{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,2]],"date-time":"2025-08-02T17:44:25Z","timestamp":1754156665643,"version":"3.41.2"},"reference-count":124,"publisher":"Informa UK Limited","issue":"6","content-domain":{"domain":["www.tandfonline.com"],"crossmark-restriction":true},"short-container-title":["Cybernetics and Systems"],"published-print":{"date-parts":[[2025,8,18]]},"DOI":"10.1080\/01969722.2025.2483718","type":"journal-article","created":{"date-parts":[[2025,4,24]],"date-time":"2025-04-24T10:40:26Z","timestamp":1745491226000},"page":"917-970","update-policy":"https:\/\/doi.org\/10.1080\/tandf_crossmark_01","source":"Crossref","is-referenced-by-count":0,"title":["MCL++ : Strengthening Defenses Against Backdoor Poisoning Attacks"],"prefix":"10.1080","volume":"56","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8700-0983","authenticated-orcid":false,"given":"Shymala Gowri","family":"Selvaganapathy","sequence":"first","affiliation":[{"name":"Department of Information Technology, PSG College of Technology","place":["Coimbatore, India"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sudha","family":"Sadasivam","sequence":"additional","affiliation":[{"name":"Department of Computer Science and Engineering, PSG College of Technology","place":["Coimbatore, India"]}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"301","published-online":{"date-parts":[[2025,4,24]]},"reference":[{"key":"e_1_3_2_2_1","doi-asserted-by":"crossref","unstructured":"Aghakhani Hojjat Lea Sch\u00f6nherr Thorsten Eisenhofer Dorothea Kolossa Thorsten Holz Christopher Kruegel and Giovanni Vigna. 2023. \u201cVenomave: Targeted Poisoning against Speech Recognition.\u201d In 2023 IEEE Conference on Secure and Trustworthy Machine Learning (SaTML) 404\u2013417. IEEE.https:\/\/ieeexplore.ieee.org\/abstract\/document\/10136135","DOI":"10.1109\/SaTML54575.2023.00035"},{"key":"e_1_3_2_3_1","unstructured":"Amazon. 2024. \u201cMLaaS.\u201d https:\/\/aws.amazon.com\/ai\/machine-learning\/"},{"key":"e_1_3_2_4_1","doi-asserted-by":"crossref","unstructured":"Aryal Kshitiz Gupta Maanak and Mahmoud Abdelsalam. 2022. \u201cAnalysis of Label-Flip Poisoning Attack on Machine Learning Based Malware Detector.\u201d In 2022 IEEE International Conference on Big Data (Big Data) 4236\u20134245. IEEE. https:\/\/ieeexplore.ieee.org\/document\/10020528","DOI":"10.1109\/BigData55660.2022.10020528"},{"key":"e_1_3_2_5_1","unstructured":"Azure. 2024. \u201cMLaaS.\u201d https:\/\/azure.microsoft.com\/en-us\/products\/machine-learning\/"},{"key":"e_1_3_2_6_1","doi-asserted-by":"crossref","unstructured":"Barni Mauro Kassem Kallas and Benedetta Tondi. 2019. \u201cA New Backdoor Attack in Cnns by Training Set Corruption without Label Poisoning.\u201d In 2019 IEEE International Conference on Image Processing (ICIP) 101\u2013105. IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/8802997","DOI":"10.1109\/ICIP.2019.8802997"},{"key":"e_1_3_2_7_1","doi-asserted-by":"crossref","unstructured":"Cai Hanbo Pengcheng Zhang Hai Dong Yan Xiao Stefanos Koffas and Yiming Li. 2024. \u201cTowards Stealthy Backdoor Attacks against Speech Recognition via Elements of Sound.\u201d IEEE Transactions on Information Forensics and Security. https:\/\/ieeexplore.ieee.org\/document\/10538215","DOI":"10.1109\/TIFS.2024.3404885"},{"key":"e_1_3_2_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/s13042-016-0629-5"},{"key":"e_1_3_2_9_1","first-page":"8","article-title":"Deepinspect: A Black-Box Trojan Detection and Mitigation Framework for Deep Neural Networks","volume":"2","author":"Chen Huili","year":"2019","unstructured":"Chen, Huili, Cheng Fu, Jishen Zhao, and Farinaz Koushanfar. 2019. \u201cDeepinspect: A Black-Box Trojan Detection and Mitigation Framework for Deep Neural Networks.\u201d IJCAI 2: 8.","journal-title":"IJCAI"},{"key":"e_1_3_2_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3574159"},{"key":"e_1_3_2_11_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.104041"},{"key":"e_1_3_2_12_1","doi-asserted-by":"crossref","unstructured":"Chen Jinyin Xiaoming Zhao Haibin Zheng Xiao Li Sheng Xiang and Haifeng Guo. 2024. \u201cRobust Knowledge Distillation Based on Feature Variance Against Backdoored Teacher Model.\u201d arXiv preprint arXiv:2406.03409. https:\/\/arxiv.org\/html\/2406.03409v1","DOI":"10.1016\/j.asoc.2024.111907"},{"key":"e_1_3_2_13_1","unstructured":"Chen Kangjie Xiaoxuan Lou Guowen Xu Jiwei Li and Tianwei Zhang. 2022. \u201cClean-Image Backdoor: Attacking Multi-Label Models with Poisoned Labels Only.\u201d In The Eleventh International Conference on Learning Representations. Appleton WI Eleventh International Conference on Learning Representations ICLR 2023. https:\/\/openreview.net\/pdf?id=rFQfjDC9Mt"},{"key":"e_1_3_2_14_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103601"},{"key":"e_1_3_2_15_1","unstructured":"Chen Xinyun Chang Liu Bo Li Kimberly Lu and Dawn Song. 2017. \u201cTargeted Backdoor Attacks on Deep Learning Systems Using Data Poisoning.\u201d arXiv preprint arXiv:1712.05526. https:\/\/arxiv.org\/pdf\/1712.05526"},{"key":"e_1_3_2_16_1","doi-asserted-by":"crossref","unstructured":"Chen Xiaoyi Ahmed Salem Dingfan Chen Michael Backes Shiqing Ma Qingni Shen Zhonghai Wu and Yang Zhang. 2021. \u201cBadnl: Backdoor Attacks against Nlp Models with Semantic-Preserving Improvements.\u201d In Kevin Butler (Ed.) Proceedings of the 37th Annual Computer Security Applications Conference 554\u2013569. New York Association for Computing Machinery. https:\/\/dl.acm.org\/doi\/abs\/10.1145\/3485832.3485837","DOI":"10.1145\/3485832.3485837"},{"key":"e_1_3_2_17_1","doi-asserted-by":"crossref","unstructured":"Chen Zitao Pritam Dash and Karthik Pattabiraman. 2023. \u201cJujutsu: A Two-Stage Defense against Adversarial Patch Attacks on Deep Neural Networks.\u201d In Joseph K Liu (Ed.) Proceedings of the 2023 ACM Asia Conference on Computer and Communications Security 689\u2013703. New York Association for Computing Machinery. https:\/\/dl.acm.org\/doi\/10.1145\/3579856.3582816","DOI":"10.1145\/3579856.3582816"},{"key":"e_1_3_2_18_1","unstructured":"Chen Zhaorun Zhen Xiang Chaowei Xiao Dawn Song and Bo Li. 2024. \u201cAgentPoison: Red-Teaming LLM Agents via Poisoning Memory or Knowledge Bases.\u201d arXiv preprint arXiv:2407.12784 37: 130185--130213. https:\/\/proceedings.neurips.cc\/paper_files\/paper\/2024\/file\/eb113910e9c3f6242541c1652e30dfd6-Paper-Conference.pdf"},{"key":"e_1_3_2_19_1","doi-asserted-by":"crossref","unstructured":"Cheng Siyuan Guanhong Tao Yingqi Liu Shengwei An Xiangzhe Xu Shiwei Feng Guangyu Shen et\u00a0al. 2023. \u201cBeagle: Forensics of Deep Learning Backdoor Attack for Better Defense.\u201d arXiv preprint arXiv:2301.06241. https:\/\/www.ndss-symposium.org\/wp-content\/uploads\/2023\/02\/ndss2023_f944_paper.pdf","DOI":"10.14722\/ndss.2023.24944"},{"key":"e_1_3_2_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3585385"},{"key":"e_1_3_2_21_1","unstructured":"Council Forbes Tech. 2023. \u201cWhat a Corrupt Chatbot from the Past Can Teach Us About Todays Data Poisoning Threat.\u201d Forbes September 13."},{"key":"e_1_3_2_22_1","unstructured":"Dai Jiazhu and Haoyu Sun. 2024a. \u201cA Backdoor Attack against Link Prediction Tasks with Graph Neural Networks.\u201d arXiv preprint arXiv:2401.02663. https:\/\/arxiv.org\/html\/2401.02663v1"},{"key":"e_1_3_2_23_1","doi-asserted-by":"crossref","unstructured":"Dai Jiazhu and Haoyu Sun. 2024b. \u201cA Clean-Graph Backdoor Attack against Graph Convolutional Networks with Poisoned Label Only.\u201d arXiv preprint arXiv:2404.12704. https:\/\/arxiv.org\/html\/2404.12704v1","DOI":"10.1109\/AINIT65432.2025.11035009"},{"key":"e_1_3_2_24_1","doi-asserted-by":"crossref","unstructured":"Deng Jia Wei Dong Richard Socher Li-Jia Li Kai Li and Li Fei-Fei. 2009. \u201cImagenet: A Large-Scale Hierarchical Image Database.\u201d In Daniel Huttenlocher Gerard Medioni James Rehg (editors) 2009 IEEE Conference on Computer Vision and Pattern Recognition 248\u2013255. Miami IEEE. https:\/\/ieeexplore.ieee.org\/document\/5206848","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"e_1_3_2_25_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00432-023-05549-6"},{"key":"e_1_3_2_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSC.2024.3376255"},{"key":"e_1_3_2_27_1","first-page":"149","volume-title":"Handbook of Trustworthy Federated Learning","author":"Furth Nicholas","year":"2024","unstructured":"Furth, Nicholas, Abdallah Khreishah, Guanxiong Liu, NhatHai Phan, and Yasser Jararweh. 2024. \u201cUnfair Trojan: Targeted Backdoor Attacks Against Model Fairness.\u201d In Handbook of Trustworthy Federated Learning, 149\u2013168. Springer. New Jersey, New Jersey Institute of Technology. https:\/\/link.springer.com\/chapter\/10.1007\/978-3-031-58923-2_5"},{"key":"e_1_3_2_28_1","doi-asserted-by":"crossref","unstructured":"Gao Kuofeng Yang Bai Jindong Gu Yong Yang and Shu-Tao Xia. 2023. \u201cBackdoor Defense via Adaptively Splitting Poisoned Dataset.\u201d In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition 4005\u20134014. Vancouer Computer Vision Foundation. https:\/\/openaccess.thecvf.com\/content\/CVPR2023\/papers\/Gao_Backdoor_Defense_via_Adaptively_Splitting_Poisoned_Dataset_CVPR_2023_paper.pdf","DOI":"10.1109\/CVPR52729.2023.00390"},{"key":"e_1_3_2_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3055844"},{"key":"e_1_3_2_30_1","doi-asserted-by":"crossref","unstructured":"Gao Yansong Change Xu Derui Wang Shiping Chen Damith C. Ranasinghe and Surya Nepal. 2019. \u201cStrip: A Defence against Trojan Attacks on Deep Neural Networks.\u201d In David Balenson (Ed.) Proceedings of the 35th Annual Computer Security Applications Conference 113\u2013125. San Juan USA David Balenson Publisher name: Association for Computing Machinery. https:\/\/dl.acm.org\/doi\/10.1145\/3359789.3359790","DOI":"10.1145\/3359789.3359790"},{"key":"e_1_3_2_31_1","doi-asserted-by":"crossref","unstructured":"Ge Yunjie Qian Wang Jiayuan Yu Chao Shen and Qi Li. 2023. \u201cData Poisoning and Backdoor Attacks on Audio Intelligence Systems.\u201d IEEE Communications Magazine.","DOI":"10.1109\/MCOM.012.2200596"},{"key":"e_1_3_2_32_1","unstructured":"Geiping Jonas Liam Fowl Gowthami Somepalli Micah Goldblum Michael Moeller and Tom Goldstein. 2021. \u201cWhat Doesn\u2019t Kill You Makes You Robust (er): How to Adversarially Train against Data Poisoning.\u201d arXiv preprint arXiv:2102.13624. https:\/\/aisecure-workshop.github.io\/aml-iclr2021\/papers\/14.pdf"},{"key":"e_1_3_2_33_1","doi-asserted-by":"publisher","DOI":"10.1259\/bjr.20230023"},{"key":"e_1_3_2_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2022.3162397"},{"key":"e_1_3_2_35_1","unstructured":"Google. 2024. \u201cMLaaS\u201d. https:\/\/cloud.google.com\/products\/ai"},{"key":"e_1_3_2_36_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.trc.2024.104797"},{"key":"e_1_3_2_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3251842"},{"key":"e_1_3_2_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2909068"},{"key":"e_1_3_2_39_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2024.125359"},{"key":"e_1_3_2_40_1","unstructured":"Guo Junfeng Ang Li and Cong Liu. 2021. \u201cAEVA: Black-Box Backdoor Detection Using Adversarial Extreme Value Analysis.\u201d In International Conference on Learning Representations. Vienna International Conference on Learning Representations. https:\/\/openreview.net\/pdf?id=OM_lYiHXiCL"},{"key":"e_1_3_2_41_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2023.122442"},{"key":"e_1_3_2_42_1","unstructured":"Han Tingxu Shenghan Huang Ziqi Ding Weisong Sun Yebo Feng Chunrong Fang Jun Li et\u00a0al. 2024. \u201cOn the Effectiveness of Distillation in Mitigating Backdoors in Pre-Trained Encoder.\u201d arXiv preprint arXiv:2403.03846.https:\/\/arxiv.org\/html\/2403.03846v1"},{"key":"e_1_3_2_43_1","doi-asserted-by":"crossref","unstructured":"Han Xingshuo Yutong Wu Qingjie Zhang Yuan Zhou Yuan Xu Han Qiu Guowen Xu and Tianwei Zhang. 2024. \u201cBackdooring Multimodal Learning.\u201d In Trent Jaeger (Ed.) 2024 IEEE Symposium on Security and Privacy (SP) 3385\u20133403. New York IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/10646608","DOI":"10.1109\/SP54263.2024.00031"},{"key":"e_1_3_2_44_1","doi-asserted-by":"crossref","unstructured":"He Ying Zhili Shen Jingyu Hua Qixuan Dong Jiacheng Niu Wei Tong Xu Huang Chen Li and Sheng Zhong. 2023. \u201cBackdoor Attack Against Split Neural Network-Based Vertical Federated Learning.\u201d IEEE Transactions on Information Forensics and Security. New York IEEE. https:\/\/ieeexplore.ieee.org\/document\/10296882","DOI":"10.1109\/TIFS.2023.3327853"},{"key":"e_1_3_2_45_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.commtr.2024.100127"},{"key":"e_1_3_2_46_1","unstructured":"Intelligence Advanced Research Projects Activity (IARPA). 2023. \u201cTROJAI: Trojans in Artificial Intelligence.\u201d https:\/\/www.iarpa.gov\/research-programs\/trojai"},{"key":"e_1_3_2_47_1","doi-asserted-by":"publisher","DOI":"10.1186\/s13640-024-00625-4"},{"key":"e_1_3_2_48_1","doi-asserted-by":"crossref","unstructured":"Jiang Haoyu Nan Li and Ping Yi. 2024. \u201cPUBA: A Physical Undirected Backdoor Attack in Vision-Based UAV Detection and Tracking Systems.\u201d In 2024 International Joint Conference on Neural Networks (IJCNN) 1\u20138. NewYork IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/10650950","DOI":"10.1109\/IJCNN60899.2024.10650950"},{"key":"e_1_3_2_49_1","doi-asserted-by":"crossref","unstructured":"Jiang Wan Yunfeng Diao He Wang Jianxin Sun Meng Wang and Richang Hong. 2023. \u201cUnlearnable Examples Give a False Sense of Security: Piercing through Unexploitable Data with Learnable Examples.\u201d In Proceedings of the 31st ACM International Conference on Multimedia 8910\u20138921. Ottawa ACM. https:\/\/dl.acm.org\/doi\/abs\/10.1145\/3581783.3611833","DOI":"10.1145\/3581783.3611833"},{"key":"e_1_3_2_50_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2024.123224"},{"key":"e_1_3_2_51_1","unstructured":"Krizhevsky Alex and Geoffrey Hinton et\u00a0al. 2009. \u201cLearning Multiple Layers of Features from Tiny Images.\u201d https:\/\/www.cs.toronto.edu\/\u223ckriz\/learning-features-2009-TR.pdf"},{"key":"e_1_3_2_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3021407"},{"key":"e_1_3_2_53_1","doi-asserted-by":"crossref","unstructured":"Li Xi Songhe Wang Ruiquan Huang Mahanth Gowda and George Kesidis. 2024. \u201cTemporal-Distributed Backdoor Attack against Video Based Action Recognition.\u201d In Jennifer Dy (Ed.) Proceedings of the AAAI Conference on Artificial Intelligence vol. 38 3199\u20133207. Vancover Association for the Advancement of Artificial Intelligence. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/28104","DOI":"10.1609\/aaai.v38i4.28104"},{"key":"e_1_3_2_54_1","first-page":"14900","article-title":"Anti-Backdoor Learning: Training Clean Models on Poisoned Data","volume":"34","author":"Li Yige","year":"2021","unstructured":"Li, Yige, Xixiang Lyu, Nodens Koren, Lingjuan Lyu, Bo Li, and Xingjun Ma. 2021a. \u201cAnti-Backdoor Learning: Training Clean Models on Poisoned Data.\u201d Advances in Neural Information Processing Systems 34: 14900\u201314912.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_55_1","unstructured":"Li Yige Xixiang Lyu Nodens Koren Lingjuan Lyu Bo Li and Xingjun Ma. 2021b. \u201cNeural Attention Distillation: Erasing Backdoor Triggers from Deep Neural Networks.\u201d arXiv preprint arXiv:2101.05930. https:\/\/openreview.net\/pdf?id=9l0K4OM-oXE"},{"key":"e_1_3_2_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/OJCS.2023.3267221"},{"key":"e_1_3_2_57_1","doi-asserted-by":"crossref","unstructured":"Lin Weilin Li Liu Jianze Li and Hui Xiong. 2024. \u201cFusing Pruned and Backdoored Models: Optimal Transport-Based Data-Free Backdoor Mitigation.\u201d arXiv preprint arXiv:2408.15861 39 (25): 26299--26307. https:\/\/arxiv.org\/pdf\/2408.15861","DOI":"10.1609\/aaai.v39i25.34828"},{"key":"e_1_3_2_58_1","doi-asserted-by":"crossref","unstructured":"Liu Xinwei Xiaojun Jia Jindong Gu Yuan Xun Siyuan Liang and Xiaochun Cao. 2024. \u201cDoes Few-Shot Learning Suffer from Backdoor Attacks.\u201d In Jennifer Dy (Ed.) Proceedings of the AAAI Conference on Artificial Intelligence vol. 38 19893\u201319901. Vancover Association for the Advancement of Artificial Intelligence. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/29965","DOI":"10.1609\/aaai.v38i18.29965"},{"key":"e_1_3_2_59_1","doi-asserted-by":"crossref","unstructured":"Liu Yingqi Shiqing Ma Yousra Aafer Wen-Chuan Lee Juan Zhai Weihang Wang and Xiangyu Zhang. 2018. \u201cTrojaning Attack on Neural Networks.\u201d In 25th Annual Network And Distributed System Security Symposium (NDSS 2018). Internet Society.https:\/\/www.ndss-symposium.org\/wp-content\/uploads\/2018\/02\/ndss2018_03A-5_Liu_paper.pdf","DOI":"10.14722\/ndss.2018.23291"},{"key":"e_1_3_2_60_1","doi-asserted-by":"crossref","unstructured":"Liu Yunfei Xingjun Ma James Bailey and Feng Lu. 2020. \u201cReflection Backdoor: A Natural Backdoor Attack on Deep Neural Networks.\u201d In Computer Vision\u2013ECCV 2020: 16th European Conference August 23\u201328 2020 Proceedings Part X 16 182\u2013199. Glasgow UK: Springer.","DOI":"10.1007\/978-3-030-58607-2_11"},{"key":"e_1_3_2_61_1","doi-asserted-by":"crossref","unstructured":"Liu Zihao Tianhao Wang Mengdi Huai and Chenglin Miao. 2024. \u201cBackdoor Attacks via Machine Unlearning.\u201d In Proceedings of the AAAI Conference on Artificial Intelligence vol. 38 14115\u201314123. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/29321","DOI":"10.1609\/aaai.v38i13.29321"},{"key":"e_1_3_2_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/3632745"},{"key":"e_1_3_2_63_1","doi-asserted-by":"crossref","unstructured":"Ma Zhuo Yilong Yang Yang Liu Tong Yang Xinjing Liu Teng Li and Zhan Qin. 2024. \u201cNeed for Speed: Taming Backdoor Attacks with Speed and Precision.\u201d In 2024 IEEE Symposium on Security and Privacy (SP) 228\u2013228. IEEE Computer Society. https:\/\/ieeexplore.ieee.org\/abstract\/document\/10646685","DOI":"10.1109\/SP54263.2024.00216"},{"key":"e_1_3_2_64_1","doi-asserted-by":"crossref","unstructured":"Mamta Mamta Rishikant Chigrupaatii and Asif Ekbal. 2024. \u201cBiasWipe: Mitigating Unintended Bias in Text Classifiers through Model Interpretability.\u201d In Proceedings of the 2024 Conference on Empirical Methods in Natural Language Processing 21059\u201321070. https:\/\/aclanthology.org\/2024.emnlp-main.1172\/","DOI":"10.18653\/v1\/2024.emnlp-main.1172"},{"key":"e_1_3_2_65_1","unstructured":"May Brandon B. Norman Joseph Tatro Piyush Kumar and Nathan Shnidman. 2023. \u201cSalient Conditional Diffusion for Backdoors.\u201d In ICLR 2023 Workshop on Backdoor Attacks and Defenses in Machine Learning. https:\/\/openreview.net\/pdf?id=jWdvNrV1q5"},{"key":"e_1_3_2_66_1","unstructured":"Messaoud Ben Amor Kaouther Kathrin Grosse Mickael Chen Matthieu Cord Patrick P\u00e9rez and Alexandre Alahi. 2023. \u201cManipulating Trajectory Prediction with Backdoors.\u201d https:\/\/www.strc.ch\/2024\/Messaoud_EtAl.pdf"},{"key":"e_1_3_2_67_1","unstructured":"Miah Abdullah Arafat Kaan Icer Resit Sendag and Yu Bi. 2024. \u201cNoiseAttack: An Evasive Sample-Specific Multi-Targeted Backdoor Attack Through White Gaussian Noise.\u201d arXiv preprint arXiv:2409.02251. http:\/\/arxiv.org\/html\/2409.02251v1"},{"key":"e_1_3_2_68_1","unstructured":"MITRECorporationMalware. 2024a. \u201cAML.CS0010: Adversarial Examples for DNN-Based Malware Detection Systems.\u201d https:\/\/atlas.mitre.org\/studies\/AML.CS0010\/"},{"key":"e_1_3_2_69_1","unstructured":"MITRECorporationPoison. 2024b. \u201cAML.CS0021: Detecting and Mitigating Poisoning Attacks on Machine Learning Models.\u201d https:\/\/atlas.mitre.org\/studies\/AML.CS0021\/"},{"issue":"1","key":"e_1_3_2_70_1","first-page":"16","article-title":"Exploiting Machine Learning to Subvert Your Spam","volume":"8","author":"Nelson Blaine","year":"2008","unstructured":"Nelson, Blaine, Marco Barreno, Fuching Jack Chi, Anthony D. Joseph, Benjamin Ip Rubinstein, Udam Saini, Charles Sutton, J. Doug Tygar, and Kai Xia. 2008. \u201cExploiting Machine Learning to Subvert Your Spam.\u201d Leet 8 (1\u20139): 16\u201317.","journal-title":"Leet"},{"key":"e_1_3_2_71_1","doi-asserted-by":"crossref","unstructured":"Newsome James Brad Karp and Dawn Song. 2006. \u201cParagraph: Thwarting Signature Learning by Training Maliciously.\u201d In Recent Advances in Intrusion Detection: 9th International Symposium RAID 2006 September 20\u201322 2006 Proceedings 9 81\u2013105. Hamburg Germany: Springer.","DOI":"10.1007\/11856214_5"},{"key":"e_1_3_2_72_1","unstructured":"Nguyen Quang H. Nguyen Ngoc-Hieu The-Anh Ta Thanh Nguyen-Tang Kok-Seng Wong Hoang Thanh-Tung and Khoa D. Doan. 2024. \u201cWicked Oddities: Selectively Poisoning for Effective Clean-Label Backdoor Attacks.\u201d arXiv preprint arXiv:2407.10825. https:\/\/arxiv.org\/pdf\/2407.10825"},{"key":"e_1_3_2_73_1","unstructured":"Nguyen Son Thinh Nguyen Khoa Doan and Kok-Seng Wong. 2024. \u201cVenomancer: Towards Imperceptible and Target-on-Demand Backdoor Attacks in Federated Learning.\u201d arXiv preprint arXiv:2407.03144. https:\/\/arxiv.org\/html\/2407.03144v2"},{"key":"e_1_3_2_74_1","unstructured":"Nguyen Tuan Anh and Anh Tuan Tran. 2021. \u201cWaNet-Imperceptible Warping-Based Backdoor Attack.\u201d In International Conference on Learning Representations.https:\/\/openreview.net\/pdf?id=eEn8KTtJOx"},{"key":"e_1_3_2_75_1","unstructured":"NIST. 2023. \u201cChallenge to Detect Stealthy Attacks.\u201dhttps:\/\/www.nist.gov\/news-events\/news\/2023\/09\/spotlight-challenge-detect-stealthy-attacks-against-ai-data"},{"key":"e_1_3_2_76_1","unstructured":"Pathmanathan Pankayaraj Souradip Chakraborty Xiangyu Liu Yongyuan Liang and Furong Huang. 2024. \u201cIs Poisoning a Real Threat to LLM Alignment? Maybe More so than You Think.\u201d arXiv preprint arXiv:2406.12091. https:\/\/arxiv.org\/pdf\/2406.12091"},{"key":"e_1_3_2_77_1","doi-asserted-by":"crossref","unstructured":"Peng Huaibing Huming Qiu Hua Ma Shuo Wang Anmin Fu Said F. Al-Sarawi Derek Abbott and Yansong Gao. 2024. \u201cOn Model Outsourcing Adaptive Attacks to Deep Learning Backdoor Defenses.\u201d IEEE Transactions on Information Forensics and Security. https:\/\/ieeexplore.ieee.org\/document\/10380638","DOI":"10.1109\/TIFS.2024.3349869"},{"key":"e_1_3_2_78_1","doi-asserted-by":"crossref","unstructured":"Perdisci Roberto David Dagon Wenke Lee Prahlad Fogla and Monirul Sharif. 2006. \u201cMisleading Worm Signature Generators Using Deliberate Noise Injection.\u201d In 2006 IEEE Symposium on Security and Privacy (S&P\u201906) 15. IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/1623998","DOI":"10.1109\/SP.2006.26"},{"key":"e_1_3_2_79_1","unstructured":"Pichler Georg Marco Romanelli Divya Prakash Manivannan Prashanth Krishnamurthy Siddharth Garg et\u00a0al. 2024. \u201cOn the (In) Feasibility of ML Backdoor Detection as an Hypothesis Testing Problem.\u201d In International Conference on Artificial Intelligence and Statistics 4051\u20134059. https:\/\/proceedings.mlr.press\/v238\/pichler24a\/pichler24a.pdf"},{"key":"e_1_3_2_80_1","doi-asserted-by":"crossref","unstructured":"Pmlr. Pourkeshavarz Mozhgan Mohammad Sabokrou and Amir Rasouli. 2024. \u201cAdversarial Backdoor Attack by Naturalistic Data Poisoning on Trajectory Prediction in Autonomous Driving\u201d Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition https:\/\/openaccess.thecvf.com\/content\/CVPR2024\/papers\/Pourkeshavarz_Adversarial_Backdoor_Attack_by_Naturalistic_Data_Poisoning_on_Trajectory_Prediction_CVPR_2024_paper.pdf","DOI":"10.1109\/CVPR52733.2024.01410"},{"key":"e_1_3_2_81_1","doi-asserted-by":"publisher","DOI":"10.1186\/s40537-024-00900-1"},{"key":"e_1_3_2_82_1","doi-asserted-by":"crossref","unstructured":"Qian Xiangyun Rui Zhang Zi Kang and Hui Xia. 2024. \u201cAn Invisible Backdoor Attack on Cloud Computing in the Internet of Things.\u201d In 2024 IEEE 10th Conference on Big Data Security on Cloud (BigDataSecurity) 101\u2013106. IEEE. https:\/\/ieeexplore.ieee.org\/document\/10564898","DOI":"10.1109\/BigDataSecurity62737.2024.00025"},{"key":"e_1_3_2_83_1","unstructured":"Qiang Yao Xiangyu Zhou Saleh Zare Zade Mohammad Amin Roshani Douglas Zytko and Dongxiao Zhu. 2024. \u201cLearning to Poison Large Language Models during Instruction Tuning.\u201d arXiv preprint arXiv:2402.13459. https:\/\/arxiv.org\/pdf\/2402.13459"},{"key":"e_1_3_2_84_1","doi-asserted-by":"crossref","unstructured":"Qiu Huming Hua Ma Zhi Zhang Alsharif Abuadbba Wei Kang Anmin Fu and Yansong Gao. 2023. \u201cTowards a Critical Evaluation of Robustness for Deep Learning Backdoor Countermeasures.\u201d IEEE Transactions on Information Forensics and Security. https:\/\/ieeexplore.ieee.org\/document\/10285122","DOI":"10.1109\/TIFS.2023.3324318"},{"key":"e_1_3_2_85_1","doi-asserted-by":"crossref","unstructured":"Qraitem Maan Kate Saenko and Bryan A. Plummer. 2023. \u201cBias Mimicking: A Simple Sampling Approach for Bias Mitigation.\u201d In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition 20311\u201320320. https:\/\/openaccess.thecvf.com\/content\/CVPR2023\/papers\/Qraitem_Bias_Mimicking_A_Simple_Sampling_Approach_for_Bias_Mitigation_CVPR_2023_paper.pdf","DOI":"10.1109\/CVPR52729.2023.01945"},{"key":"e_1_3_2_86_1","doi-asserted-by":"crossref","unstructured":"Rao Bing Guiqin Zhu Qiaolong Ding Dajiang Chen Mingsheng Cao Yang Cao and Feiyan Wang. 2024. \u201cA Steganographic Backdoor Attack Scheme on Encrypted Traffic.\u201d https:\/\/www.springerprofessional.de\/en\/a-steganographic-backdoor-attack-scheme-on-encrypted-traffic\/50483254","DOI":"10.21203\/rs.3.rs-4581072\/v1"},{"key":"e_1_3_2_87_1","volume-title":"703\u2013718","author":"Salem Ahmed","year":"2022","unstructured":"Salem, Ahmed, Rui Wen, Michael Backes, Shiqing Ma, and Yang Zhang. 2022. \u201cDynamic Backdoor Attacks against Machine Learning Models.\u201d In 2022 IEEE 7th European Symposium on Security and Privacy (Euros&P), 703\u2013718. IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/9797338"},{"key":"e_1_3_2_88_1","doi-asserted-by":"crossref","unstructured":"Saremi Mehrin Mohammad Khalooei Razieh Rastgoo and Mohammad Sabokrou. 2024. \u201cProjan: A Probabilistic Trojan Attack on Deep Neural Networks.\u201d Available at SSRN 4783051. https:\/\/papers.ssrn.com\/sol3\/papers.cfm?abstract_id=4783051","DOI":"10.2139\/ssrn.4783051"},{"key":"e_1_3_2_89_1","doi-asserted-by":"crossref","unstructured":"Sarkar Esha Hadjer Benkraouda and Michail Maniatakos. 2020. \u201cFaceHack: Triggering Backdoored Facial Recognition Systems Using Facial Characteristics.\u201d\u00a0arXiv\u00a0e-prints:\u00a0ArXiv\u20132006 4 (3): 361\u2013372. https:\/\/arxiv.org\/pdf\/2006.11623","DOI":"10.1109\/TBIOM.2021.3132132"},{"key":"e_1_3_2_90_1","unstructured":"Shan Shawn Arjun Nitin Bhagoji Haitao Zheng and Ben Y. Zhao. 2022. \u201cPoison Forensics: Traceback of Data Poisoning Attacks in Neural Networks.\u201d In 31st USENIX Security Symposium (USENIX Security 22) 3575\u20133592. https:\/\/www.usenix.org\/system\/files\/sec22-shan.pdf"},{"key":"e_1_3_2_91_1","first-page":"57336","article-title":"Black-Box Backdoor Defense via Zero-Shot Image Purification","volume":"36","author":"Shi Yucheng","year":"2023","unstructured":"Shi, Yucheng, Mengnan Du, Xuansheng Wu, Zihan Guan, Jin Sun, and Ninghao Liu. 2023. \u201cBlack-Box Backdoor Defense via Zero-Shot Image Purification.\u201d Advances in Neural Information Processing Systems 36: 57336\u201357366.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_92_1","doi-asserted-by":"crossref","unstructured":"Shokri Reza Marco Stronati Congzheng Song and Vitaly Shmatikov. 2017. \u201cMembership Inference Attacks against Machine Learning Models.\u201d In 2017 IEEE Symposium on Security and Privacy (SP) 3\u201318. IEEE. https:\/\/ieeexplore.ieee.org\/document\/7958568","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_2_93_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2012.02.016"},{"key":"e_1_3_2_94_1","doi-asserted-by":"crossref","unstructured":"Subramanya Akshayvarun Soroush Abbasi Koohpayegani Aniruddha Saha Ajinkya Tejankar and Hamed Pirsiavash. 2024. \u201cA Closer Look at Robustness of Vision Transformers to Backdoor Attacks.\u201d In Proceedings of the IEEE\/CVF Winter Conference on Applications of Computer Vision 3874\u20133883. https:\/\/openaccess.thecvf.com\/content\/WACV2024\/papers\/Subramanya_A_Closer_Look_at_Robustness_of_Vision_Transformers_to_Backdoor_WACV_2024_paper.pdf","DOI":"10.1109\/WACV57701.2024.00383"},{"key":"e_1_3_2_95_1","doi-asserted-by":"publisher","DOI":"10.1109\/TMC.2024.3404341"},{"key":"e_1_3_2_96_1","doi-asserted-by":"crossref","unstructured":"Tejankar Ajinkya Maziar Sanjabi Qifan Wang and Sinong Wang Hamed Firooz Hamed Pirsiavash and Liang Tan. 2023. \u201cDefending against Patchbased Backdoor Attacks on Self-Supervised Learning.\u201d In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition 12239\u201312249. https:\/\/openaccess.thecvf.com\/content\/CVPR2023\/papers\/Tejankar_Defending_Against_Patch-Based_Backdoor_Attacks_on_Self-Supervised_Learning_CVPR_2023_paper.pdf","DOI":"10.1109\/CVPR52729.2023.01178"},{"key":"e_1_3_2_97_1","unstructured":"Turner Alexander Dimitris Tsipras and Aleksander Madry. 2019. \u201cLabel-Consistent Backdoor Attacks.\u201d arXiv preprint arXiv:1912.02771. https:\/\/arxiv.org\/pdf\/1912.02771"},{"key":"e_1_3_2_98_1","doi-asserted-by":"crossref","unstructured":"Wang Bolun Yuanshun Yao Shawn Shan Huiying Li Bimal Viswanath Haitao Zheng Ben and Y. Zhao. 2019. \u201cNeural Cleanse: Identifying and Mitigating Backdoor Attacks in Neural Networks.\u201d In 2019 IEEE Symposium on Security and Privacy (SP) 707\u2013723. IEEE. https:\/\/ieeexplore.ieee.org\/abstract\/document\/8835365","DOI":"10.1109\/SP.2019.00031"},{"key":"e_1_3_2_99_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.103855"},{"key":"e_1_3_2_100_1","doi-asserted-by":"crossref","unstructured":"Wang Tong Yuan Yao Feng Xu Shengwei An Hanghang Tong and Ting Wang. 2022. \u201cAn Invisible Black-Box Backdoor Attack through Frequency Domain.\u201d In European Conference on Computer Vision 396\u2013413. Springer. https:\/\/link.springer.com\/chapter\/10.1007\/978-3-031-19778-9_23","DOI":"10.1007\/978-3-031-19778-9_23"},{"key":"e_1_3_2_101_1","doi-asserted-by":"crossref","unstructured":"Wang Tong Yuan Yao Feng Xu Miao Xu Shengwei An and Ting Wang. 2024. \u201cInspecting Prediction Confidence for Detecting Black-Box Backdoor Attacks.\u201d In Proceedings of the AAAI Conference on Artificial Intelligence vol. 38 274\u2013282. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/27780","DOI":"10.1609\/aaai.v38i1.27780"},{"key":"e_1_3_2_102_1","doi-asserted-by":"crossref","unstructured":"Wenger Emily Josephine Passananti Arjun Nitin Bhagoji Yuanshun Yao Haitao Zheng Ben and Y. Zhao. 2021. \u201cBackdoor Attacks against Deep Learning Systems in the Physical World.\u201d In Proceedings of the IEEE\/CVF Conference on Computer Vision and Pattern Recognition 6206\u20136215. https:\/\/ieeexplore.ieee.org\/document\/9577800","DOI":"10.1109\/CVPR46437.2021.00614"},{"key":"e_1_3_2_103_1","first-page":"10546","article-title":"Backdoorbench: A Comprehensive Benchmark of Backdoor Learning","volume":"35","author":"Wu Baoyuan","year":"2022","unstructured":"Wu, Baoyuan, Hongrui Chen, Mingda Zhang, Zihao Zhu, Shaokui Wei, Danni Yuan, and Chao Shen. 2022. \u201cBackdoorbench: A Comprehensive Benchmark of Backdoor Learning.\u201d Advances in Neural Information Processing Systems 35: 10546\u201310559.","journal-title":"Advances in Neural Information Processing Systems"},{"key":"e_1_3_2_104_1","unstructured":"Xia Hanfeng Haibo Hong and Ruili Wang. 2024. \u201cCBPF: Filtering Poisoned Data Based on Composite Backdoor Attack.\u201d arXiv preprint arXiv:240616125. https:\/\/arxiv.org\/pdf\/2406.16125"},{"key":"e_1_3_2_105_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2021.102280"},{"key":"e_1_3_2_106_1","unstructured":"Xiang Zhen Zidi Xiong and Bo Li. 2023. \u201cUmd: Unsupervised Model Detection for x2x Backdoor Attacks.\u201d In International Conference on Machine Learning 38013\u201338038. PMLR. https:\/\/dl.acm.org\/doi\/10.5555\/3618408.3619990"},{"key":"e_1_3_2_107_1","unstructured":"Xiao Chaowei Zhongzhu Chen Kun Jin Jiongxiao Wang Weili Nie Mingyan Liu Anima Anandkumar Bo Li and Dawn Song. 2023. \u201cDensepure: Understanding Diffusion Models for Adversarial Robustness.\u201d In The Eleventh International Conference on Learning Representations. https:\/\/openreview.net\/pdf?id=p7hvOJ6Gq0i"},{"key":"e_1_3_2_108_1","doi-asserted-by":"crossref","unstructured":"Xinyuan Henry Li Sonal Joshi Thomas Thebaud Jesus Villalba Najim Dehak and Sanjeev Khudanpur. 2024. \u201cClean Label Attacks against SLU Systems.\u201d arXiv preprint arXiv:2409.08985.https:\/\/arxiv.org\/pdf\/2409.08985","DOI":"10.1109\/SLT61566.2024.10832144"},{"key":"e_1_3_2_109_1","doi-asserted-by":"crossref","unstructured":"Xu Xiaojun Qi Wang Huichen Li Nikita Borisov Carl A. Gunter and Bo Li. 2021. \u201cDetecting AI Trojans Using Meta Neural Analysis.\u201d In 2021 IEEE Symposium on Security and Privacy (SP) 103\u2013120. IEEE.https:\/\/ieeexplore.ieee.org\/abstract\/document\/9519467","DOI":"10.1109\/SP40001.2021.00034"},{"key":"e_1_3_2_110_1","doi-asserted-by":"crossref","unstructured":"Yan Yukun Peng Tang Rui Chen Qilong Han and Ruochen Du. 2024. \u201cDPC: Filtering Out Patch-Based Poisoned Samples with Differential Privacy.\u201d In European Symposium on Research in Computer Security 289\u2013309. Springer. https:\/\/link.springer.com\/chapter\/10.1007\/978-3-031-70890-9_15","DOI":"10.1007\/978-3-031-70890-9_15"},{"key":"e_1_3_2_111_1","unstructured":"Yang Xiao Gaolei Li and Jianhua Li. 2024. \u201cGraph Neural Backdoor: Fundamentals Methodologies Applications and Future Directions.\u201d arXiv preprint arXiv:2406.10573. https:\/\/arxiv.org\/pdf\/2406.10573"},{"key":"e_1_3_2_112_1","unstructured":"Liu X. Yi M. Ding K. Xin B. Xu Y. Yan L. and Shen C. 2023. \u201cINK: Inheritable Natural Backdoor Attack Against Model Distillation.\u201d arXiv e-prints: ArXiv\u20132304. https:\/\/arxiv.org\/pdf\/2304.10985"},{"key":"e_1_3_2_113_1","doi-asserted-by":"crossref","unstructured":"Yudin Matthew Achyut Reddy Sridhar Venkatesan and Rauf Izmailov. 2024. \u201cBackdoor Attacks During Retraining of Machine Learning Models: A Mitigation Approach.\u201d Proceedings of the 21st International Conference on Security and Cryptography (SECRYPT 2024). https:\/\/www.scitepress.org\/Papers\/2024\/127616\/127616.pdf","DOI":"10.5220\/0012761600003767"},{"key":"e_1_3_2_114_1","unstructured":"Yue Zhihao Jun Xia Zhiwei Ling Ming Hu Ting Wang Xian Wei and Mingsong Chen. 2022. \u201cModel-Contrastive Learning for Backdoor Defense.\u201d arXiv preprint arXiv:2205.04411. https:\/\/arxiv.org\/pdf\/2205.04411"},{"key":"e_1_3_2_115_1","doi-asserted-by":"crossref","unstructured":"Zagoruyko Sergey and Nikos Komodakis. 2016. \u201cWide Residual Networks.\u201d arXiv preprint arXiv:1605.07146.","DOI":"10.5244\/C.30.87"},{"key":"e_1_3_2_116_1","unstructured":"Zeng Yi Si Chen Won Park Z. Morley Mao Ming Jin and Ruoxi Jia. 2021. \u201cAdversarial Unlearning of Backdoors via Implicit Hypergradient.\u201d https:\/\/arxiv.org\/pdf\/1605.07146"},{"key":"e_1_3_2_117_1","unstructured":"Zeng Yi Minzhou Pan Himanshu Jahagirdar Ming Jin Lingjuan Lyu and Ruoxi Jia. 2023. \u201c{Meta-Sift}: How to Sift Out a Clean Subset in the Presence of Data Poisoning?\u201d In 32nd USENIX Security Symposium (USENIX Security 23) 1667\u20131684.https:\/\/www.usenix.org\/system\/files\/usenixsecurity23-zeng.pdf"},{"key":"e_1_3_2_118_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2024.103956"},{"key":"e_1_3_2_119_1","article-title":"Adaptive Robust Learning Against Backdoor Attacks in Smart Homes","author":"Zhang Jiahui","year":"2024","unstructured":"Zhang, Jiahui, Zhuzhu Wang, Zhuoran Ma, and Jianfeng Ma. 2024. \u201cAdaptive Robust Learning Against Backdoor Attacks in Smart Homes.\u201d IEEE Internet of Things Journal. https:\/\/ieeexplore.ieee.org\/document\/10507181","journal-title":"IEEE Internet of Things Journal"},{"key":"e_1_3_2_120_1","unstructured":"Zhang Yujie Neil Gong and Michael K. Reiter. 2024. \u201cConcealing Backdoor Model Updates in Federated Learning by Trigger-Optimized Data Poisoning.\u201d arXiv preprint arXiv:240506206. https:\/\/arxiv.org\/pdf\/2405.06206"},{"key":"e_1_3_2_121_1","doi-asserted-by":"crossref","unstructured":"Zhang Zhiwei Minhua Lin Enyan Dai and Suhang Wang. 2024. \u201cRethinking Graph Backdoor Attacks: A Distribution-Preserving Perspective.\u201d In Proceedings of the 30th ACM SIGKDD Conference on Knowledge Discovery and Data Mining 4386\u20134397. https:\/\/dl.acm.org\/doi\/10.1145\/3637528.3671910","DOI":"10.1145\/3637528.3671910"},{"key":"e_1_3_2_122_1","doi-asserted-by":"publisher","DOI":"10.1093\/comjnl\/bxad100"},{"key":"e_1_3_2_123_1","doi-asserted-by":"crossref","unstructured":"Zhou Jiachen Peizhuo Lv Yibing Lan Guozhu Meng Kai Chen and Hualong Ma. 2024. \u201cDataElixir: Purifying Poisoned Dataset to Mitigate Backdoor Attacks via Diffusion Models.\u201d In Proceedings of the AAAI Conference on Artificial Intelligence vol. 38 21850\u201321858. https:\/\/ojs.aaai.org\/index.php\/AAAI\/article\/view\/30186","DOI":"10.1609\/aaai.v38i19.30186"},{"key":"e_1_3_2_124_1","article-title":"NeuralSanitizer: Detecting Backdoors in Neural Networks","author":"Zhu Hong","year":"2024","unstructured":"Zhu, Hong, Yue Zhao, Shengzhi Zhang, and Kai Chen. 2024. \u201cNeuralSanitizer: Detecting Backdoors in Neural Networks.\u201d IEEE Transactions on Information Forensics and Security. https:\/\/ieeexplore.ieee.org\/document\/10504286","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"e_1_3_2_125_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2024.124599"}],"container-title":["Cybernetics and Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.tandfonline.com\/doi\/pdf\/10.1080\/01969722.2025.2483718","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,24]],"date-time":"2025-07-24T23:00:54Z","timestamp":1753398054000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.tandfonline.com\/doi\/full\/10.1080\/01969722.2025.2483718"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,4,24]]},"references-count":124,"journal-issue":{"issue":"6","published-print":{"date-parts":[[2025,8,18]]}},"alternative-id":["10.1080\/01969722.2025.2483718"],"URL":"https:\/\/doi.org\/10.1080\/01969722.2025.2483718","relation":{},"ISSN":["0196-9722","1087-6553"],"issn-type":[{"type":"print","value":"0196-9722"},{"type":"electronic","value":"1087-6553"}],"subject":[],"published":{"date-parts":[[2025,4,24]]},"assertion":[{"value":"The publishing and review policy for this title is described in its Aims & Scope.","order":1,"name":"peerreview_statement","label":"Peer Review Statement"},{"value":"http:\/\/www.tandfonline.com\/action\/journalInformation?show=aimsScope&journalCode=ucbs20","URL":"http:\/\/www.tandfonline.com\/action\/journalInformation?show=aimsScope&journalCode=ucbs20","order":2,"name":"aims_and_scope_url","label":"Aim & Scope"},{"value":"2025-04-24","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}