{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,24]],"date-time":"2026-02-24T16:56:16Z","timestamp":1771952176433,"version":"3.50.1"},"reference-count":42,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"9","license":[{"start":{"date-parts":[[2024,9,1]],"date-time":"2024-09-01T00:00:00Z","timestamp":1725148800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,9,1]],"date-time":"2024-09-01T00:00:00Z","timestamp":1725148800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,9,1]],"date-time":"2024-09-01T00:00:00Z","timestamp":1725148800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"Technological University of Shannon: Midlands Midwest under President Doctoral Scholarship"},{"DOI":"10.13039\/501100001602","name":"Science Foundation Ireland","doi-asserted-by":"publisher","award":["SFI\/12\/RC\/2289 P2"],"award-info":[{"award-number":["SFI\/12\/RC\/2289 P2"]}],"id":[{"id":"10.13039\/501100001602","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Artif. Intell."],"published-print":{"date-parts":[[2024,9]]},"DOI":"10.1109\/tai.2024.3384938","type":"journal-article","created":{"date-parts":[[2024,4,9]],"date-time":"2024-04-09T15:57:07Z","timestamp":1712678227000},"page":"4562-4573","source":"Crossref","is-referenced-by-count":6,"title":["IOTM: Iterative Optimization Trigger Method\u2014A Runtime Data-Free Backdoor Attacks on Deep Neural Networks"],"prefix":"10.1109","volume":"5","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-0755-5896","authenticated-orcid":false,"given":"Iram","family":"Arshad","sequence":"first","affiliation":[{"name":"Technological University of Shannon, Midlands Midwest, Ireland"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2857-6979","authenticated-orcid":false,"given":"Saeed Hamood","family":"Alsamhi","sequence":"additional","affiliation":[{"name":"Insight Centre for Data Analytics, University of Galway, Galway, Ireland"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1543-1589","authenticated-orcid":false,"given":"Yuansong","family":"Qiao","sequence":"additional","affiliation":[{"name":"Technological University of Shannon, Midlands Midwest, Ireland"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8475-4074","authenticated-orcid":false,"given":"Brian","family":"Lee","sequence":"additional","affiliation":[{"name":"Technological University of Shannon, Midlands Midwest, Ireland"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4608-1451","authenticated-orcid":false,"given":"Yuhang","family":"Ye","sequence":"additional","affiliation":[{"name":"Technological University of Shannon, Midlands Midwest, Ireland"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TNNLS.2022.3182979"},{"key":"ref2","article-title":"Badnets: Identifying vulnerabilities in the machine learning model supply chain","author":"Gu","year":"2017"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.23919\/EUSIPCO54536.2021.9616118"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ICCE56470.2023.10043484"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58607-2_11"},{"key":"ref6","article-title":"Label-consistent backdoor attacks","author":"Turner","year":"2019"},{"key":"ref7","article-title":"Explaining and harnessing adversarial examples","author":"Goodfellow","year":"2014"},{"key":"ref8","article-title":"Towards deep learning models resistant to adversarial attacks","author":"Madry","year":"2017"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/icme55011.2023.00479"},{"key":"ref10","article-title":"Targeted backdoor attacks on deep learning systems using data poisoning","author":"Chen","year":"2017"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v34i07.6871"},{"key":"ref12","first-page":"6106","article-title":"Poison frogs! Targeted clean-label poisoning attacks on neural networks","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"31","author":"Shafahi","year":"2018"},{"key":"ref13","first-page":"7614","article-title":"Transferable clean-label poisoning attacks on deep neural nets","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Zhu","year":"2019"},{"key":"ref14","first-page":"12080","article-title":"MetaPoison: Practical general-purpose clean-label data poisoning","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"33","author":"Huang","year":"2020"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01617"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-20065-6_11"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23291"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2023.3306333"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref20","first-page":"2","article-title":"Others learning algorithms for classification: A comparison on handwritten digit recognition","volume-title":"Proc. Neural Netw.: Statist. Mech. Perspect.","volume":"261","author":"LeCun"},{"key":"ref21","article-title":"Very deep convolutional networks for large-scale image recognition","author":"Simonyan","year":"2014"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"issue":"4","key":"ref23","article-title":"Others learning multiple layers of features from tiny images","volume":"1","author":"Krizhevsky","year":"2009"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/OJCS.2023.3267221"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2019.00146"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.23919\/EUSIPCO.2019.8903053"},{"key":"ref28","first-page":"9389","article-title":"Just how toxic is data poisoning? A unified benchmark for backdoor and data poisoning attacks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Schwarzschild","year":"2021"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.01175"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/FOCS54457.2022.00092"},{"key":"ref31","first-page":"11973","article-title":"On the trade-off between adversarial and backdoor robustness","volume-title":"in Proc. Adv. Neural Inf. Process. Syst.","volume":"31","author":"Weng","year":"2020"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516716"},{"key":"ref33","article-title":"Backdoor attacks and countermeasures on deep learning: A comprehensive review","author":"Gao","year":"2020"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/s10994-022-06203-x"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00348"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR46437.2021.00555"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.23919\/CCC55666.2022.9901576"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/ICECE48499.2019.9058535"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1007\/s00138-021-01194-6"},{"key":"ref40","article-title":"Detecting backdoor attacks on deep neural networks by activation clustering","author":"Chen","year":"2018"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/SPW50608.2020.00025"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363216"}],"container-title":["IEEE Transactions on Artificial Intelligence"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9078688\/10673734\/10492613.pdf?arnumber=10492613","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,23]],"date-time":"2025-08-23T01:09:33Z","timestamp":1755911373000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10492613\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,9]]},"references-count":42,"journal-issue":{"issue":"9"},"URL":"https:\/\/doi.org\/10.1109\/tai.2024.3384938","relation":{},"ISSN":["2691-4581"],"issn-type":[{"value":"2691-4581","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,9]]}}}