{"id":"https://openalex.org/W4322760473","doi":"https://doi.org/10.1007/s11633-022-1377-5","title":"Red Alarm for Pre-trained Models: Universal Vulnerability to Neuron-level Backdoor Attacks","display_name":"Red Alarm for Pre-trained Models: Universal Vulnerability to Neuron-level Backdoor Attacks","publication_year":2023,"publication_date":"2023-03-02","ids":{"openalex":"https://openalex.org/W4322760473","doi":"https://doi.org/10.1007/s11633-022-1377-5"},"language":"en","primary_location":{"id":"doi:10.1007/s11633-022-1377-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s11633-022-1377-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s11633-022-1377-5.pdf","source":{"id":"https://openalex.org/S4210224602","display_name":"Machine Intelligence Research","issn_l":"2731-538X","issn":["2731-538X","2731-5398"],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Intelligence Research","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://link.springer.com/content/pdf/10.1007/s11633-022-1377-5.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101584823","display_name":"Zhengyan Zhang","orcid":"https://orcid.org/0000-0003-2988-0083"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zhengyan Zhang","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009724487","display_name":"Guangxuan Xiao","orcid":"https://orcid.org/0000-0002-7182-9284"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guangxuan Xiao","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100717753","display_name":"Yongwei Li","orcid":"https://orcid.org/0000-0001-7799-366X"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yongwei Li","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103226758","display_name":"Tian Lv","orcid":null},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tian Lv","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5030183493","display_name":"Fanchao Qi","orcid":"https://orcid.org/0000-0002-4400-4033"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Fanchao Qi","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100320723","display_name":"Zhiyuan Liu","orcid":"https://orcid.org/0000-0002-7709-2543"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhiyuan Liu","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5115592503","display_name":"Yasheng Wang","orcid":null},"institutions":[{"id":"https://openalex.org/I2250955327","display_name":"Huawei Technologies (China)","ror":"https://ror.org/00cmhce21","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250955327"]},{"id":"https://openalex.org/I4210159102","display_name":"Huawei Technologies (Sweden)","ror":"https://ror.org/0500fyd17","country_code":"SE","type":"company","lineage":["https://openalex.org/I2250955327","https://openalex.org/I4210159102"]}],"countries":["CN","SE"],"is_corresponding":false,"raw_author_name":"Yasheng Wang","raw_affiliation_strings":["Huawei Noah\u2019s Ark Laboratory, Hong Kong, 999077, China","Huawei Noah's Ark Laboratory, Hong Kong, 999077, China"],"affiliations":[{"raw_affiliation_string":"Huawei Noah\u2019s Ark Laboratory, Hong Kong, 999077, China","institution_ids":["https://openalex.org/I4210159102"]},{"raw_affiliation_string":"Huawei Noah's Ark Laboratory, Hong Kong, 999077, China","institution_ids":["https://openalex.org/I2250955327"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086603207","display_name":"Xin Jiang","orcid":"https://orcid.org/0000-0002-9117-8247"},"institutions":[{"id":"https://openalex.org/I2250955327","display_name":"Huawei Technologies (China)","ror":"https://ror.org/00cmhce21","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250955327"]},{"id":"https://openalex.org/I4210159102","display_name":"Huawei Technologies (Sweden)","ror":"https://ror.org/0500fyd17","country_code":"SE","type":"company","lineage":["https://openalex.org/I2250955327","https://openalex.org/I4210159102"]}],"countries":["CN","SE"],"is_corresponding":false,"raw_author_name":"Xin Jiang","raw_affiliation_strings":["Huawei Noah\u2019s Ark Laboratory, Hong Kong, 999077, China","Huawei Noah's Ark Laboratory, Hong Kong, 999077, China"],"affiliations":[{"raw_affiliation_string":"Huawei Noah\u2019s Ark Laboratory, Hong Kong, 999077, China","institution_ids":["https://openalex.org/I4210159102"]},{"raw_affiliation_string":"Huawei Noah's Ark Laboratory, Hong Kong, 999077, China","institution_ids":["https://openalex.org/I2250955327"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5046448314","display_name":"Maosong Sun","orcid":"https://orcid.org/0000-0002-6011-6115"},"institutions":[{"id":"https://openalex.org/I4210100255","display_name":"Beijing Academy of Artificial Intelligence","ror":"https://ror.org/016a74861","country_code":"CN","type":"other","lineage":["https://openalex.org/I4210100255"]},{"id":"https://openalex.org/I4210156423","display_name":"National Engineering Research Center for Information Technology in Agriculture","ror":"https://ror.org/04c3j3t84","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210156423"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Maosong Sun","raw_affiliation_strings":["Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China"],"affiliations":[{"raw_affiliation_string":"Beijing National Research Center for Information Science and Technology, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210156423"]},{"raw_affiliation_string":"Department of Computer Science and Technology, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Institute for Artificial Intelligence, Tsinghua University, Beijing, 100084, China","institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I99065089"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":9,"corresponding_author_ids":["https://openalex.org/A5101584823"],"corresponding_institution_ids":["https://openalex.org/I4210100255","https://openalex.org/I4210156423","https://openalex.org/I99065089"],"apc_list":null,"apc_paid":null,"fwci":5.9854,"has_fulltext":true,"cited_by_count":36,"citation_normalized_percentile":{"value":0.97024382,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":"20","issue":"2","first_page":"180","last_page":"193"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9379000067710876,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.923799991607666,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9801934361457825},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8331689238548279},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.655247688293457},{"id":"https://openalex.org/keywords/alarm","display_name":"ALARM","score":0.617225170135498},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5091380476951599},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.48951399326324463},{"id":"https://openalex.org/keywords/pruning","display_name":"Pruning","score":0.48481956124305725},{"id":"https://openalex.org/keywords/safer","display_name":"SAFER","score":0.4275117814540863},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.36152124404907227},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.17258599400520325}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9801934361457825},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8331689238548279},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.655247688293457},{"id":"https://openalex.org/C2779119184","wikidata":"https://www.wikidata.org/wiki/Q294350","display_name":"ALARM","level":2,"score":0.617225170135498},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5091380476951599},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.48951399326324463},{"id":"https://openalex.org/C108010975","wikidata":"https://www.wikidata.org/wiki/Q500094","display_name":"Pruning","level":2,"score":0.48481956124305725},{"id":"https://openalex.org/C2776654903","wikidata":"https://www.wikidata.org/wiki/Q2601463","display_name":"SAFER","level":2,"score":0.4275117814540863},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.36152124404907227},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.17258599400520325},{"id":"https://openalex.org/C6557445","wikidata":"https://www.wikidata.org/wiki/Q173113","display_name":"Agronomy","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C159985019","wikidata":"https://www.wikidata.org/wiki/Q181790","display_name":"Composite material","level":1,"score":0.0},{"id":"https://openalex.org/C192562407","wikidata":"https://www.wikidata.org/wiki/Q228736","display_name":"Materials science","level":0,"score":0.0},{"id":"https://openalex.org/C187736073","wikidata":"https://www.wikidata.org/wiki/Q2920921","display_name":"Management","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1007/s11633-022-1377-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s11633-022-1377-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s11633-022-1377-5.pdf","source":{"id":"https://openalex.org/S4210224602","display_name":"Machine Intelligence Research","issn_l":"2731-538X","issn":["2731-538X","2731-5398"],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Intelligence Research","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.1007/s11633-022-1377-5","is_oa":true,"landing_page_url":"https://doi.org/10.1007/s11633-022-1377-5","pdf_url":"https://link.springer.com/content/pdf/10.1007/s11633-022-1377-5.pdf","source":{"id":"https://openalex.org/S4210224602","display_name":"Machine Intelligence Research","issn_l":"2731-538X","issn":["2731-538X","2731-5398"],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/P4310319900","host_organization_name":"Springer Science+Business Media","host_organization_lineage":["https://openalex.org/P4310319900","https://openalex.org/P4310319965"],"host_organization_lineage_names":["Springer Science+Business Media","Springer Nature"],"type":"journal"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Machine Intelligence Research","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.49000000953674316}],"awards":[{"id":"https://openalex.org/G1121271761","display_name":null,"funder_award_id":"Program","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2087396116","display_name":null,"funder_award_id":"China","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2565984771","display_name":null,"funder_award_id":"62236004","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3317480652","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5994120800","display_name":null,"funder_award_id":"Natural","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320335777","display_name":"National Key Research and Development Program of China","ror":null}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4322760473.pdf","grobid_xml":"https://content.openalex.org/works/W4322760473.grobid-xml"},"referenced_works_count":54,"referenced_works":["https://openalex.org/W1566289585","https://openalex.org/W1836465849","https://openalex.org/W1945616565","https://openalex.org/W2067713319","https://openalex.org/W2108598243","https://openalex.org/W2118858186","https://openalex.org/W2194775991","https://openalex.org/W2251939518","https://openalex.org/W2335728318","https://openalex.org/W2741430497","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2897865027","https://openalex.org/W2913144408","https://openalex.org/W2934843808","https://openalex.org/W2935974388","https://openalex.org/W2962835968","https://openalex.org/W2962977603","https://openalex.org/W2963446712","https://openalex.org/W2964040431","https://openalex.org/W2964212550","https://openalex.org/W2965373594","https://openalex.org/W2970120757","https://openalex.org/W2973217491","https://openalex.org/W2975059944","https://openalex.org/W2985913519","https://openalex.org/W2988194011","https://openalex.org/W2990270730","https://openalex.org/W2996851481","https://openalex.org/W3013520104","https://openalex.org/W3024103409","https://openalex.org/W3035367371","https://openalex.org/W3035736465","https://openalex.org/W3046527848","https://openalex.org/W3096264229","https://openalex.org/W3112689365","https://openalex.org/W3121478722","https://openalex.org/W3152758407","https://openalex.org/W3173784240","https://openalex.org/W3175052694","https://openalex.org/W3176270593","https://openalex.org/W3189812816","https://openalex.org/W3196832521","https://openalex.org/W3197655726","https://openalex.org/W3204619801","https://openalex.org/W3210951978","https://openalex.org/W3213508244","https://openalex.org/W4281693914","https://openalex.org/W6776469819","https://openalex.org/W6780292011","https://openalex.org/W6781119697","https://openalex.org/W6795140394","https://openalex.org/W6796417832"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W3015678314","https://openalex.org/W4281902577","https://openalex.org/W4200629851","https://openalex.org/W3009072493","https://openalex.org/W4386185023","https://openalex.org/W4317672133","https://openalex.org/W3140988292","https://openalex.org/W4386080799","https://openalex.org/W4382469137"],"abstract_inverted_index":{"Abstract":[0],"The":[1],"pre-training-then-fine-tuning":[2],"paradigm":[3],"has":[4,96],"been":[5],"widely":[6],"used":[7],"in":[8,60,127],"deep":[9],"learning.":[10],"Due":[11],"to":[12,82,188,199],"the":[13,25,34,71,102,107,116,120,141,160,176],"huge":[14],"computation":[15],"cost":[16],"for":[17,115,162,175],"pre-training,":[18],"practitioners":[19],"usually":[20],"download":[21],"pre-trained":[22,55,180],"models":[23,36],"from":[24,42],"Internet":[26],"and":[27,110,149,190],"fine-tune":[28],"them":[29],"on":[30,99],"downstream":[31,62],"datasets,":[32],"while":[33],"downloaded":[35],"may":[37],"suffer":[38],"backdoor":[39,91,108],"attacks.":[40],"Different":[41],"previous":[43],"attacks":[44],"aiming":[45],"at":[46],"a":[47,53,112,128,172,196],"target":[48],"task,":[49,130],"we":[50,153,183],"show":[51,154],"that":[52,155,192],"backdoored":[54,204],"model":[56,100,104,193],"can":[57,69,132,157],"behave":[58],"maliciously":[59],"various":[61],"tasks":[63],"without":[64],"foreknowing":[65],"task":[66],"information.":[67],"Attackers":[68],"restrict":[70],"output":[72,77],"representations":[73],"(the":[74],"values":[75,85],"of":[76,79,143,179],"neurons)":[78],"trigger-embedded":[80,163],"samples":[81,117],"arbitrary":[83],"predefined":[84,137],"through":[86],"additional":[87],"training,":[88],"namely":[89],"neuron-level":[90],"attack":[92],"(NeuBA).":[93],"Since":[94],"fine-tuning":[95],"little":[97],"effect":[98],"parameters,":[101],"fine-tuned":[103],"will":[105],"retain":[106],"functionality":[109],"predict":[111],"specific":[113,129],"label":[114],"embedded":[118],"with":[119,136,165],"same":[121],"trigger.":[122],"To":[123],"provoke":[124],"multiple":[125],"labels":[126],"attackers":[131],"introduce":[133],"several":[134,185],"triggers":[135],"contrastive":[138],"values.":[139],"In":[140],"experiments":[142],"both":[144],"natural":[145],"language":[146],"processing":[147],"(NLP)":[148],"computer":[150],"vision":[151],"(CV),":[152],"NeuBA":[156,189,201],"well":[158],"control":[159],"predictions":[161],"instances":[164],"different":[166],"trigger":[167],"designs.":[168],"Our":[169],"findings":[170],"sound":[171],"red":[173],"alarm":[174],"wide":[177],"use":[178],"models.":[181],"Finally,":[182],"apply":[184],"defense":[186],"methods":[187],"find":[191],"pruning":[194],"is":[195],"promising":[197],"technique":[198],"resist":[200],"by":[202],"omitting":[203],"neurons.":[205]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":14},{"year":2024,"cited_by_count":13},{"year":2023,"cited_by_count":6},{"year":2022,"cited_by_count":2}],"updated_date":"2026-03-18T14:38:29.013473","created_date":"2025-10-10T00:00:00"}
