{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T15:58:10Z","timestamp":1759334290967,"version":"build-2065373602"},"reference-count":32,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,8]],"date-time":"2025-06-08T00:00:00Z","timestamp":1749340800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,8]],"date-time":"2025-06-08T00:00:00Z","timestamp":1749340800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["2028897,2019283"],"award-info":[{"award-number":["2028897,2019283"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,8]]},"DOI":"10.1109\/icc52391.2025.11161449","type":"proceedings-article","created":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T17:34:55Z","timestamp":1758908095000},"page":"4896-4902","source":"Crossref","is-referenced-by-count":0,"title":["Guided by Noise: Vulnerable Poisoning Attack to Differentially Private Federated Learning"],"prefix":"10.1109","author":[{"given":"Siqi","family":"Dai","sequence":"first","affiliation":[{"name":"University of Florida,ECE Department,Gainesville,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yaodan","family":"Hu","sequence":"additional","affiliation":[{"name":"Idaho State University,ECE Department,Pocatello,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Honggang","family":"Yu","sequence":"additional","affiliation":[{"name":"University of Florida,ECE Department,Gainesville,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hanqiu","family":"Wang","sequence":"additional","affiliation":[{"name":"University of Florida,ECE Department,Gainesville,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuo","family":"Wang","sequence":"additional","affiliation":[{"name":"University of Florida,ECE Department,Gainesville,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1007\/s41666-020-00082-4"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2021.3095077"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2022.3196646"},{"key":"ref4","first-page":"634","article-title":"Analyzing federated learning through an adversarial lens","volume-title":"International Conference on Machine Learning","author":"Bhagoji","year":"2019"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833644"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-63076-8_1"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3447548.3467403"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/MSN53354.2021.00038"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2023.02.025"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref12","article-title":"Local differential privacy: a tutorial","author":"Bebensee","year":"2019","journal-title":"arXiv preprint"},{"key":"ref13","article-title":"On the convergence of fedavg on non-iid data","author":"Li","year":"2019","journal-title":"arXiv preprint"},{"key":"ref14","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume":"30","author":"Blanchard","year":"2017","journal-title":"Advances in neural information processing systems"},{"key":"ref15","first-page":"3521","article-title":"The hidden vulnerability of distributed learning in byzantium","volume-title":"International Conference on Machine Learning","author":"Guerraoui","year":"2018"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2020.23047"},{"key":"ref17","article-title":"Learning to detect malicious clients for robust federated learning","author":"Li","year":"2020","journal-title":"arXiv preprint"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3534678.3539231"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991125"},{"key":"ref20","article-title":"Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms","author":"Xiao","year":"2017","journal-title":"arXiv preprint"},{"key":"ref21","article-title":"Learning multiple layers of features from tiny images","volume-title":"tech. rep.","author":"Krizhevsky","year":"2009"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/s00521-018-3523-0"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3488932.3517395"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2024.103916"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPRW56347.2022.00383"},{"key":"ref26","first-page":"1605","article-title":"Local model poisoning attacks to \\{Byzantine-Robust\\} federated learning","volume-title":"29th USENIX security symposium (USENIX Security 20)","author":"Fang","year":"2020"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00001"},{"key":"ref28","first-page":"1739","article-title":"Fine-grained poisoning attack to local differential privacy protocols for mean and variance estimation","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Li","year":"2023"},{"key":"ref29","first-page":"947","article-title":"Data poisoning attacks to local differential privacy protocols","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Cao","year":"2021"},{"key":"ref30","article-title":"Extremal mechanisms for local differential privacy","volume":"27","author":"Kairouz","year":"2014","journal-title":"Advances in neural information processing systems"},{"key":"ref31","first-page":"729","article-title":"Locally differentially private protocols for frequency estimation","volume-title":"26th USENIX Security Symposium (USENIX Security 17)","author":"Wang","year":"2017"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2019.2927695"}],"event":{"name":"ICC 2025 - IEEE International Conference on Communications","start":{"date-parts":[[2025,6,8]]},"location":"Montreal, QC, Canada","end":{"date-parts":[[2025,6,12]]}},"container-title":["ICC 2025 - IEEE International Conference on Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11160703\/11160705\/11161449.pdf?arnumber=11161449","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,30]],"date-time":"2025-09-30T13:33:20Z","timestamp":1759239200000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11161449\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,8]]},"references-count":32,"URL":"https:\/\/doi.org\/10.1109\/icc52391.2025.11161449","relation":{},"subject":[],"published":{"date-parts":[[2025,6,8]]}}}