{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,17]],"date-time":"2026-03-17T02:13:29Z","timestamp":1773713609684,"version":"3.50.1"},"reference-count":49,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","license":[{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100003009","name":"Science and Technology Development Fund","doi-asserted-by":"publisher","award":["FDCT 0080\/2024\/RIA2"],"award-info":[{"award-number":["FDCT 0080\/2024\/RIA2"]}],"id":[{"id":"10.13039\/501100003009","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2026,3]]},"DOI":"10.1109\/tdsc.2025.3630811","type":"journal-article","created":{"date-parts":[[2025,11,10]],"date-time":"2025-11-10T18:51:35Z","timestamp":1762800695000},"page":"2934-2948","source":"Crossref","is-referenced-by-count":0,"title":["Hidden Threats in Federated Unlearning: Camouflaged Poisoning Attacks and Their Unlearning Consequences"],"prefix":"10.1109","volume":"23","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1822-6617","authenticated-orcid":false,"given":"Kun","family":"Gao","sequence":"first","affiliation":[{"name":"School of Computer Science, University of Technology Sydney, Sydney, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3411-7947","authenticated-orcid":false,"given":"Tianqing","family":"Zhu","sequence":"additional","affiliation":[{"name":"Faculty of Data Science, City University of Macau, Macao, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7561-0992","authenticated-orcid":false,"given":"Dayong","family":"Ye","sequence":"additional","affiliation":[{"name":"Faculty of Data Science, City University of Macau, Macao, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3603-6617","authenticated-orcid":false,"given":"Bo","family":"Liu","sequence":"additional","affiliation":[{"name":"School of Computer Science, University of Technology Sydney, Sydney, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1680-2521","authenticated-orcid":false,"given":"Wanlei","family":"Zhou","sequence":"additional","affiliation":[{"name":"Faculty of Data Science, City University of Macau, Macao, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"McMahan"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3680277"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/CNS62487.2024.10735680"},{"key":"ref4","article-title":"Federated unlearning: How to efficiently erase a client in FL?","author":"Halimi","year":"2022"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/JAS.2022.105860"},{"key":"ref6","article-title":"Ferrari: Federated feature unlearning via optimizing feature sensitivity","author":"Gu","year":"2024"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3050517"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/IWQOS52092.2021.9521274"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3315526"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2024.3361451"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484756"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/JAS.2021.1004261"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3443622"},{"key":"ref14","article-title":"Asynchronous federated learning on heterogeneous devices: A survey","volume-title":"Comput. Sci. Rev.","volume":"50","author":"Xu","year":"2023"},{"key":"ref15","first-page":"4211","article-title":"$\\lbrace${UBA-Inf $\\rbrace$}: Unlearning activated backdoor attack with $\\lbrace${ Influence-Driven$\\rbrace$} camouflage","volume-title":"Proc. 33rd USENIX Secur. Symp.","author":"Huang","year":"2024"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.35"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3603620"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i7.20736"},{"key":"ref19","article-title":"SoK: Challenges and opportunities in federated unlearning","author":"Jeong","year":"2024"},{"key":"ref20","first-page":"118","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","author":"Blanchard"},{"key":"ref21","first-page":"3521","article-title":"The hidden vulnerability of distributed learning in byzantium","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Guerraoui"},{"key":"ref22","first-page":"5650","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Yin"},{"key":"ref23","first-page":"1415","article-title":"$\\lbrace${FLAME$\\rbrace$}: Taming backdoors in federated learning","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Nguyen","year":"2022"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2025.104164"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM52122.2024.10621201"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/MNET.2023.3329366"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3657290"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/MWC.008.2300006"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3357292"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2024.3361451"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_24"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3362147"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3233190"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2024.3420126"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103535"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ITW61385.2024.10807034"},{"key":"ref37","article-title":"On the byzantine-resilience of distillation-based federated learning","author":"Roux","year":"2024"},{"key":"ref38","article-title":"Robust federated learning in a heterogeneous environment","author":"Ghosh","year":"2019"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/TNSE.2020.2996738"},{"key":"ref40","first-page":"1605","article-title":"Local model poisoning attacks to $\\lbrace${Byzantine-Robust$\\rbrace$} federated learning","volume-title":"Proc. 29th USENIX Secur. Symp.","author":"Fang","year":"2020"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.3390\/fi13030073"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1016\/j.neucom.2021.07.098"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1145\/3460427"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2020.3041404"},{"key":"ref45","article-title":"Enhancing security in federated learning through adaptive consensus-based model update validation","author":"Alsulaimawi","year":"2024"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52734.2025.00471"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52734.2025.01252"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-024-02098-4"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1007\/s11263-023-01884-w"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11434575\/11235980.pdf?arnumber=11235980","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,17]],"date-time":"2026-03-17T01:16:45Z","timestamp":1773710205000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11235980\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,3]]},"references-count":49,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3630811","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,3]]}}}