Fetching the paper…
Reading the bibliography…
Machine learning (ML) models that use deep neural networks are vulnerable to backdoor attacks.
Y. LeCun, “The MNIST database of handwritten digits,” http://yann. lecun. com/exdb/mnist/ , 1998
1998
Earlier work this paper cites.
Y. Taigman, M. Yang, M. Ranzato, and L. Wolf, “DeepFace: Closing the gap to human-level performance in face verification,” in IEEE Conference on Computer Vision and Pattern Recognition , 2014
2014
Earlier work this paper cites.
V. Mnih et al. , “Human-level control through deep reinforcement learning,” Nature , vol. 518, no. 7540, 2015
2015
Earlier work this paper cites.
I. J. Goodfellow, J. Shlens, and C. Szegedy, “Explaining and harnessing adversarial examples,” International Conference on Learning Representations , 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
S. M. Moosavi Dezfooli, A. Fawzi, and P. Frossard, “Deepfool: A simple and accurate method to fool deep neural networks,” in IEEE Conference on Computer Vision and Pattern Recognition , 2016
2016
Earlier work this paper cites.
Y. Liu, Y. Xie, and A. Srivastava, “Neural Trojans,” in International Conference on Computer Design . IEEE, 2017, pp. 45–48
2017
Earlier work this paper cites.
A. Kurakin, I. Goodfellow, and S. Bengio, “Adversarial examples in the physical world,” International Conference on Learning Representations , 2017
2017
Earlier work this paper cites.
S.-M. Moosavi-Dezfooli, A. Fawzi, O. Fawzi, and P. Frossard, “Universal adversarial perturbations,” in IEEE Conference on Computer Vision and Pattern Recognition , 2017, pp. 1765–1773
2017
Earlier work this paper cites.
R. R. Selvaraju, M. Cogswell, A. Das, R. Vedantam, D. Parikh, and D. Batra, “Grad-CAM: Visual explanations from deep networks via gradient-based localization,” in IEEE International Conference on Computer Vision , 2017, pp. 618–626
2017
Earlier work this paper cites.
2017
Earlier work this paper cites.
“Amazon, Machine learning at AWS, 2018.”
2018
Earlier work this paper cites.
“BigML Inc. bigml, 2018.”
2018
Earlier work this paper cites.
“Caffe, Caffe Model Zoo, 2018.”
2018
Earlier work this paper cites.
K. Liu, B. Dolan-Gavitt, and S. Garg, “Fine-pruning: Defending against backdooring attacks on deep neural networks,” in International Symposium on Research in Attacks, Intrusions, and Defenses . Springer, 2018, pp. 273–294
2018
Earlier work this paper cites.
2018
Earlier work this paper cites.
Y. Liu, S. Ma, Y. Aafer, W.-C. Lee, J. Zhai, W. Wang, and X. Zhang, “Trojaning attack on neural networks,” Network and Distributed Systems Security (NDSS) Symposium , 2018
2018
Earlier work this paper cites.
Y. Adi, C. Baum, M. Cisse, B. Pinkas, and J. Keshet, “Turning your weakness into a strength: Watermarking deep neural networks by backdooring,” in USENIX Security Symposium , 2018, pp. 1615–1631
2018
Earlier work this paper cites.
B. Tran, J. Li, and A. Madry, “Spectral signatures in backdoor attacks,” Neural Information Processing Systems , vol. 31, 2018
2018
Cited alongside, same era.
R. Arora, A. Basu, P. Mianjy, and A. Mukherjee, “Understanding deep neural networks with rectified linear units,” International Conference on Learning Representations , 2018
2018
Cited alongside, same era.
C. Zhang, P. Patras, and H. Haddadi, “Deep learning in mobile and wireless networking: A survey,” IEEE Communications Surveys & Tutorials , vol. 21, no. 3, pp. 2224–2287, 2019
2019
Cited alongside, same era.
A. Esteva, A. Robicquet, B. Ramsundar, V. Kuleshov, M. DePristo, K. Chou, C. Cui, G. Corrado, S. Thrun, and J. Dean, “A guide to deep learning in healthcare,” Nature medicine , vol. 25, no. 1, 2019
2019
Cited alongside, same era.
T. Gu, K. Liu, B. Dolan-Gavitt, and S. Garg, “BadNets: Evaluating backdooring attacks on deep neural networks,” IEEE Access , vol. 7, pp. 47 230–47 244, 2019
J. Dumford and W. Scheirer, “Backdooring convolutional neural networks via targeted weight perturbations,” in International Joint Conference on Biometrics . IEEE, 2020, pp. 1–9
2020
Later among the works it cites.
A. S. Rakin, Z. He, and D. Fan, “TBT: Targeted neural network attack with bit trojan,” in IEEE/CVF Conference on Computer Vision and Pattern Recognition , 2020, pp. 13 198–13 207
2020
Later among the works it cites.
S. Li, M. Xue, B. Z. H. Zhao, H. Zhu, and X. Zhang, “Invisible backdoor attacks on deep neural networks via steganography and regularization,” IEEE Transactions on Dependable and Secure Computing , vol. 18, no. 5, pp. 2088–2105, 2020
2020
Later among the works it cites.
S. Wang, S. Nepal, C. Rudolph, M. Grobler, S. Chen, and T. Chen, “Backdoor attacks against transfer learning with pre-trained deep learning models,” IEEE Transactions on Services Computing , 2020
2020
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2019
Cited alongside, same era.
F. Ullah, H. Naeem, S. Jabbar, S. Khalid, M. A. Latif, F. Al-Turjman, and L. Mostarda, “Cyber security threats detection in internet of things using deep learning approach,” IEEE Access , vol. 7, 2019
2019
Cited alongside, same era.
2019
Cited alongside, same era.
J. Dai, C. Chen, and Y. Li, “A backdoor attack against LSTM-based text classification systems,” IEEE Access , vol. 7, 2019
2019
Cited alongside, same era.
B. Chen, W. Carvalho, N. Baracaldo, H. Ludwig, B. Edwards, T. Lee, I. Molloy, and B. Srivastava, “Detecting backdoor attacks on deep neural networks by activation clustering,” AAAI Workshop , 2019
2019
Cited alongside, same era.
2019
Cited alongside, same era.
2019
Cited alongside, same era.
H. Chen, C. Fu, J. Zhao, and F. Koushanfar, “DeepInspect: A black-box Trojan detection and mitigation framework for deep neural networks.” in International Joint Conference on Artificial Intelligence , vol. 2, no. 5, 2019, p. 8
2019
Cited alongside, same era.
E. Bagdasaryan, A. Veit, Y. Hua, D. Estrin, and V. Shmatikov, “How to backdoor federated learning,” in International Conference on Artificial Intelligence and Statistics . PMLR, 2020, pp. 2938–2948
2020
Later among the works it cites.
2020
Later among the works it cites.
M. Xue, C. He, J. Wang, and W. Liu, “One-to-N & N-to-one: Two advanced backdoor attacks against deep learning models,” IEEE Transactions on Dependable and Secure Computing , 2020
2020
Later among the works it cites.
2020
Later among the works it cites.
M. Du, R. Jia, and D. Song, “Robust anomaly detection and backdoor attack detection via differential privacy,” International Conference on Learning Representations , 2020
2020
Later among the works it cites.
2020
Later among the works it cites.
R. Wang, G. Zhang, S. Liu, P.-Y. Chen, J. Xiong, and M. Wang, “Practical detection of Trojan neural networks: Data-limited and data-free cases,” in European Conference on Computer Vision . Springer, 2020, pp. 222–238
2020
Later among the works it cites.
Y. Li, X. Lyu, N. Koren, L. Lyu, B. Li, and X. Ma, “Neural attention distillation: Erasing backdoor triggers from deep neural networks,” International Conference on Learning Representations , 2021
2021
Later among the works it cites.
X. Xu, Q. Wang, H. Li, N. Borisov, C. A. Gunter, and B. Li, “Detecting AI Trojans using meta neural analysis,” in IEEE Symposium on Security and Privacy . IEEE, 2021, pp. 103–120
2021
Later among the works it cites.
E. Bagdasaryan and V. Shmatikov, “Blind backdoors in deep learning models,” in USENIX Security Symposium , 2021, pp. 1505–1521
2021
Later among the works it cites.
R. Schuster, C. Song, E. Tromer, and V. Shmatikov, “You autocomplete me: Poisoning vulnerabilities in neural code completion,” in USENIX Security Symposium , 2021, pp. 1559–1575
2021
Later among the works it cites.
T. Zhai, Y. Li, Z. Zhang, B. Wu, Y. Jiang, and S.-T. Xia, “Backdoor attack against speaker verification,” in International Conference on Acoustics, Speech and Signal Processing , 2021, pp. 2560–2564
2021
Later among the works it cites.
Y. Xiao, L. Cong, Z. Mingwen, W. Yajie, L. Xinrui, S. Shuxiao, M. Yuexuan, and Z. Jun, “A multitarget backdooring attack on deep neural networks with random location trigger,” International Journal of Intelligent Systems , vol. 37, no. 3, pp. 2567–2583, 2022
2022
Closest in time.