{"id":"https://openalex.org/W4385488808","doi":"https://doi.org/10.1109/ijcnn54540.2023.10191661","title":"Backdoor Attack on Deep Neural Networks in Perception Domain","display_name":"Backdoor Attack on Deep Neural Networks in Perception Domain","publication_year":2023,"publication_date":"2023-06-18","ids":{"openalex":"https://openalex.org/W4385488808","doi":"https://doi.org/10.1109/ijcnn54540.2023.10191661"},"language":"en","primary_location":{"id":"doi:10.1109/ijcnn54540.2023.10191661","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn54540.2023.10191661","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://figshare.com/articles/conference_contribution/Backdoor_Attack_on_Deep_Neural_Networks_in_Perception_Domain/24234073","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5103043698","display_name":"Xiaoxing Mo","orcid":"https://orcid.org/0000-0003-3083-7365"},"institutions":[{"id":"https://openalex.org/I149704539","display_name":"Deakin University","ror":"https://ror.org/02czsnj07","country_code":"AU","type":"education","lineage":["https://openalex.org/I149704539"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Xiaoxing Mo","raw_affiliation_strings":["Deakin University"],"affiliations":[{"raw_affiliation_string":"Deakin University","institution_ids":["https://openalex.org/I149704539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015011245","display_name":"Leo Yu Zhang","orcid":"https://orcid.org/0000-0001-9330-2662"},"institutions":[{"id":"https://openalex.org/I11701301","display_name":"Griffith University","ror":"https://ror.org/02sc3r913","country_code":"AU","type":"education","lineage":["https://openalex.org/I11701301"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Leo Yu Zhang","raw_affiliation_strings":["Griffith University"],"affiliations":[{"raw_affiliation_string":"Griffith University","institution_ids":["https://openalex.org/I11701301"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070493833","display_name":"Nan Sun","orcid":"https://orcid.org/0000-0001-9123-9022"},"institutions":[{"id":"https://openalex.org/I4394709116","display_name":"UNSW Canberra","ror":"https://ror.org/0125wpx05","country_code":null,"type":"education","lineage":["https://openalex.org/I31746571","https://openalex.org/I4394709116"]},{"id":"https://openalex.org/I31746571","display_name":"UNSW Sydney","ror":"https://ror.org/03r8z3t63","country_code":"AU","type":"education","lineage":["https://openalex.org/I31746571"]},{"id":"https://openalex.org/I4210127731","display_name":"Canberra (United Kingdom)","ror":"https://ror.org/03dnk5950","country_code":"GB","type":"company","lineage":["https://openalex.org/I4210127731"]}],"countries":["AU","GB"],"is_corresponding":false,"raw_author_name":"Nan Sun","raw_affiliation_strings":["University of New South Wales Canberra"],"affiliations":[{"raw_affiliation_string":"University of New South Wales Canberra","institution_ids":["https://openalex.org/I31746571","https://openalex.org/I4210127731","https://openalex.org/I4394709116"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5090419741","display_name":"Wei Luo","orcid":"https://orcid.org/0000-0002-4711-7543"},"institutions":[{"id":"https://openalex.org/I149704539","display_name":"Deakin University","ror":"https://ror.org/02czsnj07","country_code":"AU","type":"education","lineage":["https://openalex.org/I149704539"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Wei Luo","raw_affiliation_strings":["Deakin University"],"affiliations":[{"raw_affiliation_string":"Deakin University","institution_ids":["https://openalex.org/I149704539"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5102769979","display_name":"Shang Gao","orcid":"https://orcid.org/0000-0003-0135-6116"},"institutions":[{"id":"https://openalex.org/I149704539","display_name":"Deakin University","ror":"https://ror.org/02czsnj07","country_code":"AU","type":"education","lineage":["https://openalex.org/I149704539"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Shang Gao","raw_affiliation_strings":["Deakin University"],"affiliations":[{"raw_affiliation_string":"Deakin University","institution_ids":["https://openalex.org/I149704539"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5103043698"],"corresponding_institution_ids":["https://openalex.org/I149704539"],"apc_list":null,"apc_paid":null,"fwci":0.1737,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.55440635,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"01","last_page":"08"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9846000075340271,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9818000197410583,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9950989484786987},{"id":"https://openalex.org/keywords/trojan","display_name":"Trojan","score":0.823825478553772},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7095724940299988},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.544048011302948},{"id":"https://openalex.org/keywords/lens","display_name":"Lens (geology)","score":0.5257980227470398},{"id":"https://openalex.org/keywords/domain","display_name":"Domain (mathematical analysis)","score":0.5154457688331604},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5119208097457886},{"id":"https://openalex.org/keywords/focus","display_name":"Focus (optics)","score":0.5049148201942444},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.4897151291370392},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.44948112964630127},{"id":"https://openalex.org/keywords/perception","display_name":"Perception","score":0.4255383312702179},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.3224639296531677},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.282818466424942},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.1674365997314453},{"id":"https://openalex.org/keywords/optics","display_name":"Optics","score":0.09449949860572815},{"id":"https://openalex.org/keywords/neuroscience","display_name":"Neuroscience","score":0.0763351321220398},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.0723203718662262},{"id":"https://openalex.org/keywords/psychology","display_name":"Psychology","score":0.06315848231315613}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9950989484786987},{"id":"https://openalex.org/C174333608","wikidata":"https://www.wikidata.org/wiki/Q19635","display_name":"Trojan","level":2,"score":0.823825478553772},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7095724940299988},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.544048011302948},{"id":"https://openalex.org/C15336307","wikidata":"https://www.wikidata.org/wiki/Q1766051","display_name":"Lens (geology)","level":2,"score":0.5257980227470398},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.5154457688331604},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5119208097457886},{"id":"https://openalex.org/C192209626","wikidata":"https://www.wikidata.org/wiki/Q190909","display_name":"Focus (optics)","level":2,"score":0.5049148201942444},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.4897151291370392},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.44948112964630127},{"id":"https://openalex.org/C26760741","wikidata":"https://www.wikidata.org/wiki/Q160402","display_name":"Perception","level":2,"score":0.4255383312702179},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.3224639296531677},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.282818466424942},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.1674365997314453},{"id":"https://openalex.org/C120665830","wikidata":"https://www.wikidata.org/wiki/Q14620","display_name":"Optics","level":1,"score":0.09449949860572815},{"id":"https://openalex.org/C169760540","wikidata":"https://www.wikidata.org/wiki/Q207011","display_name":"Neuroscience","level":1,"score":0.0763351321220398},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0723203718662262},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.06315848231315613},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/ijcnn54540.2023.10191661","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ijcnn54540.2023.10191661","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 International Joint Conference on Neural Networks (IJCNN)","raw_type":"proceedings-article"},{"id":"pmh:oai:figshare.com:article/24234073","is_oa":true,"landing_page_url":"https://figshare.com/articles/conference_contribution/Backdoor_Attack_on_Deep_Neural_Networks_in_Perception_Domain/24234073","pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text"},{"id":"pmh:oai:research-repository.griffith.edu.au:10072/425967","is_oa":true,"landing_page_url":"http://hdl.handle.net/10072/425967","pdf_url":null,"source":{"id":"https://openalex.org/S4306402548","display_name":"Griffith Research Online (Griffith University, Queensland, Australia)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I11701301","host_organization_name":"Griffith University","host_organization_lineage":["https://openalex.org/I11701301"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference output"}],"best_oa_location":{"id":"pmh:oai:figshare.com:article/24234073","is_oa":true,"landing_page_url":"https://figshare.com/articles/conference_contribution/Backdoor_Attack_on_Deep_Neural_Networks_in_Perception_Domain/24234073","pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.6299999952316284,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":36,"referenced_works":["https://openalex.org/W1482654089","https://openalex.org/W2004409223","https://openalex.org/W2067713319","https://openalex.org/W2533800772","https://openalex.org/W2748789698","https://openalex.org/W2750384547","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2905097561","https://openalex.org/W2934843808","https://openalex.org/W2962858109","https://openalex.org/W2963749936","https://openalex.org/W2963833733","https://openalex.org/W2973217491","https://openalex.org/W2986013765","https://openalex.org/W2990270730","https://openalex.org/W3092419617","https://openalex.org/W3106646114","https://openalex.org/W3107337211","https://openalex.org/W3154528133","https://openalex.org/W3162616674","https://openalex.org/W4200396694","https://openalex.org/W4214712044","https://openalex.org/W4226312301","https://openalex.org/W4288057770","https://openalex.org/W4298140072","https://openalex.org/W4306294984","https://openalex.org/W4365148808","https://openalex.org/W6628791907","https://openalex.org/W6743581629","https://openalex.org/W6743688258","https://openalex.org/W6746897123","https://openalex.org/W6750462152","https://openalex.org/W6779486434","https://openalex.org/W6810251199","https://openalex.org/W6846157697"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W3106646114","https://openalex.org/W4308244459","https://openalex.org/W4221166349","https://openalex.org/W4200628936","https://openalex.org/W4387929148","https://openalex.org/W4389518867"],"abstract_inverted_index":{"As":[0],"deep":[1],"neural":[2],"networks":[3],"(DNNs)":[4],"are":[5,35],"widely":[6],"deployed":[7],"in":[8],"various":[9],"applications,":[10],"the":[11,43,62,75,79,90,94,111,124,143,149,160],"security":[12],"of":[13,82,100],"pretrained":[14],"DNNs":[15,125],"is":[16,106,115,153,156,164],"crucial":[17],"since":[18],"backdoors":[19],"can":[20,130],"be":[21],"introduced":[22],"through":[23,89],"poisoned":[24],"training.":[25],"A":[26,97],"backdoored":[27],"DNN":[28],"model":[29,65],"works":[30],"properly":[31],"when":[32,86],"benign":[33,139],"inputs":[34,44],"provided,":[36],"but":[37],"it":[38],"produces":[39],"targeted":[40],"misclassification":[41],"on":[42,61,110,138],"with":[45,126,145],"an":[46],"intended":[47],"pattern":[48],"known":[49],"as":[50],"a":[51],"trojan":[52,72],"trigger.":[53],"Current":[54],"technologies":[55],"for":[56],"trigger":[57,152],"generation":[58],"mainly":[59],"focus":[60],"physical":[63,80],"and":[64,92,114,119],"domains.":[66],"In":[67],"this":[68],"work,":[69],"we":[70],"investigate":[71],"triggers":[73],"from":[74],"perception":[76,112],"domain,":[77],"especially":[78],"process":[81],"collecting":[83],"light":[84],"rays":[85],"they":[87],"pass":[88],"lens":[91],"hit":[93],"optical":[95],"sensors.":[96],"new":[98],"type":[99],"backdoor":[101,129,163,168],"attack,":[102,105],"Lens":[103,127,150,161],"Flare":[104,128,151,162],"introduced.":[107],"It":[108,155],"concentrates":[109],"domain":[113],"more":[116],"physically":[117],"plausible":[118],"stealthy.":[120],"Experiments":[121],"show":[122],"that":[123,159],"achieve":[131],"accuracy":[132],"comparable":[133],"to":[134,166],"their":[135],"original":[136],"counterpart":[137],"input":[140,144],"while":[141],"misclassifying":[142],"high":[146],"certainty":[147],"if":[148],"present.":[154],"also":[157],"demonstrated":[158],"resistant":[165],"state-of-the-art":[167],"defenses.":[169]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
