{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,11]],"date-time":"2026-03-11T02:06:36Z","timestamp":1773194796649,"version":"3.50.1"},"reference-count":27,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,12,8]],"date-time":"2025-12-08T00:00:00Z","timestamp":1765152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,12,8]],"date-time":"2025-12-08T00:00:00Z","timestamp":1765152000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,12,8]]},"DOI":"10.1109\/acsacw69556.2025.00034","type":"proceedings-article","created":{"date-parts":[[2026,3,9]],"date-time":"2026-03-09T19:56:13Z","timestamp":1773086173000},"page":"263-270","source":"Crossref","is-referenced-by-count":0,"title":["Security Risks in Medical AI: Logo-Based Trojan Attacks on Deep Learning Models"],"prefix":"10.1109","author":[{"given":"Pavan","family":"Reddy","sequence":"first","affiliation":[{"name":"The George Washington University,Department of Computer Science,Washington DC"}]},{"given":"Nithin","family":"Reddy","sequence":"additional","affiliation":[{"name":"Tulane University,School of Science and Engineering,New Orleans,LA"}]}],"member":"263","reference":[{"issue":"12","key":"ref1","first-page":"1435","article-title":"How artificial intelligence is shaping medical imaging technology: A survey of innovations and applications","volume-title":"Bioengineering (Basel)","volume":"10","author":"Pinto-Coelho","year":"2023"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2022.116815"},{"key":"ref3","article-title":"BadNets: Identifying vulnerabilities in the machine learning model supply chain","author":"Gu","year":"2017"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23291"},{"key":"ref5","article-title":"Clean-label backdoor attacks","author":"Turner","year":"2019"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.02021"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-72111-3_59"},{"key":"ref8","article-title":"Explainability matters: Backdoor attacks on medical imaging","volume-title":"AAAI 2021 Workshop on Trustworthy AI in Healthcare","author":"Nwadike"},{"key":"ref9","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"Chen","year":"2017"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6871"},{"key":"ref11","first-page":"3454","article-title":"Input-aware dynamic backdoor attack","volume":"33","author":"Nguyen","year":"2020","journal-title":"Advances in Neural Information Processing Systems"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00031"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3359789.3359790"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.2214\/ajr.10.6352"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1016\/j.ijmedinf.2019.02.011"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1038\/s42256-021-00338-7"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1371\/journal.pmed.1002683"},{"key":"ref18","article-title":"Wanet-imperceptible warping-based backdoor attack","volume-title":"International Conference on Learning Representations (ICLR)","author":"Nguyen"},{"key":"ref19","article-title":"Refool: Using reflection to fight backdoor attacks in deep neural networks","author":"Liu","year":"2020","journal-title":"ECCV"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.media.2023.102965"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.3390\/app11209556"},{"key":"ref22","article-title":"Detecting backdoor attacks on deep neural networks by activation clustering","author":"Chen","year":"2018"},{"key":"ref23","first-page":"8000","article-title":"Spectral signatures in backdoor attacks","author":"Tran","year":"2018","journal-title":"NeurIPS"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_13"},{"key":"ref25","volume-title":"Cxr dataset: 72,000+ chest x-ray images (covid-19, pneumonia, tb, normal)","year":"2021"},{"key":"ref26","volume-title":"Brain cancer mri dataset (brain tumor classification)","year":"2024"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.3390\/math11204236"}],"event":{"name":"2025 Annual Computer Security Applications Conference Workshops (ACSAC Workshops)","location":"Honolulu, HI, USA","start":{"date-parts":[[2025,12,8]]},"end":{"date-parts":[[2025,12,9]]}},"container-title":["2025 Annual Computer Security Applications Conference Workshops (ACSAC Workshops)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11417955\/11417996\/11418059.pdf?arnumber=11418059","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T05:28:51Z","timestamp":1773120531000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11418059\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,12,8]]},"references-count":27,"URL":"https:\/\/doi.org\/10.1109\/acsacw69556.2025.00034","relation":{},"subject":[],"published":{"date-parts":[[2025,12,8]]}}}