{"id":"https://openalex.org/W4384948739","doi":"https://doi.org/10.1109/sp46215.2023.10179336","title":"FedRecover: Recovering from Poisoning Attacks in Federated Learning using Historical Information","display_name":"FedRecover: Recovering from Poisoning Attacks in Federated Learning using Historical Information","publication_year":2023,"publication_date":"2023-05-01","ids":{"openalex":"https://openalex.org/W4384948739","doi":"https://doi.org/10.1109/sp46215.2023.10179336"},"language":"en","primary_location":{"id":"doi:10.1109/sp46215.2023.10179336","is_oa":false,"landing_page_url":"https://doi.org/10.1109/sp46215.2023.10179336","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE Symposium on Security and Privacy (SP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5011041681","display_name":"Xiaoyu Cao","orcid":"https://orcid.org/0000-0002-6740-4937"},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Xiaoyu Cao","raw_affiliation_strings":["Duke University"],"affiliations":[{"raw_affiliation_string":"Duke University","institution_ids":["https://openalex.org/I170897317"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5087464080","display_name":"Jinyuan Jia","orcid":"https://orcid.org/0000-0002-7772-4766"},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jinyuan Jia","raw_affiliation_strings":["Duke University"],"affiliations":[{"raw_affiliation_string":"Duke University","institution_ids":["https://openalex.org/I170897317"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063733770","display_name":"Zaixi Zhang","orcid":"https://orcid.org/0000-0002-0380-6558"},"institutions":[{"id":"https://openalex.org/I126520041","display_name":"University of Science and Technology of China","ror":"https://ror.org/04c4dkn09","country_code":"CN","type":"education","lineage":["https://openalex.org/I126520041","https://openalex.org/I19820366"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zaixi Zhang","raw_affiliation_strings":["University of Science and Technology of China"],"affiliations":[{"raw_affiliation_string":"University of Science and Technology of China","institution_ids":["https://openalex.org/I126520041"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5009102659","display_name":"Neil Zhenqiang Gong","orcid":"https://orcid.org/0000-0002-9900-9309"},"institutions":[{"id":"https://openalex.org/I170897317","display_name":"Duke University","ror":"https://ror.org/00py81415","country_code":"US","type":"education","lineage":["https://openalex.org/I170897317"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Neil Zhenqiang Gong","raw_affiliation_strings":["Duke University"],"affiliations":[{"raw_affiliation_string":"Duke University","institution_ids":["https://openalex.org/I170897317"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5011041681"],"corresponding_institution_ids":["https://openalex.org/I170897317"],"apc_list":null,"apc_paid":null,"fwci":16.1734,"has_fulltext":false,"cited_by_count":92,"citation_normalized_percentile":{"value":0.99408609,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"1366","last_page":"1383"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7162930369377136},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5526257753372192}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7162930369377136},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5526257753372192}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/sp46215.2023.10179336","is_oa":false,"landing_page_url":"https://doi.org/10.1109/sp46215.2023.10179336","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE Symposium on Security and Privacy (SP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":49,"referenced_works":["https://openalex.org/W134960717","https://openalex.org/W1488996941","https://openalex.org/W1491622225","https://openalex.org/W1507925093","https://openalex.org/W1520914943","https://openalex.org/W2000359198","https://openalex.org/W2016707451","https://openalex.org/W2101890615","https://openalex.org/W2535838896","https://openalex.org/W2559840118","https://openalex.org/W2750384547","https://openalex.org/W2752689052","https://openalex.org/W2788816110","https://openalex.org/W2789911054","https://openalex.org/W2801607016","https://openalex.org/W2810065831","https://openalex.org/W2903356604","https://openalex.org/W2934843808","https://openalex.org/W2963539945","https://openalex.org/W2966689772","https://openalex.org/W2986868741","https://openalex.org/W3003426262","https://openalex.org/W3035617937","https://openalex.org/W3127520698","https://openalex.org/W3138153888","https://openalex.org/W3138597937","https://openalex.org/W3154155772","https://openalex.org/W4229455429","https://openalex.org/W4236796448","https://openalex.org/W4252654521","https://openalex.org/W4288578176","https://openalex.org/W4290948380","https://openalex.org/W4292084264","https://openalex.org/W4299301436","https://openalex.org/W4318619660","https://openalex.org/W6605479355","https://openalex.org/W6629379589","https://openalex.org/W6728757088","https://openalex.org/W6743688258","https://openalex.org/W6743821447","https://openalex.org/W6748786018","https://openalex.org/W6748805329","https://openalex.org/W6752600739","https://openalex.org/W6756840679","https://openalex.org/W6758201434","https://openalex.org/W6770634426","https://openalex.org/W6773366154","https://openalex.org/W6779605666","https://openalex.org/W7056673059"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"Federated":[0],"learning":[1,42,297],"is":[2,58,81,155,275,313],"vulnerable":[3],"to":[4,20,64,82,169,233,257,277],"poisoning":[5,35,70,140,305],"attacks":[6,71,141,306],"in":[7,194,220,250],"which":[8,112,251],"malicious":[9,17,32,46,74,86,205],"clients":[10,33,47,75,87,118,168,206,256],"poison":[11],"the":[12,21,36,66,73,84,97,150,157,160,167,175,180,183,187,199,204,210,213,252,255,269,279],"global":[13,37,67,92,137,188,201,238,270],"model":[14,18,38,68,93,138,162,192,202,218,239,263,271],"via":[15,39],"sending":[16],"updates":[19,163,193],"server.":[22],"Existing":[23],"defenses":[24],"focus":[25],"on":[26,292],"preventing":[27],"a":[28,51,90,106,130,143,216,235],"small":[29,144],"number":[30,53],"of":[31,54,165],"from":[34,69,94,139],"robust":[40],"federated":[41,296],"methods":[43],"and":[44,88,109,122,146,171,190,246,259,303,316],"detecting":[45],"when":[48,197],"there":[49],"are":[50,76,207],"large":[52,107],"them.":[55],"However,":[56,100],"it":[57],"still":[59],"an":[60,135],"open":[61],"challenge":[62],"how":[63],"recover":[65,134,234],"after":[72],"detected.":[77,208],"A":[78],"naive":[79],"solution":[80],"remove":[83],"detected":[85],"train":[89],"new":[91],"scratch":[95],"using":[96,223,240],"remaining":[98],"clients.":[99,151],"such":[101,119],"train-from-scratch":[102,285],"recovery":[103,176,211],"method":[104,131],"incurs":[105],"computation":[108,145],"communication":[110,147],"cost,":[111],"may":[113],"be":[114],"intolerable":[115],"for":[116,149],"resource-constrained":[117],"as":[120,281,299,301],"smartphones":[121],"IoT":[123],"devices.In":[124],"this":[125],"work,":[126],"we":[127,229,266],"propose":[128],"FedRecover,":[129],"that":[132,156,268,282,311],"can":[133],"accurate":[136,237,315],"with":[142],"cost":[148],"Our":[152],"key":[153],"idea":[154],"server":[158,181,214,253],"estimates":[159,215],"clients\u2019":[161,191],"instead":[164],"asking":[166],"compute":[170,258],"communicate":[172,260],"them":[173],"during":[174],"process.":[177],"In":[178],"particular,":[179],"stores":[182],"historical":[184,226],"information,":[185],"including":[186],"models":[189],"each":[195,221],"round,":[196],"training":[198],"poisoned":[200],"before":[203],"During":[209],"process,":[212],"client\u2019s":[217],"update":[219],"round":[222],"its":[224],"stored":[225],"information.":[227],"Moreover,":[228],"further":[230],"optimize":[231],"FedRecover":[232,274,312],"more":[236],"warm-up,":[241],"periodic":[242],"correction,":[243],"abnormality":[244],"fixing,":[245],"final":[247],"tuning":[248],"strategies,":[249],"asks":[254],"their":[261],"exact":[262],"updates.":[264],"Theoretically,":[265],"show":[267],"recovered":[272,283],"by":[273,284],"close":[276],"or":[278],"same":[280],"under":[286],"some":[287],"assumptions.":[288],"Empirically,":[289],"our":[290],"evaluation":[291],"four":[293],"datasets,":[294],"three":[295],"methods,":[298],"well":[300],"untargeted":[302],"targeted":[304],"(e.g.,":[307],"backdoor":[308],"attacks)":[309],"shows":[310],"both":[314],"efficient.":[317]},"counts_by_year":[{"year":2026,"cited_by_count":7},{"year":2025,"cited_by_count":44},{"year":2024,"cited_by_count":31},{"year":2023,"cited_by_count":10}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
