{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,26]],"date-time":"2026-06-26T14:24:17Z","timestamp":1782483857166,"version":"3.54.5"},"reference-count":46,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3420126","type":"journal-article","created":{"date-parts":[[2024,6,27]],"date-time":"2024-06-27T15:51:21Z","timestamp":1719503481000},"page":"6693-6708","source":"Crossref","is-referenced-by-count":335,"title":["A Robust Privacy-Preserving Federated Learning Model Against Model Poisoning Attacks"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8669-9777","authenticated-orcid":false,"given":"Abbas","family":"Yazdinejad","sequence":"first","affiliation":[{"name":"Cyber Science Lab, Canada Cyber Foundry, University of Guelph, Guelph, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9294-7554","authenticated-orcid":false,"given":"Ali","family":"Dehghantanha","sequence":"additional","affiliation":[{"name":"Cyber Science Lab, Canada Cyber Foundry, University of Guelph, Guelph, ON, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7948-4033","authenticated-orcid":false,"given":"Hadis","family":"Karimipour","sequence":"additional","affiliation":[{"name":"Department of Electrical and Software Engineering, School of Engineering, University of Calgary, Calgary, AB, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9851-4103","authenticated-orcid":false,"given":"Gautam","family":"Srivastava","sequence":"additional","affiliation":[{"name":"Department of Mathematics and Computer Science, Brandon University, Brandon, MB, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0049-4296","authenticated-orcid":false,"given":"Reza M.","family":"Parizi","sequence":"additional","affiliation":[{"name":"Decentralized Science Lab, Kennesaw State University, Kennesaw, GA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3249568"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2929409"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3108434"},{"key":"ref4","first-page":"634","article-title":"Analyzing federated learning through an adversarial\n                        lens","volume-title":"Proc. 36th Int. Conf. Mach.\n                        Learn.","author":"Bhagoji"},{"key":"ref5","first-page":"301","article-title":"The limitations of federated learning in Sybil\n                        settings","volume-title":"Proc. 23rd Int. Symp. Res.\n                        Attacks, Intrusions Defenses","author":"Fung"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3169918"},{"key":"ref7","first-page":"1623","article-title":"Local model poisoning attacks to Byzantine-robust\n                        federated learning","volume-title":"Proc. 29th USENIX\n                        Conf. Secur. Symp.","author":"Fang"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2023.3255171"},{"key":"ref9","first-page":"1721","article-title":"Every vote counts: Ranking-based training of\n                        federated learning to resist poisoning attacks","volume-title":"Proc. 32nd USENIX Secur. Symp. (USENIX Secur.)","author":"Mozaffari"},{"key":"ref10","first-page":"118","article-title":"Machine learning with adversaries: Byzantine tolerant\n                        gradient descent","volume-title":"Proc. Adv. Neural Inf.\n                        Process. Syst.","volume":"30","author":"Blanchard"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/tdsc.2022.3218793"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2019.2939713"},{"key":"ref13","article-title":"Protecting data from all parties: Combining FHE and\n                        DP in federated learning","author":"S\u00e9bert","year":"2022","journal-title":"arXiv:2205.04330"},{"key":"ref14","article-title":"Privacy-preserving decentralized deep learning with\n                        multiparty homomorphic encryption","author":"Xu","year":"2022","journal-title":"arXiv:2207.04604"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2023-0122"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24119"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.sysarc.2024.103088"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/INFOCOM41043.2020.9155414"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/spw59333.2023.00012"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978318"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3005909"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179400"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TCE.2023.3318509"},{"key":"ref24","first-page":"3521","article-title":"The hidden vulnerability of distributed learning in\n                        Byzantium","volume-title":"Proc. 35th Int. Conf. Mach.\n                        Learn.","author":"El Mhamdi"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TCSVT.2021.3116976"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3591354"},{"key":"ref28","article-title":"DBA: Distributed backdoor attacks against federated\n                        learning","volume-title":"Proc. Int. Conf. Learn.\n                        Represent.","author":"Xie"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58951-6_24"},{"key":"ref30","first-page":"4805","article-title":"ACORN: Input validation for\n                        secure aggregation","volume-title":"Proc. 32nd USENIX\n                        Secur. Symp. (USENIX Secur.)","author":"Bell"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179468"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-14791-3_23"},{"key":"ref33","first-page":"508","article-title":"AUROR: Defending against poisoning attacks in\n                        collaborative deep learning systems","volume-title":"Proc. 32nd Annu. Conf. Comput. Security Appl.","author":"Shen"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24434"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1016\/j.cie.2020.107000"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/tevc.2023.3253850"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2020.3031486"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1016\/j.ins.2023.119480"},{"key":"ref39","volume-title":"Availability With\n                        Redundancy","year":"2023"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1007\/s11042-019-07874-w"},{"key":"ref41","article-title":"Distributed momentum for Byzantine-resilient\n                        learning","author":"El-Mhamdi","year":"2020","journal-title":"arXiv:2003.00010"},{"key":"ref42","volume-title":"Deep\n                        Learning","author":"Goodfellow","year":"2016"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1007\/s11042-023-16301-0"},{"key":"ref44","volume-title":"Paillier Cryptosystem","year":"2016"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i9.16960"},{"key":"ref46","article-title":"On the convergence of FedAvg on non-IID\n                        data","author":"Li","year":"2019","journal-title":"arXiv:1907.02189"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10319981\/10574838.pdf?arnumber=10574838","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,2]],"date-time":"2026-03-02T20:54:02Z","timestamp":1772484842000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10574838\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3420126","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}