{"id":"https://openalex.org/W3201160834","doi":"https://doi.org/10.1109/dasc/picom/cbdcom/cy55231.2022.9927771","title":"SanitAIs: Unsupervised Data Augmentation to Sanitize Trojaned Neural Networks","display_name":"SanitAIs: Unsupervised Data Augmentation to Sanitize Trojaned Neural Networks","publication_year":2022,"publication_date":"2022-09-12","ids":{"openalex":"https://openalex.org/W3201160834","doi":"https://doi.org/10.1109/dasc/picom/cbdcom/cy55231.2022.9927771","mag":"3201160834"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/dasc/picom/cbdcom/cy55231.2022.9927771","pdf_url":null,"source":{"id":"https://openalex.org/S4363605881","display_name":"2021 IEEE Intl Conf on Dependable, Autonomic and Secure Computing, Intl Conf on Pervasive Intelligence and Computing, Intl Conf on Cloud and Big Data Computing, Intl Conf on Cyber Science and Technology Congress (DASC/PiCom/CBDCom/CyberSciTech)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://arxiv.org/pdf/2109.04566","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5061482370","display_name":"Kiran Karra","orcid":"https://orcid.org/0000-0001-8072-4014"},"institutions":[{"id":"https://openalex.org/I2802946424","display_name":"Johns Hopkins University Applied Physics Laboratory","ror":"https://ror.org/029pp9z10","country_code":"US","type":"facility","lineage":["https://openalex.org/I145311948","https://openalex.org/I2802946424"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Kiran Karra","raw_affiliation_strings":["Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA"],"affiliations":[{"raw_affiliation_string":"Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA","institution_ids":["https://openalex.org/I2802946424"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028530447","display_name":"Chace Ashcraft","orcid":null},"institutions":[{"id":"https://openalex.org/I2802946424","display_name":"Johns Hopkins University Applied Physics Laboratory","ror":"https://ror.org/029pp9z10","country_code":"US","type":"facility","lineage":["https://openalex.org/I145311948","https://openalex.org/I2802946424"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Chace Ashcraft","raw_affiliation_strings":["Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA"],"affiliations":[{"raw_affiliation_string":"Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA","institution_ids":["https://openalex.org/I2802946424"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5073057301","display_name":"Cash Costello","orcid":"https://orcid.org/0000-0003-1003-4645"},"institutions":[{"id":"https://openalex.org/I2802946424","display_name":"Johns Hopkins University Applied Physics Laboratory","ror":"https://ror.org/029pp9z10","country_code":"US","type":"facility","lineage":["https://openalex.org/I145311948","https://openalex.org/I2802946424"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Cash Costello","raw_affiliation_strings":["Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA"],"affiliations":[{"raw_affiliation_string":"Applied Physics Laboratory, Johns Hopkins University, Laurel, MD, USA","institution_ids":["https://openalex.org/I2802946424"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.0,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":0,"max":60},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9831,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9829,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.8326121},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep Neural Networks","score":0.5170577},{"id":"https://openalex.org/keywords/feature","display_name":"Feature (linguistics)","score":0.5042621}],"concepts":[{"id":"https://openalex.org/C174333608","wikidata":"https://www.wikidata.org/wiki/Q19635","display_name":"Trojan","level":2,"score":0.91875416},{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.8326121},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.77425367},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.7009965},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5654752},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.526173},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.5170577},{"id":"https://openalex.org/C8038995","wikidata":"https://www.wikidata.org/wiki/Q1152135","display_name":"Unsupervised learning","level":2,"score":0.51442844},{"id":"https://openalex.org/C2776401178","wikidata":"https://www.wikidata.org/wiki/Q12050496","display_name":"Feature (linguistics)","level":2,"score":0.5042621},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.4564997},{"id":"https://openalex.org/C204323151","wikidata":"https://www.wikidata.org/wiki/Q905424","display_name":"Range (aeronautics)","level":2,"score":0.44278732},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3281719},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.118210554},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.11769259},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C146978453","wikidata":"https://www.wikidata.org/wiki/Q3798668","display_name":"Aerospace engineering","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/dasc/picom/cbdcom/cy55231.2022.9927771","pdf_url":null,"source":{"id":"https://openalex.org/S4363605881","display_name":"2021 IEEE Intl Conf on Dependable, Autonomic and Secure Computing, Intl Conf on Pervasive Intelligence and Computing, Intl Conf on Cloud and Big Data Computing, Intl Conf on Cyber Science and Technology Congress (DASC/PiCom/CBDCom/CyberSciTech)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2109.04566","pdf_url":"http://arxiv.org/pdf/2109.04566","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2109.04566","pdf_url":"http://arxiv.org/pdf/2109.04566","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":32,"referenced_works":["https://openalex.org/W1682403713","https://openalex.org/W1686810756","https://openalex.org/W2054888947","https://openalex.org/W2108598243","https://openalex.org/W2146292423","https://openalex.org/W2748789698","https://openalex.org/W2772825438","https://openalex.org/W2785405530","https://openalex.org/W2788838181","https://openalex.org/W2807363941","https://openalex.org/W2895171208","https://openalex.org/W2916360674","https://openalex.org/W2934843808","https://openalex.org/W2950048339","https://openalex.org/W2962369866","https://openalex.org/W2963384892","https://openalex.org/W2964137095","https://openalex.org/W2970971581","https://openalex.org/W2973217491","https://openalex.org/W2975761646","https://openalex.org/W2992308087","https://openalex.org/W2995816250","https://openalex.org/W2996757750","https://openalex.org/W3007125775","https://openalex.org/W3010968977","https://openalex.org/W3035682985","https://openalex.org/W3095509234","https://openalex.org/W3118608800","https://openalex.org/W3121478722","https://openalex.org/W4252979261","https://openalex.org/W4295312788","https://openalex.org/W4394639701"],"related_works":["https://openalex.org/W4389518867","https://openalex.org/W4387929148","https://openalex.org/W4377865163","https://openalex.org/W4308244459","https://openalex.org/W4221166349","https://openalex.org/W4220926404","https://openalex.org/W4200628936","https://openalex.org/W3193857078","https://openalex.org/W3123344745","https://openalex.org/W3106646114"],"abstract_inverted_index":{"Self-supervised":[0],"learning":[1],"(SSL)":[2],"methods":[3,61],"have":[4],"resulted":[5],"in":[6],"broad":[7],"improvements":[8],"to":[9,21,38,95],"neural":[10,46,102],"network":[11],"performance":[12],"by":[13],"leveraging":[14],"large,":[15],"untapped":[16],"collections":[17],"of":[18,72,99],"unlabeled":[19],"data":[20,32,77],"learn":[22],"generalized":[23],"underlying":[24],"structure.":[25],"In":[26],"this":[27],"work,":[28],"we":[29],"harness":[30],"unsupervised":[31],"augmentation":[33],"(UDA),":[34],"an":[35,90],"SSL":[36],"technique,":[37],"mitigate":[39],"backdoor":[40],"or":[41],"Trojan":[42],"attacks":[43],"on":[44,101],"deep":[45],"networks.":[47,103],"We":[48],"show":[49],"that":[50,86],"UDA":[51,87],"is":[52,88],"more":[53],"effective":[54,91],"at":[55],"removing":[56],"trojans":[57],"than":[58],"current":[59],"state-of-the-art":[60],"for":[62,80],"both":[63,89],"feature":[64],"space":[65],"and":[66,76,92],"point":[67],"triggers,":[68],"over":[69],"a":[70],"range":[71],"model":[73],"architectures,":[74],"trojans,":[75],"quantities":[78],"provided":[79],"trojan":[81],"removal.":[82],"These":[83],"results":[84],"demonstrate":[85],"practical":[93],"approach":[94],"mitigating":[96],"the":[97],"effects":[98],"backdoors":[100]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W3201160834","counts_by_year":[],"updated_date":"2024-12-11T07:21:48.110321","created_date":"2021-09-27"}