{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,26]],"date-time":"2026-02-26T15:27:26Z","timestamp":1772119646495,"version":"3.50.1"},"reference-count":31,"publisher":"IEEE","license":[{"start":{"date-parts":[[2020,9,28]],"date-time":"2020-09-28T00:00:00Z","timestamp":1601251200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,9,28]],"date-time":"2020-09-28T00:00:00Z","timestamp":1601251200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,9,28]],"date-time":"2020-09-28T00:00:00Z","timestamp":1601251200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,9,28]]},"DOI":"10.1109\/ijcb48548.2020.9304875","type":"proceedings-article","created":{"date-parts":[[2021,1,7]],"date-time":"2021-01-07T16:58:35Z","timestamp":1610038715000},"page":"1-9","source":"Crossref","is-referenced-by-count":58,"title":["Backdooring Convolutional Neural Networks via Targeted Weight Perturbations"],"prefix":"10.1109","author":[{"given":"Jacob","family":"Dumford","sequence":"first","affiliation":[]},{"given":"Walter","family":"Scheirer","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2018.00520"},{"key":"ref30","author":"timberg","year":"0","journal-title":"A disaster foretold - and ignored The Washington Post"},{"key":"ref10","article-title":"Clever-hans v0.1: an adversarial machine learning library","author":"goodfellow","year":"2016","journal-title":"CoRR abs\/1610 00768"},{"key":"ref11","article-title":"Practical variational inference for neural networks","author":"graves","year":"2011","journal-title":"NIPS"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2013.6638947"},{"key":"ref13","article-title":"Badnets: Identifying vulnerabilities in the machine learning model supply chain","author":"gu","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref15","author":"hoglund","year":"2006","journal-title":"Rootkits Subverting the Windows Kernel"},{"key":"ref16","year":"0","journal-title":"Mnist cnn GitHub 2018"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2006.38"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_13"},{"key":"ref19","article-title":"Delving into transferable adversarial examples and black-box attacks","author":"liu","year":"2017","journal-title":"ICLRE"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3052999"},{"key":"ref4","article-title":"Deep neural networks segment neuronal membranes in electron microscopy images","author":"ciresan","year":"2012","journal-title":"NIPS"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1038\/nature16961"},{"key":"ref3","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"chen","year":"2017","journal-title":"ArXiv Preprint"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.2197\/ipsjjip.25.866"},{"key":"ref29","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2014","journal-title":"ICLRE"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1002\/sec.166"},{"key":"ref8","article-title":"Dropout as a Bayesian approximation: Representing model uncertainty in deep learning","author":"gal","year":"2016","journal-title":"ICML"},{"key":"ref7","article-title":"Robust physical-world attacks on deep learning models","author":"evtimov","year":"2018","journal-title":"IEEE CVPR"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/FG.2018.00020"},{"key":"ref9","volume":"1","author":"goodfellow","year":"2016","journal-title":"Deep Learning"},{"key":"ref1","article-title":"Neural machine translation by jointly learning to align and translate","author":"bahdanau","year":"2015","journal-title":"ICLRE"},{"key":"ref20","article-title":"VGGFace implementation with keras framework","author":"malli","year":"0","journal-title":"GitHub 2018"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2015.7298640"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2017.17"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2016.2636078"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/BTAS.2017.8272695"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991125"},{"key":"ref25","article-title":"Adversarial generative nets: Neural network attacks on state-of-the-art face recognition","author":"sharif","year":"2017","journal-title":"ArXiv Preprint"}],"event":{"name":"2020 IEEE International Joint Conference on Biometrics (IJCB)","location":"Houston, TX, USA","start":{"date-parts":[[2020,9,28]]},"end":{"date-parts":[[2020,10,1]]}},"container-title":["2020 IEEE International Joint Conference on Biometrics (IJCB)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9304574\/9304852\/09304875.pdf?arnumber=9304875","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,6,28]],"date-time":"2022-06-28T21:56:20Z","timestamp":1656453380000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9304875\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,9,28]]},"references-count":31,"URL":"https:\/\/doi.org\/10.1109\/ijcb48548.2020.9304875","relation":{},"subject":[],"published":{"date-parts":[[2020,9,28]]}}}