{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,7]],"date-time":"2026-03-07T18:03:49Z","timestamp":1772906629793,"version":"3.50.1"},"reference-count":46,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2020]]},"DOI":"10.1109\/tdsc.2020.2986205","type":"journal-article","created":{"date-parts":[[2020,4,14]],"date-time":"2020-04-14T21:01:43Z","timestamp":1586898103000},"page":"1-1","source":"Crossref","is-referenced-by-count":77,"title":["Shielding Collaborative Learning: Mitigating Poisoning Attacks through Client-Side Detection"],"prefix":"10.1109","author":[{"given":"Lingchen","family":"Zhao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shengshan","family":"Hu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qian","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jianlin","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shen","family":"Chao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiangyang","family":"Luo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pengfei","family":"Hu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","article-title":"Biscotti: A ledger for private and secure peer-to-peer machine learning","author":"shayan","year":"2018"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.2971601"},{"key":"ref33","article-title":"Adversarial examples in the physical world","author":"kurakin","year":"2016"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/s11431-019-9544-7"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243757"},{"key":"ref30","article-title":"Backdooring convolutional neural networks via targeted weight perturbations","author":"dumford","year":"2018"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2019.2948775"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/MCOM.2019.1900006"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2019.2929047"},{"key":"ref34","article-title":"Adversarial attacks on neural network policies","author":"huang","year":"2017"},{"key":"ref10","first-page":"571","article-title":"Project adam: Building an efficient and scalable deep learning training system","author":"chilimbi","year":"2014","journal-title":"Proc 11th USENIX Conf Operating Syst Des Implementation"},{"key":"ref40","first-page":"201","article-title":"Cryptonets: Applying neural networks to encrypted data with high throughput and accuracy","author":"gilad-bachrach","year":"2016","journal-title":"Proc 33rd Int Conf Int Conf Mach Learn"},{"key":"ref11","first-page":"1223","article-title":"Large scale distributed deep networks","author":"dean","year":"2012","journal-title":"Proc 25th Int Conf Neural Inf Process Syst"},{"key":"ref12","article-title":"Deep gradient compression: Reducing the communication bandwidth for distributed training","author":"lin","year":"2017"},{"key":"ref13","first-page":"2595","article-title":"Parallelized stochastic gradient descent","author":"zinkevich","year":"2010","journal-title":"Proc Advances Neural Inf Process Syst"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/FG.2018.00020"},{"key":"ref15","article-title":"BadNets: Identifying vulnerabilities in the machine learning model supply chain","author":"gu","year":"2017"},{"key":"ref16","first-page":"634","article-title":"Analyzing federated learning through an adversarial lens","author":"bhagoji","year":"2019","journal-title":"Proc 36th Int Conf Mach Learn"},{"key":"ref17","article-title":"Differentially private federated learning: A client level perspective","author":"geyer","year":"2017"},{"key":"ref18","article-title":"Learning differentially private recurrent language models","author":"mcmahan","year":"2017"},{"key":"ref19","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","author":"mcmahan","year":"2017","journal-title":"Proc Int Conf Artif Intell Statist"},{"key":"ref28","article-title":"Cifar-10","year":"0"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140450"},{"key":"ref27","article-title":"Kddcup","year":"0"},{"key":"ref3","article-title":"How to backdoor federated learning","author":"bagdasaryan","year":"2018"},{"key":"ref6","first-page":"3681","article-title":"Security analysis of online centroid anomaly detection","volume":"13","author":"kloft","year":"2012","journal-title":"J Mach Learn Res"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref5","first-page":"3517","article-title":"Certified defenses for data poisoning attacks","author":"steinhardt","year":"2017","journal-title":"Proc 31st Int Conf Neural Inf Process Syst"},{"key":"ref8","first-page":"5636","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","author":"yin","year":"2018","journal-title":"Proc 35th Int Conf Mach Learn"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3154503"},{"key":"ref2","article-title":"Mitigating sybils in federated learning poisoning","author":"fung","year":"2018"},{"key":"ref9","first-page":"119","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","author":"blanchard","year":"2017","journal-title":"Proc 31st Int Conf Neural Inf Process Syst"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991125"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"ref20","article-title":"Federated learning: Strategies for improving communication efficiency","author":"kone?n?","year":"2016"},{"key":"ref45","first-page":"591","article-title":"Real-time and spatio-temporal crowd-sourced social network data publishing with differential privacy","volume":"15","author":"wang","year":"2018","journal-title":"IEEE Trans Dependable Secure Comput"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-00470-5_13"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00031"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134056"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536466"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2939713"},{"key":"ref26","article-title":"Mnist","year":"0"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"ref25","article-title":"Tensorflow","year":"0"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8858\/4358699\/09066920.pdf?arnumber=9066920","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,1,12]],"date-time":"2022-01-12T16:06:36Z","timestamp":1642003596000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9066920\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/tdsc.2020.2986205","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]}}}