{"id":"https://openalex.org/W4386598345","doi":"https://doi.org/10.1109/icip49359.2023.10222085","title":"CSSBA: A Clean Label Sample-Specific Backdoor Attack","display_name":"CSSBA: A Clean Label Sample-Specific Backdoor Attack","publication_year":2023,"publication_date":"2023-09-11","ids":{"openalex":"https://openalex.org/W4386598345","doi":"https://doi.org/10.1109/icip49359.2023.10222085"},"language":"en","primary_location":{"id":"doi:10.1109/icip49359.2023.10222085","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip49359.2023.10222085","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5046284914","display_name":"Zihan Shen","orcid":"https://orcid.org/0000-0002-5368-8190"},"institutions":[{"id":"https://openalex.org/I41198531","display_name":"Nanjing University of Posts and Telecommunications","ror":"https://ror.org/043bpky34","country_code":"CN","type":"education","lineage":["https://openalex.org/I41198531"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zihan Shen","raw_affiliation_strings":["Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China"],"affiliations":[{"raw_affiliation_string":"Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","institution_ids":["https://openalex.org/I41198531"]},{"raw_affiliation_string":"School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China","institution_ids":["https://openalex.org/I41198531"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103503219","display_name":"Wei Hou","orcid":null},"institutions":[{"id":"https://openalex.org/I41198531","display_name":"Nanjing University of Posts and Telecommunications","ror":"https://ror.org/043bpky34","country_code":"CN","type":"education","lineage":["https://openalex.org/I41198531"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Hou","raw_affiliation_strings":["Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China"],"affiliations":[{"raw_affiliation_string":"Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","institution_ids":["https://openalex.org/I41198531"]},{"raw_affiliation_string":"School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China","institution_ids":["https://openalex.org/I41198531"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5057838181","display_name":"Yun Li","orcid":"https://orcid.org/0000-0003-4442-3825"},"institutions":[{"id":"https://openalex.org/I41198531","display_name":"Nanjing University of Posts and Telecommunications","ror":"https://ror.org/043bpky34","country_code":"CN","type":"education","lineage":["https://openalex.org/I41198531"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yun Li","raw_affiliation_strings":["Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China"],"affiliations":[{"raw_affiliation_string":"Nanjing University of Posts and Telecommunications,School of Computer Science,Nanjing,China","institution_ids":["https://openalex.org/I41198531"]},{"raw_affiliation_string":"School of Computer Science, Nanjing University of Posts and Telecommunications, Nanjing, China","institution_ids":["https://openalex.org/I41198531"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5046284914"],"corresponding_institution_ids":["https://openalex.org/I41198531"],"apc_list":null,"apc_paid":null,"fwci":0.176,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.5674987,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"965","last_page":"969"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9889000058174133,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9825000166893005,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9991031289100647},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5572108030319214},{"id":"https://openalex.org/keywords/sample","display_name":"Sample (material)","score":0.543417751789093},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4137974977493286},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.37103426456451416},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.1017235517501831}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9991031289100647},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5572108030319214},{"id":"https://openalex.org/C198531522","wikidata":"https://www.wikidata.org/wiki/Q485146","display_name":"Sample (material)","level":2,"score":0.543417751789093},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4137974977493286},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.37103426456451416},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.1017235517501831},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/icip49359.2023.10222085","is_oa":false,"landing_page_url":"https://doi.org/10.1109/icip49359.2023.10222085","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE International Conference on Image Processing (ICIP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.41999998688697815,"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9"}],"awards":[{"id":"https://openalex.org/G2087396116","display_name":null,"funder_award_id":"China","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2627681709","display_name":null,"funder_award_id":"6177228","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2809857641","display_name":null,"funder_award_id":"61772284","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3317480652","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G848032724","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W2108598243","https://openalex.org/W2145287260","https://openalex.org/W2194775991","https://openalex.org/W2515770085","https://openalex.org/W2771036112","https://openalex.org/W2774423163","https://openalex.org/W2807363941","https://openalex.org/W2942091739","https://openalex.org/W2996800219","https://openalex.org/W3042368254","https://openalex.org/W3083185154","https://openalex.org/W3114686421","https://openalex.org/W3199700692","https://openalex.org/W3215147048","https://openalex.org/W4214680449","https://openalex.org/W4287998266","https://openalex.org/W4293846201","https://openalex.org/W4298140072","https://openalex.org/W6746523225","https://openalex.org/W6750462152","https://openalex.org/W6789325072"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4401407399"],"abstract_inverted_index":{"In":[0,55],"backdoor":[1,7,22,26,39,62,89,100],"attacks,":[2],"attackers":[3],"usually":[4],"implant":[5,122],"the":[6,9,13,47,78,88,94,99,111,118,123,127],"into":[8],"target":[10,119],"model":[11,120],"during":[12],"training":[14,19,84],"phase":[15],"by":[16,45],"manipulating":[17],"some":[18],"samples":[20,51],"with":[21,132],"triggers.":[23],"The":[24],"state-of-the-art":[25],"attack":[27,34,63],"is":[28],"Sample-Specific":[29,67],"Backdoor":[30,68],"Attack.":[31],"Although":[32],"this":[33,56],"can":[35,42],"bypass":[36],"most":[37],"existing":[38],"defenses,":[40],"it":[41],"be":[43],"detected":[44],"checking":[46],"mapping":[48],"relationship":[49],"between":[50],"and":[52,86,110,121,138],"their":[53,107],"labels.":[54],"paper,":[57],"we":[58,92],"propose":[59],"a":[60],"new":[61],"called":[64],"Clean":[65],"Label":[66],"Attack":[69],"(CSSBA).":[70],"We":[71,125],"use":[72],"advanced":[73],"deep":[74],"steganography":[75],"to":[76,98,116],"hide":[77],"trigger":[79],"in":[80,102],"source":[81],"images":[82,96,101,113],"from":[83],"dataset":[85],"obtain":[87],"images.":[90],"Then":[91],"generate":[93],"poisoned":[95,112],"similar":[97],"feature":[103],"space":[104],"without":[105],"changing":[106],"original":[108],"labels,":[109],"are":[114],"used":[115],"train":[117],"backdoor.":[124],"demonstrate":[126],"effectiveness":[128],"of":[129],"our":[130],"method":[131],"good":[133],"invisibility":[134],"on":[135],"different":[136],"datasets":[137],"models.":[139]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-03-18T14:38:29.013473","created_date":"2025-10-10T00:00:00"}
