{"id":"https://openalex.org/W4394595203","doi":"https://doi.org/10.1109/tai.2024.3384938","title":"IOTM: Iterative Optimization Trigger Method\u2014A Runtime Data-Free Backdoor Attacks on Deep Neural Networks","display_name":"IOTM: Iterative Optimization Trigger Method\u2014A Runtime Data-Free Backdoor Attacks on Deep Neural Networks","publication_year":2024,"publication_date":"2024-04-09","ids":{"openalex":"https://openalex.org/W4394595203","doi":"https://doi.org/10.1109/tai.2024.3384938"},"language":"en","primary_location":{"id":"doi:10.1109/tai.2024.3384938","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tai.2024.3384938","pdf_url":null,"source":{"id":"https://openalex.org/S4210169448","display_name":"IEEE Transactions on Artificial Intelligence","issn_l":"2691-4581","issn":["2691-4581"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Artificial Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5001642577","display_name":"Iram Arshad","orcid":"https://orcid.org/0000-0003-0755-5896"},"institutions":[{"id":"https://openalex.org/I4210095504","display_name":"Shannon Applied Biotechnology Centre","ror":"https://ror.org/00rve9x39","country_code":"IE","type":"facility","lineage":["https://openalex.org/I4210095504"]}],"countries":["IE"],"is_corresponding":true,"raw_author_name":"Iram Arshad","raw_affiliation_strings":["Technological University of Shannon, Midlands Midwest, Ireland"],"affiliations":[{"raw_affiliation_string":"Technological University of Shannon, Midlands Midwest, Ireland","institution_ids":["https://openalex.org/I4210095504"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012786887","display_name":"Saeed Hamood Alsamhi","orcid":"https://orcid.org/0000-0003-2857-6979"},"institutions":[{"id":"https://openalex.org/I78137547","display_name":"Ibb University","ror":"https://ror.org/00fhcxc56","country_code":"YE","type":"education","lineage":["https://openalex.org/I78137547"]},{"id":"https://openalex.org/I188760350","display_name":"Ollscoil na Gaillimhe \u2013 University of Galway","ror":"https://ror.org/03bea9k73","country_code":"IE","type":"education","lineage":["https://openalex.org/I188760350"]}],"countries":["IE","YE"],"is_corresponding":false,"raw_author_name":"Saeed Hamood Alsamhi","raw_affiliation_strings":["Insight Centre for Data Analytics, University of Galway, Galway, Ireland","Faculty of Engineering, IBB University, Ibb, Yemen"],"affiliations":[{"raw_affiliation_string":"Insight Centre for Data Analytics, University of Galway, Galway, Ireland","institution_ids":["https://openalex.org/I188760350"]},{"raw_affiliation_string":"Faculty of Engineering, IBB University, Ibb, Yemen","institution_ids":["https://openalex.org/I78137547"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029716141","display_name":"Yuansong Qiao","orcid":"https://orcid.org/0000-0002-1543-1589"},"institutions":[{"id":"https://openalex.org/I4210095504","display_name":"Shannon Applied Biotechnology Centre","ror":"https://ror.org/00rve9x39","country_code":"IE","type":"facility","lineage":["https://openalex.org/I4210095504"]}],"countries":["IE"],"is_corresponding":false,"raw_author_name":"Yuansong Qiao","raw_affiliation_strings":["Technological University of Shannon, Midlands Midwest, Ireland"],"affiliations":[{"raw_affiliation_string":"Technological University of Shannon, Midlands Midwest, Ireland","institution_ids":["https://openalex.org/I4210095504"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100371443","display_name":"Brian Lee","orcid":"https://orcid.org/0000-0002-8475-4074"},"institutions":[{"id":"https://openalex.org/I4210095504","display_name":"Shannon Applied Biotechnology Centre","ror":"https://ror.org/00rve9x39","country_code":"IE","type":"facility","lineage":["https://openalex.org/I4210095504"]}],"countries":["IE"],"is_corresponding":false,"raw_author_name":"Brian Lee","raw_affiliation_strings":["Technological University of Shannon, Midlands Midwest, Ireland"],"affiliations":[{"raw_affiliation_string":"Technological University of Shannon, Midlands Midwest, Ireland","institution_ids":["https://openalex.org/I4210095504"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5017865903","display_name":"Yuhang Ye","orcid":"https://orcid.org/0000-0003-4608-1451"},"institutions":[{"id":"https://openalex.org/I4210095504","display_name":"Shannon Applied Biotechnology Centre","ror":"https://ror.org/00rve9x39","country_code":"IE","type":"facility","lineage":["https://openalex.org/I4210095504"]}],"countries":["IE"],"is_corresponding":false,"raw_author_name":"Yuhang Ye","raw_affiliation_strings":["Technological University of Shannon, Midlands Midwest, Ireland"],"affiliations":[{"raw_affiliation_string":"Technological University of Shannon, Midlands Midwest, Ireland","institution_ids":["https://openalex.org/I4210095504"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5001642577"],"corresponding_institution_ids":["https://openalex.org/I4210095504"],"apc_list":null,"apc_paid":null,"fwci":2.1757,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.88578632,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":"5","issue":"9","first_page":"4562","last_page":"4573"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9968000054359436,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9764963984489441},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6788995265960693},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5751774311065674},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.525533139705658},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.35666415095329285},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.33685237169265747},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.20780250430107117}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9764963984489441},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6788995265960693},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5751774311065674},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.525533139705658},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.35666415095329285},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.33685237169265747},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.20780250430107117}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tai.2024.3384938","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tai.2024.3384938","pdf_url":null,"source":{"id":"https://openalex.org/S4210169448","display_name":"IEEE Transactions on Artificial Intelligence","issn_l":"2691-4581","issn":["2691-4581"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Artificial Intelligence","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G8222451695","display_name":null,"funder_award_id":"SFI/12/RC/2289 P2","funder_id":"https://openalex.org/F4320320847","funder_display_name":"Science Foundation Ireland"}],"funders":[{"id":"https://openalex.org/F4320320847","display_name":"Science Foundation Ireland","ror":"https://ror.org/0271asj38"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":47,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W1963856035","https://openalex.org/W2108598243","https://openalex.org/W2194775991","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2963030525","https://openalex.org/W2983219069","https://openalex.org/W2985525390","https://openalex.org/W2986013765","https://openalex.org/W2996800219","https://openalex.org/W3015724698","https://openalex.org/W3042368254","https://openalex.org/W3044223678","https://openalex.org/W3107337211","https://openalex.org/W3114686421","https://openalex.org/W3150962209","https://openalex.org/W3173843816","https://openalex.org/W4205468507","https://openalex.org/W4214564822","https://openalex.org/W4230172274","https://openalex.org/W4284898156","https://openalex.org/W4287998266","https://openalex.org/W4289300166","https://openalex.org/W4293846201","https://openalex.org/W4312290288","https://openalex.org/W4313192591","https://openalex.org/W4313227190","https://openalex.org/W4321193508","https://openalex.org/W4365807860","https://openalex.org/W4385938208","https://openalex.org/W4386159930","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6681673350","https://openalex.org/W6739868092","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6750462152","https://openalex.org/W6756074407","https://openalex.org/W6770897281","https://openalex.org/W6775941530","https://openalex.org/W6779272815","https://openalex.org/W6781420246","https://openalex.org/W6785996230"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W3140988292","https://openalex.org/W4317672133","https://openalex.org/W4386185023"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"are":[3,38],"susceptible":[4],"to":[5,29,179],"various":[6],"backdoor":[7,58,67],"attacks,":[8,13],"such":[9],"as":[10],"training":[11],"time":[12],"where":[14],"the":[15,27,31,45,51,79,90,93,122,127,133,147,163,184,197,205,209,224,228],"attacker":[16],"can":[17],"inject":[18],"a":[19,23,54,60,115],"trigger":[20,86,123,192],"pattern":[21],"into":[22],"small":[24],"portion":[25],"of":[26,53,57,92,135],"dataset":[28],"control":[30],"model\u2019s":[32,46,128],"predictions":[33],"at":[34],"runtime.":[35],"Backdoor":[36],"attacks":[37,68],"dangerous":[39],"because":[40],"they":[41],"do":[42],"not":[43],"degrade":[44],"performance.":[47],"This":[48],"paper":[49],"explores":[50],"feasibility":[52],"new":[55],"type":[56],"attack,":[59],"<italic":[61],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[62],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">data-free</i>":[63],"backdoor.":[64],"Unlike":[65],"traditional":[66],"that":[69],"require":[70],"poisoning":[71],"data":[72],"and":[73,95,113,144,191,213,216,232,237],"injection":[74],"during":[75],"training,":[76],"our":[77],"approach,":[78],"Iterative":[80],"Optimization":[81],"Trigger":[82,110],"Method":[83],"(IOTM),":[84],"enables":[85],"generation":[87],"without":[88,217,233],"compromising":[89],"integrity":[91],"models":[94,141],"datasets.":[96],"We":[97,130,200],"propose":[98],"an":[99,103,108,176],"attack":[100],"based":[101],"on":[102,194],"IOTM":[104,136],"technique,":[105],"guided":[106],"by":[107,207],"Adaptive":[109],"Generator":[111],"(ATG)":[112],"employing":[114],"custom":[116],"objective":[117],"function.":[118],"ATG":[119],"dynamically":[120],"refines":[121],"using":[124,146,196],"feedback":[125],"from":[126],"predictions.":[129],"empirically":[131],"evaluated":[132],"effectiveness":[134],"with":[137,215,223,230],"three":[138],"deep":[139],"learning":[140],"(CNN,":[142],"VGG16,":[143],"ResNet18)":[145],"CIFAR10":[148],"dataset.":[149,199],"The":[150,219],"achieved":[151],"Runtime-Attack":[152],"Success":[153],"Rate":[154],"(R-ASR)":[155],"varies":[156],"across":[157],"different":[158],"classes.":[159],"For":[160],"some":[161],"classes,":[162],"R-ASR":[164,195,206,220],"reached":[165,171,221,235],"100%,":[166],"whereas,":[167],"for":[168],"others,":[169],"it":[170],"62%.":[172],"Furthermore,":[173],"we":[174],"conducted":[175],"ablation":[177],"study":[178],"investigate":[180],"critical":[181],"factors":[182],"in":[183,204],"runtime":[185],"backdoor,":[186],"including":[187,211],"optimizer,":[188,210,226],"weight,":[189],"\u201cREG\u201d,":[190],"visibility":[193],"CIFAR100":[198],"observed":[201],"significant":[202],"variations":[203],"changing":[208],"Adam":[212,225],"SGD,":[214],"momentum.":[218],"81.25%":[222],"whereas":[227],"SGD":[229],"momentum":[231],"results":[234],"46.87%":[236],"3.12%,":[238],"respectively.":[239]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
