{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,19]],"date-time":"2026-05-19T15:03:57Z","timestamp":1779203037125,"version":"3.51.4"},"reference-count":44,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U20A20177"],"award-info":[{"award-number":["U20A20177"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Hubei Province Key Research and Development Technology Special Innovation Project","award":["2021BAA032"],"award-info":[{"award-number":["2021BAA032"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3360869","type":"journal-article","created":{"date-parts":[[2024,1,31]],"date-time":"2024-01-31T18:32:41Z","timestamp":1706725961000},"page":"5405-5418","source":"Crossref","is-referenced-by-count":8,"title":["Depriving the Survival Space of Adversaries Against Poisoned Gradients in Federated Learning"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5659-7569","authenticated-orcid":false,"given":"Jianrong","family":"Lu","sequence":"first","affiliation":[{"name":"National Engineering Research Center for Big Data Technology and System, Services Computing Technology and System Laboratory, Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0042-9045","authenticated-orcid":false,"given":"Shengshan","family":"Hu","sequence":"additional","affiliation":[{"name":"National Engineering Research Center for Big Data Technology and System, Services Computing Technology and System Laboratory, Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1247-5092","authenticated-orcid":false,"given":"Wei","family":"Wan","sequence":"additional","affiliation":[{"name":"National Engineering Research Center for Big Data Technology and System, Services Computing Technology and System Laboratory, Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1735-2024","authenticated-orcid":false,"given":"Minghui","family":"Li","sequence":"additional","affiliation":[{"name":"School of Software Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9330-2662","authenticated-orcid":false,"given":"Leo Yu","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Information and Communication Technology, Griffith University, Nathan, QLD, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lulu","family":"Xue","sequence":"additional","affiliation":[{"name":"National Engineering Research Center for Big Data Technology and System, Services Computing Technology and System Laboratory, Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3934-7605","authenticated-orcid":false,"given":"Hai","family":"Jin","sequence":"additional","affiliation":[{"name":"National Engineering Research Center for Big Data Technology and System, Services Computing Technology and System Laboratory, Hubei Key Laboratory of Distributed System Security, Hubei Engineering Research Center on Big Data Security, School of Cyber Science and Engineering, Huazhong University of Science and Technology, Wuhan, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","first-page":"2938","article-title":"How to backdoor federated learning","volume-title":"Proc. 23rd Int. Conf. Artif. Intell. Stat.","author":"Bagdasaryan"},{"key":"ref2","first-page":"8632","article-title":"A little is enough: Circumventing defenses for distributed learning","volume-title":"Proc. Adv. Neural Inf. Process. Syst. (NIPS)","author":"Baruch"},{"key":"ref3","first-page":"119","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume-title":"Proc. Annu. Conf. Neural Inf. Process. Syst. (NIPS)","author":"Blanchard"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/3383455.3422562"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24434"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179336"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TSP.2019.2946020"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/GLOBECOM46510.2021.9685082"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3315125"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2023.23112"},{"key":"ref11","article-title":"EMNIST: An extension of MNIST to handwritten letters","author":"Cohen","year":"2017","journal-title":"arXiv:1702.05373"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/34.1000236"},{"key":"ref13","first-page":"1605","article-title":"Local model poisoning attacks to Byzantine-robust federated learning","volume-title":"Proc. 29th USENIX Secur. Symp.","author":"Fang"},{"key":"ref14","first-page":"301","article-title":"The limitations of federated learning in Sybil settings","volume-title":"Proc. 23rd Int. Symp. Res. Attacks, Intrusions Defenses","author":"Fung"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179401"},{"key":"ref16","article-title":"FedML: A research library and benchmark for federated machine learning","author":"He","year":"2020","journal-title":"arXiv:2007.13518"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.3390\/s20216230"},{"key":"ref18","article-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/5.726791"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00500"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33011544"},{"key":"ref22","article-title":"Abnormal client behavior detection in federated learning","author":"Li","year":"2019","journal-title":"arXiv:1910.09933"},{"key":"ref23","article-title":"Federated optimization in heterogeneous networks","author":"Li","year":"2018","journal-title":"arXiv:1812.06127"},{"key":"ref24","first-page":"1273","article-title":"Communication-efficient learning of deep networks from decentralized data","volume-title":"Proc. 20th Int. Conf. Artif. Intell. Statist.","author":"McMahan"},{"key":"ref25","article-title":"Federated learning: Collaborative machine learning without centralized training data","author":"McMahan","year":"2017"},{"key":"ref26","first-page":"3518","article-title":"The hidden vulnerability of distributed learning in Byzantium","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Mhamdi"},{"key":"ref27","first-page":"1721","article-title":"Every vote counts: Ranking-based training of federated learning to resist poisoning attacks","volume-title":"Proc. USENIX Secur. Symp.","author":"Mozaffari"},{"key":"ref28","article-title":"Byzantine-robust federated machine learning through adaptive model averaging","author":"Mu\u00f1oz-Gonz\u00e1lez","year":"2019","journal-title":"arXiv:1909.05125"},{"key":"ref29","first-page":"1415","article-title":"FLAME: Taming backdoors in federated learning","volume-title":"Proc. 31st USENIX Secur. Symp.","author":"Nguyen"},{"key":"ref30","article-title":"Robust aggregation for federated learning","author":"Pillutla","year":"2019","journal-title":"arXiv:1912.13445"},{"key":"ref31","article-title":"Secure and fault tolerant decentralized learning","author":"Prakash","year":"2020","journal-title":"arXiv:2010.07541"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/3038924"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_24"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2019\/670"},{"key":"ref36","first-page":"1","article-title":"DBA: Distributed backdoor attacks against federated learning","volume-title":"Proc. 8th Int. Conf. Learn. Represent.","author":"Xie"},{"key":"ref37","article-title":"Generalized Byzantine-tolerant SGD","author":"Xie","year":"2018","journal-title":"arXiv:1802.10116"},{"key":"ref38","first-page":"6893","article-title":"Zeno: Distributed stochastic gradient descent with suspicion-based fault-tolerance","volume-title":"Proc. Int. Conf. Mach. Learn. (ICML)","author":"Xie"},{"key":"ref39","article-title":"Robust federated learning against both data heterogeneity and poisoning attack via aggregation optimization","author":"Xie","year":"2022","journal-title":"arXiv:2211.05554"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1007\/s41666-020-00082-4"},{"key":"ref41","first-page":"5636","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","volume-title":"Proc. 35th Int. Conf. Mach. Learn.","author":"Yin"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/s11432-020-3419-4"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v36i8.20903"},{"key":"ref44","article-title":"Federated learning with non-IID data","author":"Zhao","year":"2018","journal-title":"arXiv:1806.00582"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10417061.pdf?arnumber=10417061","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,6,1]],"date-time":"2024-06-01T04:41:48Z","timestamp":1717216908000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10417061\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":44,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3360869","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}