{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,6]],"date-time":"2026-01-06T13:40:59Z","timestamp":1767706859280,"version":"3.28.0"},"reference-count":46,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,8,22]],"date-time":"2022-08-22T00:00:00Z","timestamp":1661126400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,8,22]],"date-time":"2022-08-22T00:00:00Z","timestamp":1661126400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,8,22]]},"DOI":"10.1109\/pst55820.2022.9851993","type":"proceedings-article","created":{"date-parts":[[2022,8,25]],"date-time":"2022-08-25T18:46:39Z","timestamp":1661453199000},"page":"1-10","source":"Crossref","is-referenced-by-count":3,"title":["Privacy-Preserving Detection of Poisoning Attacks in Federated Learning"],"prefix":"10.1109","author":[{"given":"Trent","family":"Muhr","sequence":"first","affiliation":[{"name":"Iowa State University,Department of Computer Science,Ames,IA,50014"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wensheng","family":"Zhang","sequence":"additional","affiliation":[{"name":"Iowa State University,Department of Computer Science,Ames,IA,50014"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref2","article-title":"Privacy-preserving deep learning via additively homomorphic encryption","author":"Aono","year":"2017","journal-title":"IEEE Transactions on Information Forensics and Security"},{"doi-asserted-by":"publisher","key":"ref3","DOI":"10.1007\/978-3-030-88418-5_22"},{"volume-title":"International Conference on Neural Information Processing Systems","author":"Bartlett","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","key":"ref4"},{"doi-asserted-by":"publisher","key":"ref5","DOI":"10.1145\/3372297.3417885"},{"volume-title":"Paillier library","author":"Bethencourt","key":"ref6"},{"volume-title":"Workshop on Security in Machine Learning (SecML)","author":"Bhagoji","article-title":"Model poisoning attacks in federated learning","key":"ref7"},{"key":"ref8","article-title":"Towards federated learning at scale: System design","author":"Bonawitz","year":"2019","journal-title":"SysML"},{"doi-asserted-by":"publisher","key":"ref9","DOI":"10.1145\/3133956.3133982"},{"key":"ref10","doi-asserted-by":"crossref","DOI":"10.14722\/ndss.2021.24434","article-title":"Fltrust: Byzantine-robust federated learning via trust bootstrapping","volume-title":"Network and Distributed System Security (NDSS) Symposium","author":"Cao"},{"doi-asserted-by":"publisher","key":"ref11","DOI":"10.1145\/3154503"},{"key":"ref12","article-title":"Intel sgx explained","volume":"86","author":"Costan","year":"2016","journal-title":"IACR Cryptol. ePrint Arch., 2016"},{"doi-asserted-by":"publisher","key":"ref13","DOI":"10.1109\/99.660313"},{"doi-asserted-by":"publisher","key":"ref14","DOI":"10.1016\/j.cose.2020.101824"},{"volume-title":"USENIX Security Symposium","author":"Fang","article-title":"Local model poisoning attacks to byzantine-robust federated learning","key":"ref15"},{"doi-asserted-by":"publisher","key":"ref16","DOI":"10.2478\/popets-2021-0030"},{"doi-asserted-by":"publisher","key":"ref17","DOI":"10.1080\/14786440109462720"},{"volume-title":"International Symposium on Research in Attacks, Intrusions and Defenses (RAID)","author":"Fung","article-title":"The limitations of federated learning in sybil settings","key":"ref18"},{"year":"2019","author":"Ghazi","article-title":"Scalable and differentially private distributed aggregation in the shuffled model","key":"ref19"},{"volume-title":"Eigen v3","year":"2010","author":"Guennebaud","key":"ref20"},{"year":"2018","author":"Hard","journal-title":"Federated learning for mobile keyboard prediction","key":"ref21"},{"doi-asserted-by":"publisher","key":"ref22","DOI":"10.1038\/s42256-020-0186-1"},{"year":"2016","author":"Konecny","article-title":"Federated learning: Strategies for improving communication efficiency","key":"ref23"},{"year":"2009","author":"Krizhevsky","journal-title":"Learning multiple layers of features from tiny images","key":"ref24"},{"doi-asserted-by":"publisher","key":"ref25","DOI":"10.1109\/ICDCS47774.2020.00017"},{"doi-asserted-by":"publisher","key":"ref26","DOI":"10.1109\/TIFS.2022.3163592"},{"year":"2017","author":"McMahan","article-title":"Learning differentially private recurrent language models","key":"ref27"},{"year":"2019","author":"Munoz-Gonzalez","article-title":"Byzantine-robust federated machine learning through adaptive model averaging","key":"ref28"},{"doi-asserted-by":"publisher","key":"ref29","DOI":"10.1007\/3-540-48910-X_16"},{"key":"ref30","first-page":"8024","article-title":"Pytorch: An imperative style, high-performance deep learning library","volume-title":"Advances in Neural Information Processing Systems 32","author":"Paszke","year":"2019"},{"volume-title":"Spectra","year":"2015","author":"Qiu","key":"ref31"},{"year":"2018","author":"Ryffel","article-title":"A generic framework for privacy preserving deep learning","key":"ref32"},{"year":"2018","author":"Ryffel","article-title":"A generic framework for privacy preserving deep learning","key":"ref33"},{"doi-asserted-by":"publisher","key":"ref34","DOI":"10.14722\/ndss.2021.24119"},{"doi-asserted-by":"publisher","key":"ref35","DOI":"10.1109\/BigData47090.2019.9006280"},{"doi-asserted-by":"publisher","key":"ref36","DOI":"10.1145\/2991079.2991125"},{"doi-asserted-by":"publisher","key":"ref37","DOI":"10.1007\/978-3-030-58951-6_24"},{"doi-asserted-by":"publisher","key":"ref38","DOI":"10.1145\/3378679.3394533"},{"doi-asserted-by":"publisher","key":"ref39","DOI":"10.1109\/TIFS.2020.2988575"},{"doi-asserted-by":"publisher","key":"ref40","DOI":"10.1109\/TDSC.2019.2952332"},{"year":"2017","author":"Xiao","article-title":"Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms","key":"ref41"},{"volume-title":"International Conference on Machine Learning","author":"Yin","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","key":"ref42"},{"doi-asserted-by":"publisher","key":"ref43","DOI":"10.1109\/TDSC.2021.3093711"},{"doi-asserted-by":"publisher","key":"ref44","DOI":"10.1109\/JIOT.2020.3037194"},{"doi-asserted-by":"publisher","key":"ref45","DOI":"10.1109\/JIOT.2020.2987958"},{"doi-asserted-by":"publisher","key":"ref46","DOI":"10.1109\/SP.2019.00045"},{"key":"ref47","article-title":"Deep leakage from gradients","author":"Zhu","year":"2019","journal-title":"Advances in Neural Information Processing Systems"}],"event":{"name":"2022 19th Annual International Conference on Privacy, Security & Trust (PST)","start":{"date-parts":[[2022,8,22]]},"location":"Fredericton, NB, Canada","end":{"date-parts":[[2022,8,24]]}},"container-title":["2022 19th Annual International Conference on Privacy, Security &amp; Trust (PST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9851848\/9851959\/09851993.pdf?arnumber=9851993","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,24]],"date-time":"2024-01-24T03:28:08Z","timestamp":1706066888000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9851993\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,8,22]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/pst55820.2022.9851993","relation":{},"subject":[],"published":{"date-parts":[[2022,8,22]]}}}