{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,29]],"date-time":"2024-10-29T10:56:55Z","timestamp":1730199415720,"version":"3.28.0"},"reference-count":28,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,12,16]],"date-time":"2023-12-16T00:00:00Z","timestamp":1702684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,12,16]],"date-time":"2023-12-16T00:00:00Z","timestamp":1702684800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,12,16]]},"DOI":"10.1109\/asru57964.2023.10389697","type":"proceedings-article","created":{"date-parts":[[2024,1,19]],"date-time":"2024-01-19T13:38:40Z","timestamp":1705671520000},"page":"1-8","source":"Crossref","is-referenced-by-count":0,"title":["Joint Energy-Based Model for Robust Speech Classification System Against Dirty-Label Backdoor Poisoning Attacks"],"prefix":"10.1109","author":[{"given":"Martin","family":"Sustek","sequence":"first","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sonal","family":"Joshi","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Henry","family":"Li","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Thomas","family":"Thebaud","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jes\u00fas","family":"Villalba","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sanjeev","family":"Khudanpur","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Najim","family":"Dehak","sequence":"additional","affiliation":[{"name":"Johns Hopkins University,Center for Language and Speech Processing,Baltimore,MD,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2909068"},{"volume-title":"Adversarial Robustness for Machine Learning","year":"2022","author":"Chen","key":"ref2"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140450"},{"key":"ref4","article-title":"Certified defenses for data poisoning attacks","volume":"30","author":"Steinhardt","year":"2017","journal-title":"Advances in neural information processing systems"},{"key":"ref5","first-page":"405","article-title":"Online anomaly detection under adversarial impact","volume-title":"Proceedings of the thirteenth international conference on artificial intelligence and statistics","author":"Kloft"},{"key":"ref6","first-page":"3681","article-title":"Security analysis of online centroid anomaly detection","volume-title":"The Journal of Machine Learning Research","author":"Kloft"},{"key":"ref7","article-title":"Speech commands: A dataset for limited-vocabulary speech recognition","author":"Warden","year":"2018","journal-title":"arXiv preprint arXiv:1804.03209"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/SaTML54575.2023.00035"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2023.3289446"},{"article-title":"Detecting backdoor attacks on deep neural networks by activation clustering","volume-title":"Workshop on Artificial Intelligence Safety","author":"Chen","key":"ref10"},{"key":"ref11","article-title":"Spectral signatures in backdoor attacks","volume":"31","author":"Tran","year":"2018","journal-title":"Advances in neural information processing systems"},{"article-title":"Leveraging incompatibility to defend against backdoor poisoning","volume-title":"International Conference on Learning Representations","author":"Jin","key":"ref12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-66415-2_4"},{"article-title":"On certifying robustness against backdoor attacks via randomized smoothing","volume-title":"CVPR Workshop on Adversarial Machine Learning in Computer Vision","author":"Wang","key":"ref14"},{"article-title":"Deep partition aggregation: Provable defense against general poisoning attacks","volume-title":"International Conference on Learning Representations (ICLR)","author":"Levine","key":"ref15"},{"key":"ref16","first-page":"22769","article-title":"Improved certified defenses against data poisoning with (deterministic) finite aggregation","volume-title":"International Conference on Machine Learning","author":"Wang"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2022.3162397"},{"key":"ref18","article-title":"On the effectiveness of mitigating data poisoning attacks with gradient shaping","author":"Hong","year":"2020","journal-title":"arXiv preprint arXiv:2002.11497"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP39728.2021.9414862"},{"article-title":"Dp-instahide: Provably defusing poisoning and backdoor attacks with differentially private data augmentations","volume-title":"International Conference on Learning Representations (ICLR), Workshop on Security and Safety in Machine Learning Systems","author":"Borgnia","key":"ref20"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2019.01.012"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2017.2773081"},{"article-title":"Your classifier is secretly an energy based model and you should treat it like one","volume-title":"International Conference on Learning Representations ICLR","author":"Grathwohl","key":"ref23"},{"key":"ref24","first-page":"681","article-title":"Bayesian learning via stochastic gradient langevin dynamics","volume-title":"Proceedings of the 28th international conference on machine learning (ICML-11)","author":"Welling"},{"key":"ref25","article-title":"Stabilized training of joint energy-based models and their practical applications","author":"Sustek","year":"2023","journal-title":"arXiv preprint arXiv:2303.04187"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/cvpr.2016.90"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.5244\/C.30.87"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.5555\/2999134.2999257"}],"event":{"name":"2023 IEEE Automatic Speech Recognition and Understanding Workshop (ASRU)","start":{"date-parts":[[2023,12,16]]},"location":"Taipei, Taiwan","end":{"date-parts":[[2023,12,20]]}},"container-title":["2023 IEEE Automatic Speech Recognition and Understanding Workshop (ASRU)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10388490\/10389614\/10389697.pdf?arnumber=10389697","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,23]],"date-time":"2024-01-23T11:36:13Z","timestamp":1706009773000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10389697\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12,16]]},"references-count":28,"URL":"https:\/\/doi.org\/10.1109\/asru57964.2023.10389697","relation":{},"subject":[],"published":{"date-parts":[[2023,12,16]]}}}