{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,6]],"date-time":"2026-05-06T15:28:49Z","timestamp":1778081329523,"version":"3.51.4"},"reference-count":38,"publisher":"IEEE","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018,10]]},"DOI":"10.1109\/malware.2018.8659362","type":"proceedings-article","created":{"date-parts":[[2019,3,7]],"date-time":"2019-03-07T19:23:21Z","timestamp":1551986601000},"page":"78-83","source":"Crossref","is-referenced-by-count":11,"title":["Resilience of Pruned Neural Network Against Poisoning Attack"],"prefix":"10.1109","author":[{"given":"Bingyin","family":"Zhao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yingjie","family":"Lao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/34.993558"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2014.222"},{"key":"ref32","first-page":"3320","article-title":"How transferable are features in deep neural networks?","author":"yosinski","year":"2014","journal-title":"Advances in neural information processing systems"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/5326.983933"},{"key":"ref30","article-title":"Automated pruning for deep neural network compression","author":"manessi","year":"2017"},{"key":"ref37","author":"lecun","year":"0","journal-title":"The MNIST Database of Handwritten Digits"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2013.6638293"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/s00500-009-0440-2"},{"key":"ref34","first-page":"6","article-title":"Deep face recognition","volume":"1","author":"parkhi","year":"2015","journal-title":"British Machine Vision Conference (BMVC)"},{"key":"ref10","article-title":"Poisoning attacks against support vector machines","author":"biggio","year":"2012","journal-title":"International Conference on Machine Learning (ICML)"},{"key":"ref11","first-page":"1452","article-title":"Data poisoning attacks against autoregressive models","author":"alfeld","year":"2016","journal-title":"Association for the Advancement of Artificial Intelligence (AAAI)"},{"key":"ref12","article-title":"Generative poisoning attack method against neural networks","author":"yang","year":"2017"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00057"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140451"},{"key":"ref15","first-page":"870","article-title":"Adversarial label flips attack on support vector machines","author":"xiao","year":"2012","journal-title":"European Conference on Artificial Intelligence (ECAI)"},{"key":"ref16","article-title":"Explaining and harnessing adversarial examples","author":"goodfellow","year":"2015","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref17","article-title":"Intriguing properties of neural networks","author":"szegedy","year":"2013"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140444"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.615"},{"key":"ref28","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-030-00470-5_13","article-title":"Fine-pruning: Defending against backdooring attacks on deep neural networks","author":"liu","year":"2018"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.312"},{"key":"ref27","article-title":"Defending dnn adversarial attacks with pruning and logits augmentation","author":"ye","year":"2018","journal-title":"International Conference on Learning Representations (ICLR) Workshop Track"},{"key":"ref3","first-page":"91","article-title":"Faster r-cnn: Towards real-time object detection with region proposal networks","author":"ren","year":"2015","journal-title":"Advances in neural information processing systems"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/2046684.2046692"},{"key":"ref29","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"chen","year":"2017"},{"key":"ref5","doi-asserted-by":"crossref","first-page":"115","DOI":"10.1038\/nature21056","article-title":"Dermatologist-level classification of skin cancer with deep neural networks","volume":"542","author":"esteva","year":"2017","journal-title":"Nature"},{"key":"ref8","article-title":"Towards the science of security and privacy in machine learning","author":"papernot","year":"2016"},{"key":"ref7","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"2017","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref2","article-title":"Neural machine translation by jointly learning to align and translate","author":"bahdanau","year":"2015","journal-title":"International Conference on Learning Representations (ICLR)"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-010-5188-5"},{"key":"ref1","first-page":"1097","article-title":"Imagenet classification with deep convolutional neural networks","author":"krizhevsky","year":"2012","journal-title":"Advances in neural information processing systems"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.41"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/CISS.2018.8362326"},{"key":"ref21","article-title":"On the effectiveness of defensive distillation","author":"papernot","year":"2016"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2008.11"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134057"},{"key":"ref26","first-page":"1135","article-title":"Learning both weights and connections for efficient neural network","author":"han","year":"2015","journal-title":"Advances in neural information processing systems"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/ICCD.2017.16"}],"event":{"name":"2018 13th International Conference on Malicious and Unwanted Software (MALWARE)","location":"Nantucket, MA, USA","start":{"date-parts":[[2018,10,22]]},"end":{"date-parts":[[2018,10,24]]}},"container-title":["2018 13th International Conference on Malicious and Unwanted Software (MALWARE)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8653251\/8659351\/08659362.pdf?arnumber=8659362","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,1,27]],"date-time":"2022-01-27T01:51:13Z","timestamp":1643248273000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8659362\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,10]]},"references-count":38,"URL":"https:\/\/doi.org\/10.1109\/malware.2018.8659362","relation":{},"subject":[],"published":{"date-parts":[[2018,10]]}}}