{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,11]],"date-time":"2026-06-11T16:46:58Z","timestamp":1781196418748,"version":"3.54.1"},"reference-count":24,"publisher":"IEEE","license":[{"start":{"date-parts":[[2024,12,17]],"date-time":"2024-12-17T00:00:00Z","timestamp":1734393600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,12,17]],"date-time":"2024-12-17T00:00:00Z","timestamp":1734393600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024,12,17]]},"DOI":"10.1109\/ats64447.2024.10915428","type":"proceedings-article","created":{"date-parts":[[2025,3,14]],"date-time":"2025-03-14T17:45:02Z","timestamp":1741974302000},"page":"1-6","source":"Crossref","is-referenced-by-count":4,"title":["Secure AI Systems: Emerging Threats and Defense Mechanisms"],"prefix":"10.1109","author":[{"given":"Habibur","family":"Rahaman","sequence":"first","affiliation":[{"name":"University of Florida,School of Electrical and Computer Engineering"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Atri","family":"Chatterjee","sequence":"additional","affiliation":[{"name":"University of Florida,School of Electrical and Computer Engineering"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Swarup","family":"Bhunia","sequence":"additional","affiliation":[{"name":"University of Florida,School of Electrical and Computer Engineering"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1155\/2021\/4907754"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.282"},{"key":"ref3","article-title":"Badnets: Identifying vulnerabilities in the machine learning model supply chain","author":"Gu","year":"2017"},{"key":"ref4","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"ref5","article-title":"Universal and transferable adversarial attacks on aligned language models","author":"Zou","year":"2023"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.3390\/electronics11081283"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC57700.2023.00284"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1186\/s13635-024-00158-3"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1016\/j.dcan.2021.07.009"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2020.acl-main.249"},{"key":"ref11","first-page":"1605","article-title":"Local model poisoning attacks to {Byzantine-Robust} federated learning","volume-title":"29th USENIX security symposium (USENIX Security 20)","author":"Fang"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00057"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427264"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2024.3355816"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23291"},{"key":"ref16","first-page":"2707","article-title":"Aliasing backdoor attacks on pre-trained models","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Lee"},{"key":"ref17","article-title":"Generative adversarial nets","volume":"27","author":"Goodfellow","year":"2014","journal-title":"Advances in neural information processing systems"},{"key":"ref18","article-title":"An intuitive introduction to generative adversarial networks","author":"Silva","year":"2018"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00130"},{"key":"ref20","first-page":"2329","article-title":"Aegis: Mitigating targeted bit-flip attacks against deep neural networks","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Wang"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3264418"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813677"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833743"},{"key":"ref24","article-title":"Dnn-alias: Deep neural network protection against side-channel attacks via layer balancing","author":"Ahmadi","year":"2023"}],"event":{"name":"2024 IEEE 33rd Asian Test Symposium (ATS)","location":"Ahmedabad, India","start":{"date-parts":[[2024,12,17]]},"end":{"date-parts":[[2024,12,20]]}},"container-title":["2024 IEEE 33rd Asian Test Symposium (ATS)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10914681\/10915215\/10915428.pdf?arnumber=10915428","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,15]],"date-time":"2025-03-15T05:02:24Z","timestamp":1742014944000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10915428\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,17]]},"references-count":24,"URL":"https:\/\/doi.org\/10.1109\/ats64447.2024.10915428","relation":{},"subject":[],"published":{"date-parts":[[2024,12,17]]}}}