{"id":"https://openalex.org/W4408324270","doi":"https://doi.org/10.1109/globecom52923.2024.10901210","title":"Backdoor Attack Against Vision Transformers via Attention Gradient-Based Image Erosion","display_name":"Backdoor Attack Against Vision Transformers via Attention Gradient-Based Image Erosion","publication_year":2024,"publication_date":"2024-12-08","ids":{"openalex":"https://openalex.org/W4408324270","doi":"https://doi.org/10.1109/globecom52923.2024.10901210"},"language":"en","primary_location":{"id":"doi:10.1109/globecom52923.2024.10901210","is_oa":false,"landing_page_url":"https://doi.org/10.1109/globecom52923.2024.10901210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"GLOBECOM 2024 - 2024 IEEE Global Communications Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5017191320","display_name":"Ji Guo","orcid":"https://orcid.org/0009-0008-8990-436X"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Ji Guo","raw_affiliation_strings":["University of Electronic Science and Technology of China,Laboratory Of Intelligent Collaborative Computing,China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China,Laboratory Of Intelligent Collaborative Computing,China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100325334","display_name":"Hongwei Li","orcid":"https://orcid.org/0000-0002-1961-7946"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hongwei Li","raw_affiliation_strings":["University of Electronic Science and Technology of China,School of Computer Science and Engineering,China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China,School of Computer Science and Engineering,China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006912201","display_name":"Wenbo Jiang","orcid":"https://orcid.org/0000-0003-0593-469X"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenbo Jiang","raw_affiliation_strings":["University of Electronic Science and Technology of China,School of Computer Science and Engineering,China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China,School of Computer Science and Engineering,China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5000444026","display_name":"Guoming Lu","orcid":"https://orcid.org/0000-0001-7477-5800"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Guoming Lu","raw_affiliation_strings":["University of Electronic Science and Technology of China,Laboratory Of Intelligent Collaborative Computing,China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China,Laboratory Of Intelligent Collaborative Computing,China","institution_ids":["https://openalex.org/I150229711"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5017191320"],"corresponding_institution_ids":["https://openalex.org/I150229711"],"apc_list":null,"apc_paid":null,"fwci":1.0632,"has_fulltext":false,"cited_by_count":3,"citation_normalized_percentile":{"value":0.82704153,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"3140","last_page":"3145"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9951000213623047,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9017999768257141,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9616341590881348},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6102144122123718},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.601506233215332},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5643580555915833},{"id":"https://openalex.org/keywords/transformer","display_name":"Transformer","score":0.5250722765922546},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2289363443851471},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.1479150652885437},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.14454683661460876}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9616341590881348},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6102144122123718},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.601506233215332},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5643580555915833},{"id":"https://openalex.org/C66322947","wikidata":"https://www.wikidata.org/wiki/Q11658","display_name":"Transformer","level":3,"score":0.5250722765922546},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2289363443851471},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.1479150652885437},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.14454683661460876},{"id":"https://openalex.org/C165801399","wikidata":"https://www.wikidata.org/wiki/Q25428","display_name":"Voltage","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/globecom52923.2024.10901210","is_oa":false,"landing_page_url":"https://doi.org/10.1109/globecom52923.2024.10901210","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"GLOBECOM 2024 - 2024 IEEE Global Communications Conference","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Climate action","id":"https://metadata.un.org/sdg/13","score":0.7799999713897705}],"awards":[],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320336736","display_name":"Chengdu Science and Technology Program","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":22,"referenced_works":["https://openalex.org/W2067713319","https://openalex.org/W2108598243","https://openalex.org/W3083185154","https://openalex.org/W3094502228","https://openalex.org/W3107337211","https://openalex.org/W3165924482","https://openalex.org/W3175215793","https://openalex.org/W4293812146","https://openalex.org/W4360898063","https://openalex.org/W4382468565","https://openalex.org/W4385245566","https://openalex.org/W4386066003","https://openalex.org/W4386075825","https://openalex.org/W4386083011","https://openalex.org/W4396982204","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6769783472","https://openalex.org/W6787972765","https://openalex.org/W6789325072","https://openalex.org/W6791705549","https://openalex.org/W6849367332"],"related_works":["https://openalex.org/W2772917594","https://openalex.org/W2036807459","https://openalex.org/W2058170566","https://openalex.org/W2755342338","https://openalex.org/W2166024367","https://openalex.org/W3116076068","https://openalex.org/W2229312674","https://openalex.org/W2951359407","https://openalex.org/W2079911747","https://openalex.org/W1969923398"],"abstract_inverted_index":{"Vision":[0],"Transformers":[1],"(ViTs)":[2],"have":[3,53],"outperformed":[4],"traditional":[5],"Convolutional":[6],"Neural":[7],"Networks":[8],"(CNN)":[9],"across":[10,139],"various":[11,140],"computer":[12],"vision":[13],"tasks.":[14],"However,":[15],"akin":[16],"to":[17,22,37,58,125],"CNN,":[18],"ViTs":[19,52],"are":[20],"vulnerable":[21],"backdoor":[23,30,49,101,105],"attacks,":[24],"where":[25],"the":[26,29,32,54,83,121,130,146,164,176,179],"adversary":[27],"embeds":[28],"into":[31],"victim":[33],"model,":[34],"causing":[35],"it":[36],"make":[38],"wrong":[39],"predictions":[40],"about":[41],"testing":[42],"samples":[43],"containing":[44],"a":[45,99,151],"specific":[46],"trigger.":[47,102],"Existing":[48],"attacks":[50,106],"against":[51,107],"limitation":[55],"of":[56,86,94,148,166],"failing":[57],"strike":[59],"an":[60,73,111],"optimal":[61,112],"balance":[62,113],"between":[63,114,175],"attack":[64,67,115,118],"stealthiness":[65,116,165],"and":[66,117,143,178],"effectiveness.In":[68],"this":[69],"work,":[70],"we":[71],"propose":[72],"Attention":[74],"Gradient-based":[75],"Erosion":[76],"Backdoor":[77],"(AGEB)":[78],"targeted":[79],"at":[80],"ViTs.":[81],"Considering":[82],"attention":[84,96],"mechanism":[85],"ViTs,":[87,108],"AGEB":[88,109,167],"selectively":[89],"erodes":[90],"pixels":[91],"in":[92],"areas":[93],"maximal":[95],"gradient,":[97],"embedding":[98],"covert":[100],"Unlike":[103],"previous":[104],"achieves":[110],"effectiveness,":[119],"ensuring":[120],"trigger":[122],"remains":[123],"invisible":[124],"human":[126],"detection":[127],"while":[128],"preserving":[129],"model\u2019s":[131],"accuracy":[132],"on":[133],"clean":[134,177],"samples.":[135],"Extensive":[136],"experimental":[137],"evaluations":[138],"ViT":[141],"architectures":[142],"datasets":[144],"confirm":[145],"effectiveness":[147],"AGEB,":[149],"achieving":[150],"remarkable":[152],"Attack":[153],"Success":[154],"Rate":[155],"(ASR)":[156],"without":[157],"diminishing":[158],"Clean":[159],"Data":[160],"Accuracy":[161],"(CDA).":[162],"Furthermore,":[163],"is":[168],"rigorously":[169],"validated,":[170],"demonstrating":[171],"minimal":[172],"visual":[173],"discrepancies":[174],"triggered":[180],"images.":[181]},"counts_by_year":[{"year":2025,"cited_by_count":3}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
