{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T11:22:33Z","timestamp":1779103353541,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":59,"publisher":"ACM","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,10,13]]},"DOI":"10.1145\/3733799.3762973","type":"proceedings-article","created":{"date-parts":[[2025,12,30]],"date-time":"2025-12-30T11:38:49Z","timestamp":1767094729000},"page":"136-145","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["LLM Unlearning on Noisy Forget Sets: A Study of Incomplete, Rewritten, and Watermarked Data"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0007-0957-638X","authenticated-orcid":false,"given":"Changsheng","family":"Wang","sequence":"first","affiliation":[{"name":"Michigan State University, East Lansing, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5147-9838","authenticated-orcid":false,"given":"Yihua","family":"Zhang","sequence":"additional","affiliation":[{"name":"Michigan State University, East Lansing, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6510-1537","authenticated-orcid":false,"given":"Dennis","family":"Wei","sequence":"additional","affiliation":[{"name":"IBM Research, San jose, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-7753-2326","authenticated-orcid":false,"given":"Jinghan","family":"Jia","sequence":"additional","affiliation":[{"name":"Michigan State University, East Lansing, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1039-8369","authenticated-orcid":false,"given":"Pin-Yu","family":"Chen","sequence":"additional","affiliation":[{"name":"IBM Research, San Jose, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2817-6991","authenticated-orcid":false,"given":"Sijia","family":"Liu","sequence":"additional","affiliation":[{"name":"Michigan State University, East Lansing, MI, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2025,12,30]]},"reference":[{"key":"e_1_3_3_2_2_2","unstructured":"Josh Achiam Steven Adler Sandhini Agarwal Lama Ahmad Ilge Akkaya Florencia\u00a0Leoni Aleman Diogo Almeida Janko Altenschmidt Sam Altman Shyamal Anadkat et\u00a0al. 2023. Gpt-4 technical report. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2303.08774 (2023)."},{"key":"e_1_3_3_2_3_2","unstructured":"George-Octavian Barbulescu and Peter Triantafillou. 2024. To Each (Textual Sequence) Its Own: Improving Memorized-Data Unlearning in Large Language Models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2405.03097 (2024)."},{"key":"e_1_3_3_2_4_2","unstructured":"Yiwei Chen Yuguang Yao Yihua Zhang Bingquan Shen Gaowen Liu and Sijia Liu. 2025. Safety mirage: How spurious correlations undermine vlm safety fine-tuning. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2503.11832 (2025)."},{"key":"e_1_3_3_2_5_2","doi-asserted-by":"crossref","unstructured":"Sumanth Dathathri Abigail See Sumedh Ghaisas Po-Sen Huang Rob McAdam Johannes Welbl Vandana Bachani Alex Kaskasoli Robert Stanforth Tatiana Matejovicova et\u00a0al. 2024. Scalable watermarking for identifying large language model outputs. Nature 634 8035 (2024) 818\u2013823.","DOI":"10.1038\/s41586-024-08025-4"},{"key":"e_1_3_3_2_6_2","unstructured":"Aghyad Deeb and Fabien Roger. 2024. Do Unlearning Methods Remove Information from Language Model Weights? arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2410.08827 (2024)."},{"key":"e_1_3_3_2_7_2","unstructured":"Ronen Eldan and Mark Russinovich. 2023. Who\u2019s Harry Potter? Approximate Unlearning in LLMs. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.02238 (2023)."},{"key":"e_1_3_3_2_8_2","doi-asserted-by":"crossref","unstructured":"Micah Goldblum Dimitris Tsipras Chulin Xie Xinyun Chen Avi Schwarzschild Dawn Song Aleksander M\u0105dry Bo Li and Tom Goldstein. 2022. Dataset security for machine learning: Data poisoning backdoor attacks and defenses. IEEE Transactions on Pattern Analysis and Machine Intelligence 45 2 (2022) 1563\u20131580.","DOI":"10.1109\/TPAMI.2022.3162397"},{"key":"e_1_3_3_2_9_2","unstructured":"Dan Hendrycks Collin Burns Steven Basart Andy Zou Mantas Mazeika Dawn Song and Jacob Steinhardt. 2020. Measuring massive multitask language understanding. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2009.03300 (2020)."},{"key":"e_1_3_3_2_10_2","unstructured":"Shengyuan Hu Yiwei Fu Zhiwei\u00a0Steven Wu and Virginia Smith. 2024. Jogging the Memory of Unlearned Model Through Targeted Relearning Attack. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2406.13356 (2024)."},{"key":"e_1_3_3_2_11_2","unstructured":"Zhengmian Hu Lichang Chen Xidong Wu Yihan Wu Hongyang Zhang and Heng Huang. 2023. Unbiased watermark for large language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.10669 (2023)."},{"key":"e_1_3_3_2_12_2","series-title":"Proceedings of Machine Learning Research","first-page":"20166","volume-title":"Proceedings of the 41st International Conference on Machine Learning","volume":"235","author":"Huang Yue","year":"2024","unstructured":"Yue Huang, Lichao Sun, Haoran Wang, Siyuan Wu, Qihui Zhang, Yuan Li, Chujie Gao, Yixin Huang, et\u00a0al. 2024. Position: TrustLLM: Trustworthiness in Large Language Models. In Proceedings of the 41st International Conference on Machine Learning(Proceedings of Machine Learning Research, Vol.\u00a0235). 20166\u201320270."},{"key":"e_1_3_3_2_13_2","volume-title":"The Eleventh International Conference on Learning Representations","author":"Ilharco Gabriel","year":"2023","unstructured":"Gabriel Ilharco, Marco\u00a0Tulio Ribeiro, Mitchell Wortsman, Ludwig Schmidt, Hannaneh Hajishirzi, and Ali Farhadi. 2023. Editing models with task arithmetic. In The Eleventh International Conference on Learning Representations."},{"key":"e_1_3_3_2_14_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.acl-long.805"},{"key":"e_1_3_3_2_15_2","volume-title":"The Thirty-eighth Annual Conference on Neural Information Processing Systems","author":"Jia Jinghan","year":"2024","unstructured":"Jinghan Jia, Jiancheng Liu, Yihua Zhang, Parikshit Ram, Nathalie Baracaldo, and Sijia Liu. 2024. WAGLE: Strategic Weight Attribution for Effective and Modular Unlearning in Large Language Models. In The Thirty-eighth Annual Conference on Neural Information Processing Systems."},{"key":"e_1_3_3_2_16_2","first-page":"17061","volume-title":"International Conference on Machine Learning","author":"Kirchenbauer John","year":"2023","unstructured":"John Kirchenbauer, Jonas Geiping, Yuxin Wen, Jonathan Katz, Ian Miers, and Tom Goldstein. 2023. A watermark for large language models. In International Conference on Machine Learning. PMLR, 17061\u201317084."},{"key":"e_1_3_3_2_17_2","unstructured":"Taehyun Lee Seokhee Hong Jaewoo Ahn Ilgee Hong Hwaran Lee Sangdoo Yun Jamin Shin and Gunhee Kim. 2023. Who wrote this code? watermarking for code generation. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2305.15060 (2023)."},{"key":"e_1_3_3_2_18_2","first-page":"28525","volume-title":"Proceedings of the 41st International Conference on Machine Learning","author":"Li Nathaniel","year":"2024","unstructured":"Nathaniel Li, Alexander Pan, Anjali Gopal, Summer Yue, Daniel Berrios, Alice Gatti, Justin\u00a0D. Li, Ann-Kathrin Dombrowski, Shashwat Goel, Gabriel Mukobi, Nathan Helm-Burger, Rassin Lababidi, Lennart Justen, Andrew\u00a0Bo Liu, Michael Chen, Isabelle Barrass, Oliver Zhang, Xiaoyuan Zhu, Rishub Tamirisa, Bhrugu Bharathi, Ariel Herbert-Voss, Cort\u00a0B Breuer, Andy Zou, Mantas Mazeika, Zifan Wang, Palash Oswal, Weiran Lin, Adam\u00a0Alfred Hunt, Justin Tienken-Harder, Kevin\u00a0Y. Shih, Kemper Talley, John Guan, Ian Steneker, David Campbell, Brad Jokubaitis, Steven Basart, Stephen Fitz, Ponnurangam Kumaraguru, Kallol\u00a0Krishna Karmakar, Uday Tupakula, Vijay Varadharajan, Yan Shoshitaishvili, Jimmy Ba, Kevin\u00a0M. Esvelt, Alexandr Wang, and Dan Hendrycks. 2024. The WMDP Benchmark: Measuring and Reducing Malicious Use with Unlearning. In Proceedings of the 41st International Conference on Machine Learning. 28525\u201328550."},{"key":"e_1_3_3_2_19_2","unstructured":"Yinheng Li Rogerio Bonatti Sara Abdali Justin Wagle and Kazuhito Koishida. 2024. Data generation using large language models for text classification: An empirical case study. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2407.12813 (2024)."},{"key":"e_1_3_3_2_20_2","unstructured":"Aixin Liu Bei Feng Bin Wang Bingxuan Wang Bo Liu Chenggang Zhao Chengqi Dengr Chong Ruan Damai Dai Daya Guo et\u00a0al. 2024. Deepseek-v2: A strong economical and efficient mixture-of-experts language model. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2405.04434 (2024)."},{"key":"e_1_3_3_2_21_2","unstructured":"Jie Liu and Barzan Mozafari. 2024. Query rewriting via large language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2403.09060 (2024)."},{"key":"e_1_3_3_2_22_2","unstructured":"Ruibo Liu Jerry Wei Fangyu Liu Chenglei Si Yanzhe Zhang Jinmeng Rao Steven Zheng Daiyi Peng Diyi Yang Denny Zhou et\u00a0al. 2024. Best practices and lessons learned on synthetic data. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2404.07503 (2024)."},{"key":"e_1_3_3_2_23_2","unstructured":"Sijia Liu Yuanshun Yao Jinghan Jia Stephen Casper Nathalie Baracaldo Peter Hase Yuguang Yao Chris\u00a0Yuhao Liu Xiaojun Xu Hang Li Kush\u00a0R. Varshney Mohit Bansal Sanmi Koyejo and Yang Liu. 2024. Rethinking machine unlearning for large language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.08787 (2024)."},{"key":"e_1_3_3_2_24_2","unstructured":"Ximing Lu Sean Welleck Jack Hessel Liwei Jiang Lianhui Qin Peter West Prithviraj Ammanabrolu and Yejin Choi. 2022. Quark: Controllable text generation with reinforced unlearning. Advances in neural information processing systems 35 (2022) 27591\u201327609."},{"key":"e_1_3_3_2_25_2","unstructured":"Jakub \u0141ucki Boyi Wei Yangsibo Huang Peter Henderson Florian Tram\u00e8r and Javier Rando. 2024. An adversarial perspective on machine unlearning for ai safety. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2409.18025 (2024)."},{"key":"e_1_3_3_2_26_2","unstructured":"Alisia Lupidi Carlos Gemmell Nicola Cancedda Jane Dwivedi-Yu Jason Weston Jakob Foerster Roberta Raileanu and Maria Lomeli. 2024. Source2synth: Synthetic data generation and curation grounded in real data sources. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2409.08239 (2024)."},{"key":"e_1_3_3_2_27_2","unstructured":"Aengus Lynch Phillip Guo Aidan Ewart Stephen Casper and Dylan Hadfield-Menell. 2024. Eight methods to evaluate robust unlearning in llms. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.16835 (2024)."},{"key":"e_1_3_3_2_28_2","volume-title":"First Conference on Language Modeling","author":"Maini Pratyush","year":"2024","unstructured":"Pratyush Maini, Zhili Feng, Avi Schwarzschild, Zachary\u00a0Chase Lipton, and J\u00a0Zico Kolter. 2024. TOFU: A Task of Fictitious Unlearning for LLMs. In First Conference on Language Modeling."},{"key":"e_1_3_3_2_29_2","unstructured":"Kevin Meng David Bau Alex Andonian and Yonatan Belinkov. 2022. Locating and editing factual associations in GPT. Advances in Neural Information Processing Systems 35 (2022) 17359\u201317372."},{"key":"e_1_3_3_2_30_2","unstructured":"Fabio Motoki Valdemar Pinho\u00a0Neto and Victor Rodrigues. 2023. More human than human: Measuring chatgpt political bias. Available at SSRN 4372349 (2023)."},{"key":"e_1_3_3_2_31_2","unstructured":"Soumyadeep Pal Changsheng Wang James Diffenderfer Bhavya Kailkhura and Sijia Liu. 2025. Llm unlearning reveals a stronger-than-expected coreset effect in current benchmarks. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2504.10185 (2025)."},{"key":"e_1_3_3_2_32_2","unstructured":"Ajay Patel Colin Raffel and Chris Callison-Burch. 2024. Datadreamer: A tool for synthetic data generation and reproducible llm workflows. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.10379 (2024)."},{"key":"e_1_3_3_2_33_2","unstructured":"Vaidehi Patil Peter Hase and Mohit Bansal. 2024. Can Sensitive Information Be Deleted From LLMs? Objectives for Defending Against Extraction Attacks. ICLR (2024)."},{"key":"e_1_3_3_2_34_2","unstructured":"Vaidehi Patil Elias Stengel-Eskin and Mohit Bansal. 2025. Upcore: Utility-preserving coreset selection for balanced unlearning. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2502.15082 (2025)."},{"key":"e_1_3_3_2_35_2","unstructured":"Martin Pawelczyk Seth Neel and Himabindu Lakkaraju. 2023. In-context unlearning: Language models as few shot unlearners. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.07579 (2023)."},{"key":"e_1_3_3_2_36_2","unstructured":"Rafael Rafailov Archit Sharma Eric Mitchell Christopher\u00a0D Manning Stefano Ermon and Chelsea Finn. 2024. Direct preference optimization: Your language model is secretly a reward model. Advances in Neural Information Processing Systems 36 (2024)."},{"key":"e_1_3_3_2_37_2","unstructured":"Stefan Schoepf Michael\u00a0Curtis Mozer Nicole\u00a0Elyse Mitchell Alexandra Brintrup Georgios Kaissis Peter Kairouz and Eleni Triantafillou. 2025. Redirection for Erasing Memory (REM): Towards a universal unlearning method for corrupted data. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2505.17730 (2025)."},{"key":"e_1_3_3_2_38_2","unstructured":"Rico Sennrich Barry Haddow and Alexandra Birch. 2015. Improving neural machine translation models with monolingual data. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1511.06709 (2015)."},{"key":"e_1_3_3_2_39_2","unstructured":"Weijia Shi Jaechan Lee Yangsibo Huang Sadhika Malladi Jieyu Zhao Ari Holtzman Daogao Liu Luke Zettlemoyer Noah\u00a0A Smith and Chiyuan Zhang. 2024. Muse: Machine unlearning six-way evaluation for language models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2407.06460 (2024)."},{"key":"e_1_3_3_2_40_2","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v38i17.29863"},{"key":"e_1_3_3_2_41_2","unstructured":"Changchang Sun Ren Wang Yihua Zhang Jinghan Jia Jiancheng Liu Gaowen Liu Yan Yan and Sijia Liu. 2024. Forget Vectors at Play: Universal Input Perturbations Driving Machine Unlearning in Image Classification. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2412.16780 (2024)."},{"key":"e_1_3_3_2_42_2","unstructured":"Zhaoyan Sun Xuanhe Zhou and Guoliang Li. 2024. R-Bot: An LLM-based Query Rewrite System. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2412.01661 (2024)."},{"key":"e_1_3_3_2_43_2","unstructured":"Ruixiang Tang Xiaotian Han Xiaoqian Jiang and Xia Hu. 2023. Does synthetic data generation of llms help clinical text mining? arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2303.04360 (2023)."},{"key":"e_1_3_3_2_44_2","unstructured":"Pratiksha Thaker Yash Maurya and Virginia Smith. 2024. Guardrail Baselines for Unlearning in LLMs. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2403.03329 (2024)."},{"key":"e_1_3_3_2_45_2","unstructured":"Hugo Touvron Louis Martin Kevin Stone Peter Albert Amjad Almahairi Yasmine Babaei Nikolay Bashlykov Soumya Batra Prajjwal Bhargava Shruti Bhosale et\u00a0al. 2023. Llama 2: Open foundation and fine-tuned chat models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2307.09288 (2023)."},{"key":"e_1_3_3_2_46_2","unstructured":"Lewis Tunstall Edward Beeching Nathan Lambert Nazneen Rajani Kashif Rasul Younes Belkada Shengyi Huang Leandro von Werra Cl\u00e9mentine Fourrier Nathan Habib Nathan Sarrazin Omar Sanseviero Alexander\u00a0M. Rush and Thomas Wolf. 2023. Zephyr: Direct Distillation of LM Alignment. arxiv:https:\/\/arXiv.org\/abs\/2310.16944\u00a0[cs.LG]"},{"key":"e_1_3_3_2_47_2","unstructured":"Boyi Wei Kaixuan Huang Yangsibo Huang Tinghao Xie Xiangyu Qi Mengzhou Xia Prateek Mittal Mengdi Wang and Peter Henderson. 2024. Assessing the brittleness of safety alignment via pruning and low-rank modifications. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.05162 (2024)."},{"key":"e_1_3_3_2_48_2","doi-asserted-by":"crossref","unstructured":"Jason Wei and Kai Zou. 2019. Eda: Easy data augmentation techniques for boosting performance on text classification tasks. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/1901.11196 (2019).","DOI":"10.18653\/v1\/D19-1670"},{"key":"e_1_3_3_2_49_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.emnlp-main.84"},{"key":"e_1_3_3_2_50_2","unstructured":"Xinwei Wu Junzhuo Li Minghui Xu Weilong Dong Shuangzhi Wu Chao Bian and Deyi Xiong. 2023. DEPN: Detecting and Editing Privacy Neurons in Pretrained Language Models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2310.20138 (2023)."},{"key":"e_1_3_3_2_51_2","unstructured":"Yihan Wu Zhengmian Hu Hongyang Zhang and Heng Huang. 2023. Dipmark: A stealthy efficient and resilient watermark for large language models. (2023)."},{"key":"e_1_3_3_2_52_2","unstructured":"Jin Yao Eli Chien Minxin Du Xinyao Niu Tianhao Wang Zezhou Cheng and Xiang Yue. 2024. Machine Unlearning of Pre-trained Large Language Models. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2402.15159 (2024)."},{"key":"e_1_3_3_2_53_2","volume-title":"The Thirty-eighth Annual Conference on Neural Information Processing Systems","author":"Yao Yuanshun","year":"2024","unstructured":"Yuanshun Yao, Xiaojun Xu, and Yang Liu. 2024. Large Language Model Unlearning. In The Thirty-eighth Annual Conference on Neural Information Processing Systems."},{"key":"e_1_3_3_2_54_2","doi-asserted-by":"publisher","DOI":"10.18653\/v1\/2023.findings-acl.375"},{"key":"e_1_3_3_2_55_2","unstructured":"Yue Yu Yuchen Zhuang Jieyu Zhang Yu Meng Alexander\u00a0J Ratner Ranjay Krishna Jiaming Shen and Chao Zhang. 2023. Large language model as attributed training data generator: A tale of diversity and bias. Advances in Neural Information Processing Systems 36 (2023) 55734\u201355784."},{"key":"e_1_3_3_2_56_2","volume-title":"First Conference on Language Modeling","author":"Zhang Ruiqi","year":"2024","unstructured":"Ruiqi Zhang, Licong Lin, Yu Bai, and Song Mei. 2024. Negative Preference Optimization: From Catastrophic Collapse to Effective Unlearning. In First Conference on Language Modeling."},{"key":"e_1_3_3_2_57_2","first-page":"385","volume-title":"European Conference on Computer Vision","author":"Zhang Yimeng","year":"2024","unstructured":"Yimeng Zhang, Jinghan Jia, Xin Chen, Aochuan Chen, Yihua Zhang, Jiancheng Liu, Ke Ding, and Sijia Liu. 2024. To generate or not? safety-driven unlearned diffusion models are still easy to generate unsafe images... for now. In European Conference on Computer Vision. Springer, 385\u2013403."},{"key":"e_1_3_3_2_58_2","unstructured":"Xuandong Zhao Prabhanjan Ananth Lei Li and Yu-Xiang Wang. 2023. Provable robust watermarking for ai-generated text. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2306.17439 (2023)."},{"key":"e_1_3_3_2_59_2","unstructured":"Haomin Zhuang Yihua Zhang Kehan Guo Jinghan Jia Gaowen Liu Sijia Liu and Xiangliang Zhang. 2024. UOE: Unlearning One Expert Is Enough For Mixture-of-experts LLMS. arXiv preprint arXiv:https:\/\/arXiv.org\/abs\/2411.18797 (2024)."},{"key":"e_1_3_3_2_60_2","doi-asserted-by":"crossref","unstructured":"Arkaitz Zubiaga. 2024. Natural language processing in the era of large language models. 1350306\u00a0pages.","DOI":"10.3389\/frai.2023.1350306"}],"event":{"name":"AISec '25: Proceedings of the 2025 Workshop on Artificial Intelligence and Security","location":"Taipei , Taiwan","acronym":"AISec '25","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 18th ACM Workshop on Artificial Intelligence and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3733799.3762973","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,12,30]],"date-time":"2025-12-30T11:52:09Z","timestamp":1767095529000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3733799.3762973"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,13]]},"references-count":59,"alternative-id":["10.1145\/3733799.3762973","10.1145\/3733799"],"URL":"https:\/\/doi.org\/10.1145\/3733799.3762973","relation":{},"subject":[],"published":{"date-parts":[[2025,10,13]]},"assertion":[{"value":"2025-12-30","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}