{"id":"https://openalex.org/W4396600686","doi":"https://doi.org/10.48550/arxiv.2404.19420","title":"Let's Focus: Focused Backdoor Attack against Federated Transfer Learning","display_name":"Let's Focus: Focused Backdoor Attack against Federated Transfer Learning","publication_year":2024,"publication_date":"2024-04-30","ids":{"openalex":"https://openalex.org/W4396600686","doi":"https://doi.org/10.48550/arxiv.2404.19420"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2404.19420","pdf_url":"http://arxiv.org/pdf/2404.19420","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"type":"preprint","type_crossref":"posted-content","indexed_in":["arxiv"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://arxiv.org/pdf/2404.19420","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5059446425","display_name":"Marco Arazzi","orcid":"https://orcid.org/0000-0002-3371-307X"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Arazzi, Marco","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101725689","display_name":"Stefanos Koffas","orcid":"https://orcid.org/0000-0001-6543-4801"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Koffas, Stefanos","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085793134","display_name":"Antonino Nocera","orcid":"https://orcid.org/0000-0003-2120-2341"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Nocera, Antonino","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5024072796","display_name":"Stjepan Picek","orcid":"https://orcid.org/0000-0001-7509-4337"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Picek, Stjepan","raw_affiliation_strings":[],"affiliations":[]}],"institution_assertions":[],"countries_distinct_count":0,"institutions_distinct_count":0,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.0,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":0,"max":77},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9873,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9873,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.985,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.98907185},{"id":"https://openalex.org/keywords/transfer-of-learning","display_name":"Transfer of learning","score":0.54188025}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.98907185},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.6398369},{"id":"https://openalex.org/C150899416","wikidata":"https://www.wikidata.org/wiki/Q1820378","display_name":"Transfer of learning","level":2,"score":0.54188025},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5085293},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4693077},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2900994},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.08951327},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2404.19420","pdf_url":"http://arxiv.org/pdf/2404.19420","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/2404.19420","pdf_url":"http://arxiv.org/pdf/2404.19420","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W4386080799","https://openalex.org/W4320031223","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W4281902577","https://openalex.org/W4200629851","https://openalex.org/W3140988292","https://openalex.org/W3009072493","https://openalex.org/W2748952813"],"abstract_inverted_index":{"Federated":[0,10,39,149,183,254],"Transfer":[1],"Learning":[2,40,150,184],"(FTL)":[3],"is":[4,21,123],"the":[5,30,38,50,62,96,100,113,129,135,138,169,179,182,190,194,203,244],"most":[6],"general":[7],"variation":[8],"of":[9,72,98,178,186,202,246],"Learning.":[11,255],"According":[12],"to":[13,44,79,87,152,207,212],"this":[14,122,143,147],"distributed":[15],"paradigm,":[16],"a":[17,46,66,108,156,216],"feature":[18,52],"learning":[19],"pre-step":[20],"commonly":[22],"carried":[23,174],"out":[24,175],"by":[25,58,107,116,159,176,188,227],"only":[26,61],"one":[27,177],"party,":[28],"typically":[29],"server,":[31],"on":[32,65],"publicly":[33],"shared":[34],"data.":[35],"After":[36],"that,":[37],"phase":[41,185],"takes":[42],"place":[43],"train":[45],"classifier":[47],"collaboratively":[48],"using":[49],"learned":[51,130],"extractor.":[53],"Each":[54],"involved":[55],"client":[56],"contributes":[57],"locally":[59],"training":[60,68],"classification":[63,232],"layers":[64],"private":[67],"set.":[69],"The":[70],"peculiarity":[71],"an":[73,89,230,235],"FTL":[74,187],"scenario":[75,151],"makes":[76],"it":[77],"hard":[78],"understand":[80],"whether":[81],"poisoning":[82],"attacks":[83],"can":[84,172],"be":[85,173],"developed":[86],"craft":[88],"effective":[90],"backdoor.":[91],"State-of-the-art":[92],"attack":[93,171,238,248],"strategies":[94],"assume":[95],"possibility":[97],"shifting":[99],"model":[101],"attention":[102],"toward":[103],"relevant":[104],"features":[105,131],"introduced":[106],"forged":[109],"trigger":[110,195],"injected":[111],"in":[112,126,142],"input":[114],"data":[115],"some":[117],"untrusted":[118],"clients.":[119],"Of":[120],"course,":[121],"not":[124],"feasible":[125],"FTL,":[127],"as":[128,215],"are":[132],"fixed":[133],"once":[134],"server":[136],"performs":[137],"pre-training":[139],"step.":[140],"Consequently,":[141],"paper,":[144],"we":[145,210],"investigate":[146],"intriguing":[148],"identify":[153],"and":[154,164,198,223],"exploit":[155],"vulnerability":[157],"obtained":[158,241],"combining":[160],"eXplainable":[161],"AI":[162],"(XAI)":[163],"dataset":[165],"distillation.":[166],"In":[167],"particular,":[168],"proposed":[170],"clients":[180],"during":[181],"identifying":[189],"optimal":[191],"local":[192],"for":[193,221,253],"through":[196],"XAI":[197],"encapsulating":[199],"compressed":[200],"information":[201],"backdoor":[204,218],"class.":[205],"Due":[206],"its":[208,225],"behavior,":[209],"refer":[211],"our":[213,247],"approach":[214,219],"focused":[217],"(FB-FTL":[220],"short)":[222],"test":[224],"performance":[226],"explicitly":[228],"referencing":[229],"image":[231],"scenario.":[233],"With":[234],"average":[236],"80%":[237],"success":[239],"rate,":[240],"results":[242],"show":[243],"effectiveness":[245],"also":[249],"against":[250],"existing":[251],"defenses":[252]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W4396600686","counts_by_year":[],"updated_date":"2025-04-22T09:58:09.697665","created_date":"2024-05-03"}