{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,5]],"date-time":"2026-02-05T18:30:27Z","timestamp":1770316227329,"version":"3.49.0"},"reference-count":24,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,7]]},"DOI":"10.1109\/dac18072.2020.9218663","type":"proceedings-article","created":{"date-parts":[[2020,10,9]],"date-time":"2020-10-09T15:57:03Z","timestamp":1602259023000},"page":"1-6","source":"Crossref","is-referenced-by-count":59,"title":["TrojDRL: Evaluation of Backdoor Attacks on Deep Reinforcement Learning"],"prefix":"10.1109","author":[{"given":"Panagiota","family":"Kiourti","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kacper","family":"Wardega","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Susmit","family":"Jha","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenchao","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Intriguing properties of neural networks","volume-title":"International Conference on Learning Representations","author":"Szegedy"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298640"},{"key":"ref3","article-title":"Badnets: Identifying vulnerabilities in the machine learning model supply chain","author":"Gu","year":"2017"},{"key":"ref4","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"Chen","year":"2017"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref6","article-title":"Adversarial attacks on neural network policies","author":"Huang","year":"2017"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23291"},{"key":"ref8","first-page":"1928","article-title":"Asynchronous methods for deep reinforcement learning","volume-title":"International conference on machine learning","author":"Mnih"},{"key":"ref9","article-title":"Neuroscience","volume-title":"Reinforcement learning: An introduction","author":"Sutton","year":"2018"},{"key":"ref10","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"Liu","year":"2016"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053009"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2017\/525"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.49"},{"key":"ref14","article-title":"Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples","author":"Athalye","year":"2018"},{"key":"ref15","first-page":"6103","article-title":"Poison frogs! targeted clean-label poisoning attacks on neural networks","volume-title":"Advances in Neural Information Processing Systems","author":"Shafahi"},{"key":"ref16","article-title":"Design of intentional backdoors in sequential models","author":"Yang","year":"2019"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00031"},{"key":"ref18","article-title":"Detecting backdoor attacks on deep neural networks by activation clustering","volume-title":"SafeAI@AAAI","volume":"2301","author":"Chen"},{"key":"ref19","first-page":"8000","article-title":"Spectral signatures in backdoor attacks","volume-title":"Advances in Neural Information Processing Systems","author":"Tran"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_13"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/647"},{"key":"ref22","first-page":"14 004","article-title":"Defending neural backdoors via generative distribution modeling","volume-title":"Advances in Neural Information Processing Systems","author":"Qiao"},{"key":"ref23","article-title":"Efficient Parallel Methods for Deep Reinforcement Learning","author":"Clemente","year":"2017"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1613\/jair.3912"}],"event":{"name":"2020 57th ACM\/IEEE Design Automation Conference (DAC)","location":"San Francisco, CA, USA","start":{"date-parts":[[2020,7,20]]},"end":{"date-parts":[[2020,7,24]]}},"container-title":["2020 57th ACM\/IEEE Design Automation Conference (DAC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9211868\/9218488\/09218663.pdf?arnumber=9218663","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,23]],"date-time":"2024-01-23T20:25:44Z","timestamp":1706041544000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9218663\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,7]]},"references-count":24,"URL":"https:\/\/doi.org\/10.1109\/dac18072.2020.9218663","relation":{},"subject":[],"published":{"date-parts":[[2020,7]]}}}