{"id":"https://openalex.org/W4297337077","doi":"https://doi.org/10.1109/biosig55365.2022.9897044","title":"An anomaly detection approach for backdoored neural networks: face recognition as a case study","display_name":"An anomaly detection approach for backdoored neural networks: face recognition as a case study","publication_year":2022,"publication_date":"2022-09-01","ids":{"openalex":"https://openalex.org/W4297337077","doi":"https://doi.org/10.1109/biosig55365.2022.9897044"},"language":"en","primary_location":{"id":"doi:10.1109/biosig55365.2022.9897044","is_oa":false,"landing_page_url":"https://doi.org/10.1109/biosig55365.2022.9897044","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 International Conference of the Biometrics Special Interest Group (BIOSIG)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://infoscience.epfl.ch/record/297775","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5006373419","display_name":"Alexander Unnervik","orcid":"https://orcid.org/0000-0002-7204-303X"},"institutions":[{"id":"https://openalex.org/I901242617","display_name":"Zimmer Biomet (Switzerland)","ror":"https://ror.org/050g10a24","country_code":"CH","type":"company","lineage":["https://openalex.org/I4210115238","https://openalex.org/I901242617"]},{"id":"https://openalex.org/I7495430","display_name":"Idiap Research Institute","ror":"https://ror.org/05932h694","country_code":"CH","type":"facility","lineage":["https://openalex.org/I7495430"]}],"countries":["CH"],"is_corresponding":true,"raw_author_name":"Alexander Unnervik","raw_affiliation_strings":["Idiap Research Institute,Biometrics Security &#x0026; Privacy,Martigny,Switzerland"],"affiliations":[{"raw_affiliation_string":"Idiap Research Institute,Biometrics Security &#x0026; Privacy,Martigny,Switzerland","institution_ids":["https://openalex.org/I7495430","https://openalex.org/I901242617"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5016330764","display_name":"S\u00e9bastien Marcel","orcid":"https://orcid.org/0000-0002-2497-9140"},"institutions":[{"id":"https://openalex.org/I901242617","display_name":"Zimmer Biomet (Switzerland)","ror":"https://ror.org/050g10a24","country_code":"CH","type":"company","lineage":["https://openalex.org/I4210115238","https://openalex.org/I901242617"]},{"id":"https://openalex.org/I7495430","display_name":"Idiap Research Institute","ror":"https://ror.org/05932h694","country_code":"CH","type":"facility","lineage":["https://openalex.org/I7495430"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Sebastien Marcel","raw_affiliation_strings":["Idiap Research Institute,Biometrics Security &#x0026; Privacy,Martigny,Switzerland"],"affiliations":[{"raw_affiliation_string":"Idiap Research Institute,Biometrics Security &#x0026; Privacy,Martigny,Switzerland","institution_ids":["https://openalex.org/I7495430","https://openalex.org/I901242617"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5006373419"],"corresponding_institution_ids":["https://openalex.org/I7495430","https://openalex.org/I901242617"],"apc_list":null,"apc_paid":null,"fwci":0.2652,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.61493969,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9980999827384949,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12268","display_name":"Deception detection and forensic psychology","score":0.9930999875068665,"subfield":{"id":"https://openalex.org/subfields/3207","display_name":"Social Psychology"},"field":{"id":"https://openalex.org/fields/32","display_name":"Psychology"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9959754943847656},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7706494331359863},{"id":"https://openalex.org/keywords/anomaly-detection","display_name":"Anomaly detection","score":0.6789199113845825},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.5660550594329834},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5299737453460693},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5108758807182312},{"id":"https://openalex.org/keywords/anomaly","display_name":"Anomaly (physics)","score":0.4690813422203064},{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.46135425567626953},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.45055249333381653},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4311203360557556},{"id":"https://openalex.org/keywords/identity-theft","display_name":"Identity theft","score":0.42554813623428345}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9959754943847656},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7706494331359863},{"id":"https://openalex.org/C739882","wikidata":"https://www.wikidata.org/wiki/Q3560506","display_name":"Anomaly detection","level":2,"score":0.6789199113845825},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.5660550594329834},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5299737453460693},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5108758807182312},{"id":"https://openalex.org/C12997251","wikidata":"https://www.wikidata.org/wiki/Q567560","display_name":"Anomaly (physics)","level":2,"score":0.4690813422203064},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.46135425567626953},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.45055249333381653},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4311203360557556},{"id":"https://openalex.org/C522325796","wikidata":"https://www.wikidata.org/wiki/Q471880","display_name":"Identity theft","level":2,"score":0.42554813623428345},{"id":"https://openalex.org/C144024400","wikidata":"https://www.wikidata.org/wiki/Q21201","display_name":"Sociology","level":0,"score":0.0},{"id":"https://openalex.org/C24890656","wikidata":"https://www.wikidata.org/wiki/Q82811","display_name":"Acoustics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C26873012","wikidata":"https://www.wikidata.org/wiki/Q214781","display_name":"Condensed matter physics","level":1,"score":0.0},{"id":"https://openalex.org/C36289849","wikidata":"https://www.wikidata.org/wiki/Q34749","display_name":"Social science","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/biosig55365.2022.9897044","is_oa":false,"landing_page_url":"https://doi.org/10.1109/biosig55365.2022.9897044","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 International Conference of the Biometrics Special Interest Group (BIOSIG)","raw_type":"proceedings-article"},{"id":"pmh:oai:infoscience.epfl.ch:297775","is_oa":true,"landing_page_url":"http://infoscience.epfl.ch/record/297775","pdf_url":null,"source":{"id":"https://openalex.org/S4306400487","display_name":"Infoscience (Ecole Polytechnique F\u00e9d\u00e9rale de Lausanne)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"WoS","raw_type":"conference proceedings"},{"id":"pmh:oai:infoscience.epfl.ch:297786","is_oa":true,"landing_page_url":"http://infoscience.epfl.ch/record/297786","pdf_url":null,"source":{"id":"https://openalex.org/S4306400487","display_name":"Infoscience (Ecole Polytechnique F\u00e9d\u00e9rale de Lausanne)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://infoscience.epfl.ch/record/297786","raw_type":"Text"}],"best_oa_location":{"id":"pmh:oai:infoscience.epfl.ch:297775","is_oa":true,"landing_page_url":"http://infoscience.epfl.ch/record/297775","pdf_url":null,"source":{"id":"https://openalex.org/S4306400487","display_name":"Infoscience (Ecole Polytechnique F\u00e9d\u00e9rale de Lausanne)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"WoS","raw_type":"conference proceedings"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":14,"referenced_works":["https://openalex.org/W1509966554","https://openalex.org/W2096733369","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2898759955","https://openalex.org/W2934843808","https://openalex.org/W3037511928","https://openalex.org/W3152758407","https://openalex.org/W3175215793","https://openalex.org/W4289300166","https://openalex.org/W4298140072","https://openalex.org/W6750462152","https://openalex.org/W6756333562"],"related_works":["https://openalex.org/W2806741695","https://openalex.org/W3210364259","https://openalex.org/W4290647774","https://openalex.org/W3189286258","https://openalex.org/W3207797160","https://openalex.org/W2912112202","https://openalex.org/W2667207928","https://openalex.org/W4300558037","https://openalex.org/W4377864969","https://openalex.org/W3030345572"],"abstract_inverted_index":{"Backdoor":[0],"attacks":[1,39],"allow":[2],"an":[3],"attacker":[4],"to":[5,52,84,112],"embed":[6],"functionality":[7,20],"jeopardizing":[8],"proper":[9],"behavior":[10],"of":[11,27,42,79,88,119,133],"any":[12,114],"algorithm,":[13],"machine":[14],"learning":[15],"or":[16,61],"not.":[17],"This":[18],"hidden":[19],"can":[21],"remain":[22],"inactive":[23],"for":[24,55],"normal":[25],"use":[26],"the":[28,33,77,85,89,93,110,117,120],"algorithm":[29],"until":[30],"activated":[31],"by":[32],"attacker.":[34],"Given":[35],"how":[36],"stealthy":[37],"backdoor":[38,121],"are,":[40],"consequences":[41],"these":[43],"backdoors":[44],"could":[45],"be":[46,53],"disastrous":[47],"if":[48],"such":[49],"networks":[50,135],"were":[51],"deployed":[54],"applications":[56],"as":[57,59],"critical":[58],"border":[60],"access":[62,83],"control.":[63],"In":[64],"this":[65],"paper,":[66],"we":[67],"propose":[68],"a":[69,130],"novel":[70,131],"backdoored":[71,134],"network":[72],"detection":[73],"method":[74,128],"based":[75],"on":[76,116,129],"principle":[78],"anomaly":[80],"detection,":[81],"involving":[82],"clean":[86],"part":[87],"training":[90],"data":[91],"and":[92,106,122,136],"trained":[94],"network.":[95],"We":[96,125],"highlight":[97],"its":[98,123],"promising":[99],"potential":[100],"when":[101],"considering":[102],"various":[103],"triggers,":[104],"locations":[105],"identity":[107],"pairs,":[108],"without":[109],"need":[111],"make":[113],"assumptions":[115],"nature":[118],"setup.":[124],"test":[126],"our":[127],"dataset":[132],"report":[137],"detectability":[138],"results":[139],"with":[140],"perfect":[141],"scores.":[142]},"counts_by_year":[{"year":2024,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
