Fetching the paper…
Reading the bibliography…
Recent studies have shown that DNNs can be compromised by backdoor attacks crafted at training time.
Wang, Z., Bovik, A.C., Sheikh, H.R., Simoncelli, E.P., et al.: Image quality assessment: from error visibility to structural similarity. TIP (2004)
2004
Earlier work this paper cites.
Huynh-Thu, Q., Ghanbari, M.: Scope of validity of psnr in image/video quality assessment. Electronics letters (2008)
2008
Earlier work this paper cites.
Deng, J., Dong, W., Socher, R., Li, L.J., Li, K., Fei-Fei, L.: Imagenet: A large-scale hierarchical image database. In: CVPR (2009)
2009
Earlier work this paper cites.
Kumar, N., Berg, A.C., Belhumeur, P.N., Nayar, S.K.: Attribute and simile classifiers for face verification. In: ICCV (2009)
2009
Earlier work this paper cites.
Buades, A., Coll, B., Morel, J.M.: Non-local means denoising. Image Processing On Line (2011)
2011
Earlier work this paper cites.
Stallkamp, J., Schlipsing, M., Salmen, J., Igel, C.: The german traffic sign recognition benchmark: A multi-class classification competition. In: IJCNN (2011)
2011
Earlier work this paper cites.
2012
Earlier work this paper cites.
Everingham, M., Van Gool, L., Williams, C.K.I., Winn, J., Zisserman, A.: The PASCAL Visual Object Classes Challenge 2012 (VOC2012) Results. http://www.pascal-network.org/challenges/VOC/voc2012/workshop/index.html
2012
Earlier work this paper cites.
Graves, A., Mohamed, A.r., Hinton, G.: Speech recognition with deep recurrent neural networks. In: ICASSP. IEEE (2013)
2013
Earlier work this paper cites.
2013
Earlier work this paper cites.
2014
Earlier work this paper cites.
Li, Y., Brown, M.S.: Single image layer separation using relative smoothness. In: CVPR (2014)
2014
Earlier work this paper cites.
Newell, A., Potharaju, R., Xiang, L., Nita-Rotaru, C.: On the practicality of integrity attacks on document-level sentiment analysis. In: iAIS (2014)
2014
Earlier work this paper cites.
Sutskever, I., Vinyals, O., Le, Q.V.: Sequence to sequence learning with neural networks. In: NIPS (2014)
2014
Earlier work this paper cites.
Timofte, R., Zimmermann, K., Van Gool, L.: Multi-view traffic sign detection, recognition, and 3d localisation. Machine vision and applications (2014)
2014
Earlier work this paper cites.
Mei, S., Zhu, X.: Using machine teaching to identify optimal training-set attacks on machine learners. In: AAAI (2015)
2015
Earlier work this paper cites.
Xiao, H., Biggio, B., Nelson, B., Xiao, H., Eckert, C., Roli, F.: Support vector machines under adversarial label contamination. Neurocomputing (2015)
2015
Earlier work this paper cites.
Pytorch. http://pytorch.org (2016)
2016
Earlier work this paper cites.
He, K., Zhang, X., Ren, S., Sun, J.: Deep residual learning for image recognition. In: CVPR (2016)
2016
Earlier work this paper cites.
Sharif, M., Bhagavatula, S., Bauer, L., Reiter, M.K.: Accessorize to a crime: Real and stealthy attacks on state-of-the-art face recognition. In: CCS. pp. 1528–1540 (2016)
2016
Earlier work this paper cites.
Burkard, C., Lagesse, B.: Analysis of causative attacks against svms learning from data streams. In: IWSPA (2017)
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
Huang, G., Liu, Z., Van Der Maaten, L., Weinberger, K.Q.: Densely connected convolutional networks. In: CVPR. pp. 4700–4708 (2017)
2017
Cited alongside, same era.
Koh, P.W., Liang, P.: Understanding black-box predictions via influence functions. In: ICML (2017)
2017
Cited alongside, same era.
Koh, P.W., Liang, P.: Understanding black-box predictions via influence functions. In: ICML (2017)
2017
Cited alongside, same era.
Selvaraju, R.R., Cogswell, M., Das, A., Vedantam, R., Parikh, D., Batra, D.: Grad-cam: Visual explanations from deep networks via gradient-based localization. In: ICCV (2017)
2017
Cited alongside, same era.
Steinhardt, J., Koh, P.W.W., Liang, P.S.: Certified defenses for data poisoning attacks. In: NIPS (2017)
2017
Cited alongside, same era.
Liu, B., Gu, L., Lu, F.: Unsupervised ensemble strategy for retinal vessel segmentation. In: International Conference on Medical Image Computing and Computer-Assisted Intervention. pp. 111–119. Springer (2019)
2019
Later among the works it cites.
2019
Later among the works it cites.
Niu, Y., Gu, L., Lu, F., Lv, F., Wang, Z., Sato, I., Zhang, Z., Xiao, Y., Dai, X., Cheng, T.: Pathological evidence exploration in deep retinal image diagnosis. In: Proceedings of the AAAI conference on artificial intelligence. vol. 33, pp. 1093–1101 (2019)
2019
Later among the works it cites.
Rehman, H., Ekelhart, A., Mayer, R.: Backdoor attacks in neural networks–a systematic evaluation on multiple traffic sign datasets. In: International Cross-Domain Conference for Machine Learning and Knowledge Extraction. pp. 285–300. Springer (2019)
2019
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Wan, R., Shi, B., Duan, L.Y., Tan, A.H., Kot, A.C.: Benchmarking single-image reflection removal algorithms. In: ICCV (2017)
2017
Cited alongside, same era.
2017
Cited alongside, same era.
2018
Cited alongside, same era.
Evtimov, I., Eykholt, K., Fernandes, E., Kohno, T., Li, B., Prakash, A., Rahmati, A., Song, D.: Robust physical-world attacks on deep learning models. In: CVPR (2018)
2018
Cited alongside, same era.
2018
Cited alongside, same era.
Liu, K., Dolan-Gavitt, B., Garg, S.: Fine-pruning: Defending against backdooring attacks on deep neural networks. In: International Symposium on Research in Attacks, Intrusions, and Defenses. Springer (2018)
2018
Cited alongside, same era.
Liu, Y., Ma, S., Aafer, Y., Lee, W.C., Zhai, J., Wang, W., Zhang, X.: Trojaning attack on neural networks (2018)
2018
Cited alongside, same era.
Later among the works it cites.
2019
Later among the works it cites.
Turner, A., Tsipras, D., Madry, A.: Clean-label backdoor attacks. https://people.csail.mit.edu/madry/lab/ (2019)
2019
Later among the works it cites.
Wang, B., Yao, Y., Shan, S., Li, H., Viswanath, B., Zheng, H., Zhao, B.Y.: Neural cleanse: Identifying and mitigating backdoor attacks in neural networks (2019)
2019
Later among the works it cites.
Wang, Y., Ma, X., Bailey, J., Yi, J., Zhou, B., Gu, Q.: On the convergence and robustness of adversarial training. In: ICML. pp. 6586–6595 (2019)
2019
Later among the works it cites.
Wu, D., Wang, Y., Xia, S.T., Bailey, J., Ma, X.: Skip connections matter: On the transferability of adversarial examples generated with resnets. In: ICLR (2019)
2019
Later among the works it cites.
Xiang, Z., Miller, D.J., Kesidis, G.: A benchmark study of backdoor data poisoning defenses for deep neural network classifiers and a novel defense. In: 2019 IEEE 29th International Workshop on Machine Learning for Signal Processing (MLSP). pp. 1–6. IEEE (2019)
2019
Later among the works it cites.
Yao, Y., Li, H., Zheng, H., Zhao, B.Y.: Latent backdoor attacks on deep neural networks. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security (2019)
2019
Later among the works it cites.
Yao, Y., Li, H., Zheng, H., Zhao, B.Y.: Latent backdoor attacks on deep neural networks. In: ACM CCS. pp. 2041–2055 (2019)
2019
Later among the works it cites.
Bagdasaryan, E., Veit, A., Hua, Y., Estrin, D., Shmatikov, V.: How to backdoor federated learning. In: AISTATS. pp. 2938–2948 (2020)
2020
Closest in time.
Duan, R., Ma, X., Wang, Y., Bailey, J., Qin, A.K., Yang, Y.: Adversarial camouflage: Hiding physical-world attacks with natural styles. In: CVPR. pp. 1000–1008 (2020)
2020
Closest in time.
2020
Closest in time.
Kwon, H., Yoon, H., Park, K.W.: Friendnet backdoor: Indentifying backdoor attack that is safe for friendly deep neural network. In: The 3rd International Conference on Software Engineering and Information Management (ICSIM 2020). ACM’s International Conference Proceedings Series (2020)
2020
Closest in time.
2020
Closest in time.
Liu, Y., Lu, F.: Separate in latent space: Unsupervised single image layer separation. In: AAAI (2020)
2020
Closest in time.
Liu, Y., You, S., Li, Y., Lu, F.: Unsupervised learning for intrinsic image decomposition from a single image. In: CVPR (2020)
2020
Closest in time.
Ma, X., Niu, Y., Gu, L., Wang, Y., Zhao, Y., Bailey, J., Lu, F.: Understanding adversarial attacks on deep learning based medical image analysis systems. Pattern Recognition p. 107332 (2020)
2020
Closest in time.
Pasquini, C., Böhme, R.: Trembling triggers: exploring the sensitivity of backdoors in dnn-based face recognition. EURASIP Journal on Information Security 2020
2020
Closest in time.
Wang, Y., Zou, D., Yi, J., Bailey, J., Ma, X., Gu, Q.: Improving adversarial robustness requires revisiting misclassified examples. In: ICLR (2020)
2020
Closest in time.
Xie, C., Huang, K., Chen, P.Y., Li, B.: Dba: Distributed backdoor attacks against federated learning. In: ICLR (2020)
2020
Closest in time.
2020
Closest in time.
Zhao, S., Ma, X., Zheng, X., Bailey, J., Chen, J., Jiang, Y.G.: Clean-label backdoor attacks on video recognition models. In: CVPR. pp. 14443–14452 (2020)
2020
Closest in time.