109157_bib0053","doi-asserted-by":"crossref","first-page":"5692","DOI":"10.1109\/TPAMI.2024.3371473","article-title":"Does negative sampling matter? A review with insights into its theory and applications","volume":"46","author":"Yang","year":"2024","journal-title":"IEEE Transactions on Pattern Analysis and Machine Intelligence"},{"issue":"2","key":"10.1016\/j.neunet.2026.109157_bib0054","doi-asserted-by":"crossref","first-page":"53","DOI":"10.1561\/3300000039","article-title":"Reverse engineering of deceptions on machine-and human-centric attacks","volume":"6","author":"Yao","year":"2024","journal-title":"Foundations and Trends\u00ae in Privacy and Security"},{"key":"10.1016\/j.neunet.2026.109157_bib0055","series-title":"Network and distributed system security symposium, NDSS","article-title":"DShield: Defending against backdoor attacks on graph neural networks via discrepancy learning","author":"Yu","year":"2025"},{"key":"10.1016\/j.neunet.2026.109157_bib0056","series-title":"International conference on machine learning","first-page":"40888","article-title":"Graph contrastive backdoor attacks","author":"Zhang","year":"2023"},{"issue":"5","key":"10.1016\/j.neunet.2026.109157_bib0057","doi-asserted-by":"crossref","first-page":"4607","DOI":"10.1109\/TDSC.2025.3550330","article-title":"Runtime backdoor detection for federated learning via representational dissimilarity analysis","volume":"22","author":"Zhang","year":"2025","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"10.1016\/j.neunet.2026.109157_bib0058","series-title":"Proceedings of the 26th ACM symposium on access control models and technologies","first-page":"15","article-title":"Backdoor attacks to graph neural networks","author":"Zhang","year":"2021"},{"key":"10.1016\/j.neunet.2026.109157_bib0059","series-title":"Proceedings of the 30th ACM SIGKDD conference on knowledge discovery and data mining","first-page":"4386","article-title":"Rethinking graph backdoor attacks: A distribution-preserving perspective","author":"Zhang","year":"2024"},{"issue":"7","key":"10.1016\/j.neunet.2026.109157_bib0060","doi-asserted-by":"crossref","first-page":"12102","DOI":"10.1109\/JIOT.2023.3332848","article-title":"Effective backdoor attack on graph neural networks in spectral domain","volume":"11","author":"Zhao","year":"2024","journal-title":"IEEE Internet of Things Journal"}],"container-title":["Neural Networks"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0893608026006180?httpAccept=text\/xml","content-type":"text\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/api.elsevier.com\/content\/article\/PII:S0893608026006180?httpAccept=text\/plain","content-type":"text\/plain","content-version":"vor","intended-application":"text-mining"}],"deposited":{"date-parts":[[2026,6,7]],"date-time":"2026-06-07T19:59:11Z","timestamp":1780862351000},"score":1,"resource":{"primary":{"URL":"https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0893608026006180"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,11]]},"references-count":60,"alternative-id":["S0893608026006180"],"URL":"https:\/\/doi.org\/10.1016\/j.neunet.2026.109157","relation":{},"ISSN":["0893-6080"],"issn-type":[{"value":"0893-6080","type":"print"}],"subject":[],"published":{"date-parts":[[2026,11]]},"assertion":[{"value":"Elsevier","name":"publisher","label":"This article is maintained by"},{"value":"XAI-DTBD: Explainable dynamic threshold-based backdoor detection in graph neural networks","name":"articletitle","label":"Article Title"},{"value":"Neural Networks","name":"journaltitle","label":"Journal Title"},{"value":"https:\/\/doi.org\/10.1016\/j.neunet.2026.109157","name":"articlelink","label":"CrossRef DOI link to publisher maintained version"},{"value":"article","name":"content_type","label":"Content Type"},{"value":"\u00a9 2026 Published by Elsevier Ltd.","name":"copyright","label":"Copyright"}],"article-number":"109157"}}