{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,30]],"date-time":"2024-10-30T06:04:38Z","timestamp":1730268278610,"version":"3.28.0"},"reference-count":32,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,5,17]],"date-time":"2023-05-17T00:00:00Z","timestamp":1684281600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,5,17]],"date-time":"2023-05-17T00:00:00Z","timestamp":1684281600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,5,17]]},"DOI":"10.1109\/infocom53939.2023.10228981","type":"proceedings-article","created":{"date-parts":[[2023,8,29]],"date-time":"2023-08-29T17:40:43Z","timestamp":1693330843000},"page":"1-10","source":"Crossref","is-referenced-by-count":1,"title":["Oblivion: Poisoning Federated Learning by Inducing Catastrophic Forgetting"],"prefix":"10.1109","author":[{"given":"Chen","family":"Zhang","sequence":"first","affiliation":[{"name":"The Hang Seng University of Hong Kong,Department of Computing,Hong Kong,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Boyang","family":"Zhou","sequence":"additional","affiliation":[{"name":"Zhejiang University,College of Electrical Engineering,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhiqiang","family":"He","sequence":"additional","affiliation":[{"name":"Zhejiang University,College of Electrical Engineering,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zeyuan","family":"Liu","sequence":"additional","affiliation":[{"name":"Zhejiang University,College of Electrical Engineering,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yanjiao","family":"Chen","sequence":"additional","affiliation":[{"name":"Zhejiang University,College of Electrical Engineering,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenyuan","family":"Xu","sequence":"additional","affiliation":[{"name":"Zhejiang University,College of Electrical Engineering,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Baochun","family":"Li","sequence":"additional","affiliation":[{"name":"University of Toronto,Department of Electrical and Computer Engineering,Toronto,Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2017.2773081"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"journal-title":"Elastic Weight Consolidation (EWC) Nuts and Bolts","year":"2021","author":"aich","key":"ref15"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-01219-9_9"},{"journal-title":"Estimating a Dirichlet Distribution","year":"2000","author":"minka","key":"ref31"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref11","article-title":"A little is enough: Circumventing defenses for distributed learning","volume":"32","author":"baruch","year":"2019","journal-title":"Advances in neural information processing systems"},{"key":"ref10","article-title":"Local model poisoning attacks to Byzantine-robust federated learning","author":"fang","year":"2020","journal-title":"Proc 29th USENIX Security Symposium (USENIX Security)"},{"journal-title":"Very Deep Convolutional Networks for Large-scale Image Recognition","year":"2014","author":"simonyan","key":"ref32"},{"journal-title":"Federated Evaluation and Tuning for On-Device Personalization System Design & Applications","year":"2021","author":"paulik","key":"ref2"},{"journal-title":"Federated learning Strategies for improving communication efficiency","year":"2016","author":"kone?n?","key":"ref1"},{"key":"ref17","article-title":"How to backdoor federated learning","author":"bagdasaryan","year":"2020","journal-title":"Proc International Conference on Artificial Intelligence and Statistics"},{"key":"ref16","article-title":"A little is enough: Circumventing defenses for distributed learning","author":"baruch","year":"2019","journal-title":"Proc Advances in Neural Information Processing Systems 32 Annual Conference on Neural Information Processing Systems (NeurIPS)"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_24"},{"key":"ref18","first-page":"634","article-title":"Analyzing federated learning through an adversarial lens","author":"bhagoji","year":"2019","journal-title":"Proc International Conference on Machine Learning"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2021.3060483"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1073\/pnas.1907375117"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1016\/j.neunet.2019.01.012"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1016\/S1364-6613(99)01294-2"},{"key":"ref20","article-title":"Local model poisoning attacks to Byzantine-robust federated learning","author":"fang","year":"2020","journal-title":"Proc 29th USENIX Security Symposium (USENIX Security 20)"},{"journal-title":"Back to the drawing board A critical evaluation of poisoning attacks on federated learning","year":"2021","author":"shejwalkar","key":"ref22"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"journal-title":"Learning multiple layers of features from tiny images","year":"2009","author":"krizhevsky","key":"ref28"},{"journal-title":"LEAF A benchmark for federated settings","year":"2018","author":"caldas","key":"ref27"},{"journal-title":"Acquire valued shoppers challenge - kaggle","year":"2019","key":"ref29"},{"journal-title":"Byzantine-robust federated machine learning through adaptive model averaging","year":"2019","author":"mu\u00f1oz-gonz\u00e1lez","key":"ref8"},{"key":"ref7","first-page":"16070","article-title":"Attack of the tails: Yes, you really can backdoor federated learning","volume":"33","author":"wang","year":"2020","journal-title":"Advances in neural information processing systems"},{"journal-title":"FLTrust learning via trust bootstrapping","year":"2020","author":"cao","key":"ref9"},{"key":"ref4","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume":"30","author":"blanchard","year":"2017","journal-title":"Advances in neural information processing systems"},{"year":"0","key":"ref3"},{"key":"ref6","first-page":"3521","article-title":"The hidden vulnerability of distributed learning in byzantium","author":"guerraoui","year":"2018","journal-title":"Proc International Conference on Machine Learning"},{"key":"ref5","first-page":"5650","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","author":"yin","year":"2018","journal-title":"Proc International Conference on Machine Learning"}],"event":{"name":"IEEE INFOCOM 2023 - IEEE Conference on Computer Communications","start":{"date-parts":[[2023,5,17]]},"location":"New York City, NY, USA","end":{"date-parts":[[2023,5,20]]}},"container-title":["IEEE INFOCOM 2023 - IEEE Conference on Computer Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10228851\/10228852\/10228981.pdf?arnumber=10228981","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,9,18]],"date-time":"2023-09-18T17:44:24Z","timestamp":1695059064000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10228981\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,5,17]]},"references-count":32,"URL":"https:\/\/doi.org\/10.1109\/infocom53939.2023.10228981","relation":{},"subject":[],"published":{"date-parts":[[2023,5,17]]}}}