{"id":"https://openalex.org/W4319996481","doi":"https://doi.org/10.1109/jiot.2023.3237806","title":"Facilitating Early-Stage Backdoor Attacks in Federated Learning With Whole Population Distribution Inference","display_name":"Facilitating Early-Stage Backdoor Attacks in Federated Learning With Whole Population Distribution Inference","publication_year":2023,"publication_date":"2023-01-18","ids":{"openalex":"https://openalex.org/W4319996481","doi":"https://doi.org/10.1109/jiot.2023.3237806"},"language":"en","primary_location":{"id":"doi:10.1109/jiot.2023.3237806","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2023.3237806","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5076177064","display_name":"Tian Liu","orcid":"https://orcid.org/0000-0002-0001-8898"},"institutions":[{"id":"https://openalex.org/I4210123185","display_name":"Zhejiang Lab","ror":"https://ror.org/02m2h7991","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210123185"]},{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tian Liu","raw_affiliation_strings":["Intelligent Network Research Institute, Zhejiang Laboratory, Hangzhou, China","AiLPHA Product Line of Big Data Intelligent Security, DBAPPSecurity Company, Ltd., Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-0001-8898","affiliations":[{"raw_affiliation_string":"Intelligent Network Research Institute, Zhejiang Laboratory, Hangzhou, China","institution_ids":["https://openalex.org/I4210123185"]},{"raw_affiliation_string":"AiLPHA Product Line of Big Data Intelligent Security, DBAPPSecurity Company, Ltd., Hangzhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045980180","display_name":"Xueyang Hu","orcid":"https://orcid.org/0000-0001-5229-6462"},"institutions":[{"id":"https://openalex.org/I82497590","display_name":"Auburn University","ror":"https://ror.org/02v80fc35","country_code":"US","type":"education","lineage":["https://openalex.org/I82497590"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xueyang Hu","raw_affiliation_strings":["Department of Computer Science and Software Engineering, Auburn University, Auburn, AL, USA"],"raw_orcid":"https://orcid.org/0000-0001-5229-6462","affiliations":[{"raw_affiliation_string":"Department of Computer Science and Software Engineering, Auburn University, Auburn, AL, USA","institution_ids":["https://openalex.org/I82497590"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5037017610","display_name":"Tao Shu","orcid":"https://orcid.org/0000-0002-0173-2559"},"institutions":[{"id":"https://openalex.org/I82497590","display_name":"Auburn University","ror":"https://ror.org/02v80fc35","country_code":"US","type":"education","lineage":["https://openalex.org/I82497590"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tao Shu","raw_affiliation_strings":["Department of Computer Science and Software Engineering, Auburn University, Auburn, AL, USA"],"raw_orcid":"https://orcid.org/0000-0002-0173-2559","affiliations":[{"raw_affiliation_string":"Department of Computer Science and Software Engineering, Auburn University, Auburn, AL, USA","institution_ids":["https://openalex.org/I82497590"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.1421,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.8172014,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":98},"biblio":{"volume":"10","issue":"12","first_page":"10385","last_page":"10399"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9958999752998352,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9872999787330627,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9976661205291748},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6940129399299622},{"id":"https://openalex.org/keywords/population","display_name":"Population","score":0.47710591554641724},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.4430781602859497},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.42530637979507446},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.40045303106307983},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.2846684455871582},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.25492334365844727},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.1410638988018036},{"id":"https://openalex.org/keywords/medicine","display_name":"Medicine","score":0.06628948450088501}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9976661205291748},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6940129399299622},{"id":"https://openalex.org/C2908647359","wikidata":"https://www.wikidata.org/wiki/Q2625603","display_name":"Population","level":2,"score":0.47710591554641724},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.4430781602859497},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.42530637979507446},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.40045303106307983},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2846684455871582},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.25492334365844727},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.1410638988018036},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.06628948450088501},{"id":"https://openalex.org/C99454951","wikidata":"https://www.wikidata.org/wiki/Q932068","display_name":"Environmental health","level":1,"score":0.0},{"id":"https://openalex.org/C201995342","wikidata":"https://www.wikidata.org/wiki/Q682496","display_name":"Systems engineering","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/jiot.2023.3237806","is_oa":false,"landing_page_url":"https://doi.org/10.1109/jiot.2023.3237806","pdf_url":null,"source":{"id":"https://openalex.org/S2480266640","display_name":"IEEE Internet of Things Journal","issn_l":"2327-4662","issn":["2327-4662","2372-2541"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Internet of Things Journal","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5099999904632568,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G158403297","display_name":null,"funder_award_id":"CNS-1837034","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4564694382","display_name":null,"funder_award_id":"CNS-2006998","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":67,"referenced_works":["https://openalex.org/W190008395","https://openalex.org/W2051267297","https://openalex.org/W2061570747","https://openalex.org/W2106313770","https://openalex.org/W2473418344","https://openalex.org/W2535838896","https://openalex.org/W2591882872","https://openalex.org/W2612690371","https://openalex.org/W2783522756","https://openalex.org/W2788816110","https://openalex.org/W2807006176","https://openalex.org/W2810065831","https://openalex.org/W2886444620","https://openalex.org/W2897830718","https://openalex.org/W2900120080","https://openalex.org/W2904190483","https://openalex.org/W2924921501","https://openalex.org/W2930926105","https://openalex.org/W2962835266","https://openalex.org/W2963456518","https://openalex.org/W2963540401","https://openalex.org/W2967119243","https://openalex.org/W2980189717","https://openalex.org/W2990239018","https://openalex.org/W2990595670","https://openalex.org/W3003426262","https://openalex.org/W3016632787","https://openalex.org/W3027749727","https://openalex.org/W3081130510","https://openalex.org/W3084847664","https://openalex.org/W3095273258","https://openalex.org/W3100779497","https://openalex.org/W3103245149","https://openalex.org/W3106047871","https://openalex.org/W3106378891","https://openalex.org/W3140753276","https://openalex.org/W3154373807","https://openalex.org/W3196498627","https://openalex.org/W3209752568","https://openalex.org/W4220883012","https://openalex.org/W4287977550","https://openalex.org/W4288333953","https://openalex.org/W4289276743","https://openalex.org/W4293363185","https://openalex.org/W4297687186","https://openalex.org/W4298067070","https://openalex.org/W4298221930","https://openalex.org/W4308089865","https://openalex.org/W6728757088","https://openalex.org/W6732298257","https://openalex.org/W6743821447","https://openalex.org/W6746720608","https://openalex.org/W6748786018","https://openalex.org/W6752029299","https://openalex.org/W6752600739","https://openalex.org/W6754708698","https://openalex.org/W6755988804","https://openalex.org/W6757172675","https://openalex.org/W6768643302","https://openalex.org/W6769363912","https://openalex.org/W6771533808","https://openalex.org/W6772265129","https://openalex.org/W6773366154","https://openalex.org/W6780438843","https://openalex.org/W6780640148","https://openalex.org/W6784747331","https://openalex.org/W6840756468"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W3015678314","https://openalex.org/W4281902577","https://openalex.org/W4200629851","https://openalex.org/W3009072493","https://openalex.org/W3093748630","https://openalex.org/W3206218040","https://openalex.org/W4387022642","https://openalex.org/W3014697957","https://openalex.org/W4206776436"],"abstract_inverted_index":{"The":[0,73,213],"development":[1],"of":[2,5,12,42,69,97,139,165,208],"the":[3,10,39,49,63,67,70,81,85,95,98,113,130,135,140,159,166,169,177,195,206,209,217],"Internet":[4],"Things":[6],"(IoT)":[7],"combined":[8],"with":[9],"emergence":[11],"federated":[13],"learning":[14],"(FL)":[15],"makes":[16],"it":[17],"possible":[18],"for":[19,158],"mobile":[20],"edge":[21],"computing":[22],"(MEC)":[23],"to":[24,38,53,183,204],"gain":[25],"insight":[26],"from":[27],"physically":[28],"separated":[29],"data":[30,132,197,201],"without":[31,65],"violating":[32],"privacy":[33],"or":[34],"burdening":[35],"communication.":[36],"Due":[37],"distributed":[40],"nature":[41],"MEC":[43],"devices,":[44],"researchers":[45],"have":[46],"uncovered":[47],"that":[48,123,216],"FL":[50,64,91,124],"is":[51,100,180],"vulnerable":[52],"backdoor":[54,74,86,99,115,151,161,172,178,211,219,222],"attacks,":[55],"which":[56,153],"aim":[57],"at":[58,90],"injecting":[59],"a":[60,149,155],"subtask":[61,87],"into":[62],"corrupting":[66],"performance":[68],"main":[71,82],"task.":[72],"attack":[75,116],"achieves":[76,173],"high":[77],"accuracy":[78],"on":[79,144,194],"both":[80,225],"task":[83],"and":[84,137,228],"when":[88,102,231],"injected":[89,103,171],"model":[92,188],"convergence.":[93],"However,":[94],"effectiveness":[96,207],"weak":[101],"in":[104,224,235],"early":[105],"training":[106],"stage.":[107],"In":[108],"this":[109,145],"article,":[110],"we":[111,147],"strengthen":[112],"early-injected":[114],"by":[117,186],"using":[118],"information":[119],"leakage.":[120],"We":[121],"show":[122,215],"convergence":[125],"can":[126],"be":[127,184],"expedited":[128],"if":[129],"client\u2019s":[131],"set":[133,198],"mimics":[134],"distribution":[136],"gradients":[138],"whole":[141],"population.":[142],"Based":[143],"observation,":[146],"propose":[148],"two-phase":[150],"attack,":[152],"includes":[154],"preliminary":[156,167],"phase":[157],"subsequent":[160],"attack.":[162,212],"Taking":[163],"advantage":[164],"phase,":[168],"later":[170],"better":[174],"effectiveness,":[175],"as":[176],"effect":[179],"less":[181],"likely":[182],"diluted":[185],"normal":[187],"updates.":[189],"Extensive":[190],"experiments":[191],"are":[192,234],"conducted":[193],"MNIST":[196],"under":[199],"various":[200],"heterogeneity":[202],"settings":[203],"evaluate":[205],"proposed":[210,218],"results":[214],"outperforms":[220],"existing":[221],"attacks":[223],"success":[226],"rate":[227],"longevity,":[229],"even":[230],"defense":[232],"mechanisms":[233],"place.":[236]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":5}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
