{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,29]],"date-time":"2026-03-29T06:51:27Z","timestamp":1774767087911,"version":"3.50.1"},"reference-count":46,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100004826","name":"Natural Science Foundation of Beijing Municipality, China","doi-asserted-by":"publisher","award":["M21039"],"award-info":[{"award-number":["M21039"]}],"id":[{"id":"10.13039\/501100004826","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100003009","name":"Science and Technology Development Fund of Macao","doi-asserted-by":"publisher","award":["0033\/2023\/RIA1"],"award-info":[{"award-number":["0033\/2023\/RIA1"]}],"id":[{"id":"10.13039\/501100003009","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3463532","type":"journal-article","created":{"date-parts":[[2024,9,18]],"date-time":"2024-09-18T17:54:27Z","timestamp":1726682067000},"page":"8845-8859","source":"Crossref","is-referenced-by-count":4,"title":["Privacy-Preserving Federated Learning With Improved Personalization and Poison Rectification of Client Models"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-9940-5400","authenticated-orcid":false,"given":"Yihao","family":"Cao","sequence":"first","affiliation":[{"name":"College of Computer Science, Beijing Key Laboratory of Trusted Computing, Beijing University of Technology, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4917-7996","authenticated-orcid":false,"given":"Jianbiao","family":"Zhang","sequence":"additional","affiliation":[{"name":"College of Computer Science, Beijing Key Laboratory of Trusted Computing, Beijing University of Technology, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4782-4571","authenticated-orcid":false,"given":"Yaru","family":"Zhao","sequence":"additional","affiliation":[{"name":"College of Computer Science, Beijing Key Laboratory of Trusted Computing, Beijing University of Technology, Beijing, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3663-6591","authenticated-orcid":false,"given":"Hong","family":"Shen","sequence":"additional","affiliation":[{"name":"School of Engineering and Technology, Central Queensland University, Rockhampton, Australia"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5650-1758","authenticated-orcid":false,"given":"Haoxiang","family":"Huang","sequence":"additional","affiliation":[{"name":"School of Computer Science and Technology, Xinjiang University, &#x00DC;r&#x00FC;mqi, Xinjiang, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/COMST.2021.3075439"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2022.3169918"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/JIOT.2021.3095077"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1016\/j.knosys.2022.110178"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3458864.3466628"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00065"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2021.3138611"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/TII.2021.3107783"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/MASS50613.2020.00066"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3456631"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2023.23041"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3386901.3388946"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3460427"},{"key":"ref14","first-page":"43158","article-title":"LeadFL: Client self-defense against model poisoning in federated learning","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Zhu"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484557"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-16815-4_12"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3093711"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3453142.3491287"},{"key":"ref19","first-page":"5394","article-title":"Meta-learning for mixed linear regression","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Kong"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v33i01.33011544"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24498"},{"key":"ref22","first-page":"2938","article-title":"How to backdoor federated learning","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"Bagdasaryan"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/tbdata.2023.3237397"},{"key":"ref24","first-page":"1","article-title":"Machine learning with adversaries: Byzantine tolerant gradient descent","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"30","author":"Blanchard"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2022.23156"},{"key":"ref26","first-page":"1415","article-title":"$FLAME$: Taming backdoors in federated learning","volume-title":"Proc. 31st USENIX Secur. Symp. (USENIX Secur.)","author":"Nguyen"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2021.24434"},{"key":"ref28","first-page":"1605","article-title":"Local model poisoning attacks to $Byzantine \u2013 robust$ federated learning","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Fang"},{"key":"ref29","article-title":"Attack-resistant federated learning with residual-based reweighting","author":"Fu","year":"2019","journal-title":"arXiv:1912.11464"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2023.23112"},{"key":"ref31","first-page":"2089","article-title":"Exploiting shared representations for personalized federated learning","volume-title":"Proc. Int. Conf. Mach. Learn. (ICML)","author":"Collins"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52688.2022.00985"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v37i9.26330"},{"key":"ref34","first-page":"17716","article-title":"Federated learning with partial model personalization","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Pillutla"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.21105\/joss.00205"},{"key":"ref36","first-page":"7587","article-title":"SparseFed: Mitigating model poisoning attacks in federated learning with sparsification","volume-title":"Proc. Int. Conf. Artif. Intell. Statist.","author":"Panda"},{"key":"ref37","volume-title":"Introduction to Robust Estimation and Hypothesis Testing","author":"Wilcox","year":"2011"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/TPDS.2021.3090331"},{"key":"ref39","first-page":"5650","article-title":"Byzantine-robust distributed learning: Towards optimal statistical rates","volume-title":"Proc. Int. Conf. Mach. Learn.","author":"Yin"},{"key":"ref40","first-page":"1","article-title":"PyTorch: An imperative style, high-performance deep learning library","volume-title":"Proc. Adv. Neural Inf. Process. Syst.","volume":"32","author":"Paszke"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/IJCNN.2017.7966217"},{"key":"ref42","article-title":"Learning multiple layers of features from tiny images","author":"Krizhevsky","year":"2009"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/tpwrs.2023.3234287"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1109\/iotdi61053.2024.00018"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TIP.2010.2073477"},{"key":"ref46","first-page":"301","article-title":"The Limitations of Federated Learning in Sybil Settings","volume-title":"Proc. 23rd Int. Symp. Res. Attacks, Intrusion, Defenses (RAID)","author":"Fung"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10319981\/10683784.pdf?arnumber=10683784","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,10,3]],"date-time":"2024-10-03T05:28:05Z","timestamp":1727933285000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10683784\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":46,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3463532","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}