{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,22]],"date-time":"2026-04-22T19:15:23Z","timestamp":1776885323024,"version":"3.51.2"},"reference-count":45,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2023.3333555","type":"journal-article","created":{"date-parts":[[2023,11,16]],"date-time":"2023-11-16T18:54:39Z","timestamp":1700160879000},"page":"1241-1250","source":"Crossref","is-referenced-by-count":23,"title":["AgrAmplifier: Defending Federated Learning Against Poisoning Attacks Through Local Update Amplification"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-6284-2234","authenticated-orcid":false,"given":"Zirui","family":"Gong","sequence":"first","affiliation":[{"name":"School of Information and Communication Technology, Griffith University, Southport, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Liyue","family":"Shen","sequence":"additional","affiliation":[{"name":"School of Information Technology and Electrical Engineering, The University of Queensland, St Lucia, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yanjun","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Computer Science, University of Technology Sydney, Sydney, NSW, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9330-2662","authenticated-orcid":false,"given":"Leo Yu","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Information and Communication Technology, Griffith University, Southport, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2301-7409","authenticated-orcid":false,"given":"Jingwei","family":"Wang","sequence":"additional","affiliation":[{"name":"School of Information Technology and Electrical Engineering, The University of Queensland, St Lucia, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guangdong","family":"Bai","sequence":"additional","affiliation":[{"name":"School of Information Technology and Electrical Engineering, The University of Queensland, St Lucia, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3545-7863","authenticated-orcid":false,"given":"Yong","family":"Xiang","sequence":"additional","affiliation":[{"name":"School of Information Technology, Deakin University, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/3564625.3564658"},{"key":"ref2","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. 20th Int. Conf. Artif. Intell. Statist. (AISTATS)","author":"McMahan"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813687"},{"key":"ref4","first-page":"634","article-title":"Analyzing federated learning through an adversarial lens","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Bhagoji"},{"key":"ref5","first-page":"2938","article-title":"How to backdoor federated learning","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"Bagdasaryan"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24434"},{"key":"ref7","first-page":"1623","article-title":"Local model poisoning attacks to Byzantine-robust federated learning","volume-title":"Proc. 29th USENIX Conf. Secur. Symp.","author":"Fang"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/3579856.3590334"},{"key":"ref9","article-title":"Client-side gradient inversion against federated learning from poisoning","author":"Wei","year":"2023","journal-title":"arXiv:2309.07415"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3135422"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3128572.3140451"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2023\/508"},{"key":"ref14","first-page":"1","article-title":"Adversarial machine learning at scale","volume-title":"Proc. 5th Int. Conf. Learn. Represent. (ICLR)","author":"Kurakin"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3425662"},{"key":"ref16","first-page":"1","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Yin"},{"key":"ref17","first-page":"1","article-title":"The hidden vulnerability of distributed learning in byzantium","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Mhamdi"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3534678.3539231"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3543507.3583542"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/3581783.3612474"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom56396.2022.00030"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.3390\/electronics12132926"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/ICC45855.2022.9838792"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.21437\/ICSLP.1990-282"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1007\/s12243-022-00926-7"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3117075"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.3390\/e23010018"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2017.74"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2814575"},{"key":"ref30","first-page":"1","article-title":"Poisoning attacks against support vector machines","volume-title":"Proc. 29th Int. Conf. Mach. Learn. (ICML)","author":"Biggio"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00057"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1561\/2200000083"},{"key":"ref33","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume-title":"Proc. Adv. Neural Inf. Process. Syst. Annu. Conf. Neural Inf.","volume":"30","author":"Blanchard"},{"key":"ref34","article-title":"Byzantine-robust federated machine learning through adaptive model averaging","author":"Mu\u00f1oz-Gonz\u00e1lez","year":"2019","journal-title":"Clin. Orthopaedics Rel. Res. (CoRR)"},{"key":"ref35","first-page":"1","article-title":"RISE: Randomized input sampling for explanation of black-box models","volume-title":"Proc. 29th Brit. Mach. Vis. Conf.","author":"Petsiuk"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/3412815.3416889"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"key":"ref38","first-page":"1","article-title":"DBA: Distributed backdoor attacks against federated learning","volume-title":"Proc. Int. Conf. Learn. Represent.","author":"Xie"},{"key":"ref39","first-page":"1","article-title":"Learning how to explain neural networks: PatternNet and patternattribution","volume-title":"Proc. 6th Int. Conf. Learn. Represent. (ICLR)","author":"Kindermans"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"ref41","article-title":"Fashion-MNIST: A novel image dataset for benchmarking machine learning algorithms","author":"Xiao","year":"2017","journal-title":"Clin. Orthopaedics Rel. Res. (CoRR)"},{"key":"ref42","volume-title":"Dogs vs. Cats Competition","year":"2023"},{"key":"ref43","first-page":"322","article-title":"Fine-grained analysis of optimization and generalization for overparameterized two-layer neural networks","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Arora"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/TENSYMP54529.2022.9864421"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.14445\/22312803\/IJCTT-V70I7P103"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10319733.pdf?arnumber=10319733","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,12]],"date-time":"2024-01-12T02:39:23Z","timestamp":1705027163000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10319733\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":45,"URL":"https:\/\/doi.org\/10.1109\/tifs.2023.3333555","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}