{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,31]],"date-time":"2025-10-31T07:22:35Z","timestamp":1761895355921,"version":"build-2065373602"},"reference-count":25,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,30]],"date-time":"2025-06-30T00:00:00Z","timestamp":1751241600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,30]]},"DOI":"10.1109\/icme59968.2025.11210014","type":"proceedings-article","created":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T17:57:42Z","timestamp":1761847062000},"page":"1-6","source":"Crossref","is-referenced-by-count":0,"title":["Diff-Cleanse: Identifying and Mitigating Backdoor Attacks in Diffusion Models"],"prefix":"10.1109","author":[{"given":"Hao","family":"Jiang","sequence":"first","affiliation":[{"name":"Beihang University,School of Automation Science and Electrical Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jin","family":"Xiao","sequence":"additional","affiliation":[{"name":"Beihang University,School of Automation Science and Electrical Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaoguang","family":"Hu","sequence":"additional","affiliation":[{"name":"Beihang University,School of Automation Science and Electrical Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Tianyou","family":"Chen","sequence":"additional","affiliation":[{"name":"Beihang University,School of Automation Science and Electrical Engineering,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiajia","family":"Zhao","sequence":"additional","affiliation":[{"name":"National Key Laboratory of Complex System Control and Intelligent Agent Cooperation,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TKDE.2024.3361474"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.00391"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.00393"},{"key":"ref4","first-page":"33912","article-title":"Villandiffusion: A unified backdoor attack framework for diffusion models","volume":"36","author":"Chou","year":"2023","journal-title":"NeurIPS"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i10.28958"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/ICPADS47876.2019.00150"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v39i26.34941"},{"article-title":"Disdet: Exploring detectability of backdoor attack on diffusion models","year":"2024","author":"Sui","key":"ref8"},{"key":"ref9","article-title":"Terd: A unified framework for safeguarding diffusion models against backdoors","author":"Mo","year":"2024","journal-title":"ICML"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/iccv51070.2023.00423"},{"article-title":"From trojan horses to castle walls: Unveiling bilateral backdoor effects in diffusion models","year":"2023","author":"Pan","key":"ref11"},{"key":"ref12","first-page":"6840","article-title":"Denoising diffusion probabilistic models","volume":"33","author":"Ho","year":"2020","journal-title":"NeurIPS"},{"key":"ref13","article-title":"Generative modeling by estimating gradients of the data distribution","volume":"32","author":"Song","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/icc52391.2025.11161175"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00031"},{"article-title":"Unicorn: A unified backdoor trigger inversion framework","year":"2023","author":"Wang","key":"ref17"},{"key":"ref18","first-page":"16913","article-title":"Adversarial neuron pruning purifies backdoored deep models","volume":"34","author":"Wu","year":"2021","journal-title":"NeurIPS"},{"key":"ref19","article-title":"Structural pruning for diffusion models","volume":"36","author":"Fang","year":"2024","journal-title":"NeurIPS"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.01152"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"article-title":"Learning multiple layers of features from tiny images","year":"2009","author":"Krizhevsky","key":"ref22"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.425"},{"article-title":"Progressive growing of gans for improved quality, stability, and variation","year":"2017","author":"Karras","key":"ref24"},{"key":"ref25","article-title":"Gans trained by a two timescale update rule converge to a local nash equilibrium","volume":"30","author":"Heusel","year":"2017","journal-title":"NeurIPS"}],"event":{"name":"2025 IEEE International Conference on Multimedia and Expo (ICME)","start":{"date-parts":[[2025,6,30]]},"location":"Nantes, France","end":{"date-parts":[[2025,7,4]]}},"container-title":["2025 IEEE International Conference on Multimedia and Expo (ICME)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11208895\/11208897\/11210014.pdf?arnumber=11210014","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,31]],"date-time":"2025-10-31T05:48:36Z","timestamp":1761889716000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11210014\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,30]]},"references-count":25,"URL":"https:\/\/doi.org\/10.1109\/icme59968.2025.11210014","relation":{},"subject":[],"published":{"date-parts":[[2025,6,30]]}}}