{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,13]],"date-time":"2025-03-13T04:09:14Z","timestamp":1741838954579,"version":"3.38.0"},"reference-count":20,"publisher":"IEEE","license":[{"start":{"date-parts":[[2024,12,8]],"date-time":"2024-12-08T00:00:00Z","timestamp":1733616000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,12,8]],"date-time":"2024-12-08T00:00:00Z","timestamp":1733616000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024,12,8]]},"DOI":"10.1109\/globecom52923.2024.10901588","type":"proceedings-article","created":{"date-parts":[[2025,3,11]],"date-time":"2025-03-11T17:30:35Z","timestamp":1741714235000},"page":"4292-4297","source":"Crossref","is-referenced-by-count":0,"title":["AdvNets: Adversarial Attacks and Countermeasures for Model-level Neural Trojan Defenses"],"prefix":"10.1109","author":[{"given":"Pengfei","family":"Sun","sequence":"first","affiliation":[{"name":"University of Science and Technology of China,Institude of Advanced Technology,Hefei,China,230027"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chi","family":"Zhang","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China,School of Cyberspace Science and Technology,Hefei,China,230027"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lingbo","family":"Wei","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China,School of Cyberspace Science and Technology,Hefei,China,230027"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bingbing","family":"Zhang","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China,School of Cyberspace Science and Technology,Hefei,China,230027"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qibin","family":"Sun","sequence":"additional","affiliation":[{"name":"University of Science and Technology of China,School of Cyberspace Science and Technology,Hefei,China,230027"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"article-title":"Badnets: Identifying vulnerabilities in the machine learning model supply chain","year":"2017","author":"Gu","key":"ref1"},{"article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","year":"2017","author":"Chen","key":"ref2"},{"article-title":"Detecting backdoor attacks on deep neural networks by activation clustering","year":"2018","author":"Chen","key":"ref3"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00034"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00015"},{"key":"ref6","first-page":"6399","article-title":"Freeeagle: Detecting complex neural trojans in data-free cases","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Fu"},{"article-title":"Defending against backdoor attack on deep neural networks","year":"2020","author":"Xu","key":"ref7"},{"key":"ref8","first-page":"16 913","article-title":"Adversarial neuron pruning purifies backdoored deep models","volume":"34","author":"Wu","year":"2021","journal-title":"Advances in Neural Information Processing Systems"},{"article-title":"Adversarial unlearning of backdoors via implicit hypergradient","year":"2021","author":"Zeng","key":"ref9"},{"article-title":"Clean-label backdoor attacks","year":"2018","author":"Turner","key":"ref10"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3374664.3375751"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3021407"},{"article-title":"Wanet\u2013imperceptible warping-based backdoor attack","year":"2021","author":"Nguyen","key":"ref13"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01615"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3460319.3464809"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP48549.2020.00019"},{"article-title":"Explaining and harnessing adversarial examples","year":"2014","author":"Goodfellow","key":"ref17"},{"article-title":"Towards deep learning models resistant to adversarial attacks","year":"2017","author":"Madry","key":"ref18"},{"article-title":"Query-efficient hard-label black-box attack: An optimization-based approach","year":"2018","author":"Cheng","key":"ref19"},{"article-title":"Towards the first adversarially robust neural network model on mnist","year":"2018","author":"Schott","key":"ref20"}],"event":{"name":"GLOBECOM 2024 - 2024 IEEE Global Communications Conference","start":{"date-parts":[[2024,12,8]]},"location":"Cape Town, South Africa","end":{"date-parts":[[2024,12,12]]}},"container-title":["GLOBECOM 2024 - 2024 IEEE Global Communications Conference"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10900933\/10900934\/10901588.pdf?arnumber=10901588","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,12]],"date-time":"2025-03-12T05:52:53Z","timestamp":1741758773000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10901588\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,8]]},"references-count":20,"URL":"https:\/\/doi.org\/10.1109\/globecom52923.2024.10901588","relation":{},"subject":[],"published":{"date-parts":[[2024,12,8]]}}}