{"id":"https://openalex.org/W4407574643","doi":"https://doi.org/10.1109/tai.2025.3540030","title":"Exploiting Gaussian Noise Variance for Dynamic Differential Poisoning in Federated Learning","display_name":"Exploiting Gaussian Noise Variance for Dynamic Differential Poisoning in Federated Learning","publication_year":2025,"publication_date":"2025-02-14","ids":{"openalex":"https://openalex.org/W4407574643","doi":"https://doi.org/10.1109/tai.2025.3540030"},"language":"en","primary_location":{"id":"doi:10.1109/tai.2025.3540030","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tai.2025.3540030","pdf_url":null,"source":{"id":"https://openalex.org/S4210169448","display_name":"IEEE Transactions on Artificial Intelligence","issn_l":"2691-4581","issn":["2691-4581"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Artificial Intelligence","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5058057730","display_name":"Md Tamjid Hossain","orcid":"https://orcid.org/0000-0002-5674-7918"},"institutions":[{"id":"https://openalex.org/I1335518801","display_name":"Texas A&M University \u2013 San Antonio","ror":"https://ror.org/0084njv03","country_code":"US","type":"education","lineage":["https://openalex.org/I1335518801"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Md Tamjid Hossain","raw_affiliation_strings":["Department of Computational, Engineering, and Mathematical Sciences, Texas A&amp;M University-San Antonio, San Antonio, TX, USA","Department of Computational, Engineering, Mathematical Sciences, Texas A&#x0026;M University-San Antonio, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computational, Engineering, and Mathematical Sciences, Texas A&amp;M University-San Antonio, San Antonio, TX, USA","institution_ids":["https://openalex.org/I1335518801"]},{"raw_affiliation_string":"Department of Computational, Engineering, Mathematical Sciences, Texas A&#x0026;M University-San Antonio, USA","institution_ids":["https://openalex.org/I1335518801"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103008848","display_name":"Shahriar Badsha","orcid":"https://orcid.org/0000-0001-6663-2164"},"institutions":[{"id":"https://openalex.org/I118136607","display_name":"General Motors (United States)","ror":"https://ror.org/05addee68","country_code":"US","type":"company","lineage":["https://openalex.org/I118136607"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shahriar Badsha","raw_affiliation_strings":["General Motors, Warren, MI, USA","General Motors, USA"],"affiliations":[{"raw_affiliation_string":"General Motors, Warren, MI, USA","institution_ids":["https://openalex.org/I118136607"]},{"raw_affiliation_string":"General Motors, USA","institution_ids":["https://openalex.org/I118136607"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060555317","display_name":"Hung Manh La","orcid":"https://orcid.org/0000-0003-2183-2634"},"institutions":[{"id":"https://openalex.org/I134113660","display_name":"University of Nevada, Reno","ror":"https://ror.org/01keh0577","country_code":"US","type":"education","lineage":["https://openalex.org/I134113660"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hung La","raw_affiliation_strings":["Department of Computer Science and Engineering, University of Nevada, Reno, NV, USA","Department of Computer Science and Engineering, University of Nevada, Reno, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, University of Nevada, Reno, NV, USA","institution_ids":["https://openalex.org/I134113660"]},{"raw_affiliation_string":"Department of Computer Science and Engineering, University of Nevada, Reno, USA","institution_ids":["https://openalex.org/I134113660"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5078188257","display_name":"Shafkat Islam","orcid":"https://orcid.org/0000-0002-8524-2855"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shafkat Islam","raw_affiliation_strings":["Department of Computer Science, Purdue University, West Lafayette, IN, USA","Department of Computer Science, Purdue University, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Purdue University, West Lafayette, IN, USA","institution_ids":["https://openalex.org/I219193219"]},{"raw_affiliation_string":"Department of Computer Science, Purdue University, USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5068423418","display_name":"Ibrahim Khalil","orcid":"https://orcid.org/0000-0001-5512-114X"},"institutions":[{"id":"https://openalex.org/I82951845","display_name":"RMIT University","ror":"https://ror.org/04ttjf776","country_code":"AU","type":"education","lineage":["https://openalex.org/I82951845"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Ibrahim Khalil","raw_affiliation_strings":["School of Computing Technologies, RMIT University, Melbourne, VIC, Australia","School of Computing Technologies, RMIT University, Australia"],"affiliations":[{"raw_affiliation_string":"School of Computing Technologies, RMIT University, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I82951845"]},{"raw_affiliation_string":"School of Computing Technologies, RMIT University, Australia","institution_ids":["https://openalex.org/I82951845"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5058057730"],"corresponding_institution_ids":["https://openalex.org/I1335518801"],"apc_list":null,"apc_paid":null,"fwci":24.8488,"has_fulltext":false,"cited_by_count":10,"citation_normalized_percentile":{"value":0.99341601,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"6","issue":"11","first_page":"2922","last_page":"2939"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10320","display_name":"Neural Networks and Applications","score":0.9833999872207642,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10320","display_name":"Neural Networks and Applications","score":0.9833999872207642,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9563000202178955,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12676","display_name":"Machine Learning and ELM","score":0.9474999904632568,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/variance","display_name":"Variance (accounting)","score":0.6676413416862488},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.5932645797729492},{"id":"https://openalex.org/keywords/gaussian-noise","display_name":"Gaussian noise","score":0.5846899151802063},{"id":"https://openalex.org/keywords/differential","display_name":"Differential (mechanical device)","score":0.5428019762039185},{"id":"https://openalex.org/keywords/gaussian","display_name":"Gaussian","score":0.5405082106590271},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5204049348831177},{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.45058673620224},{"id":"https://openalex.org/keywords/econometrics","display_name":"Econometrics","score":0.3259371519088745},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.30150142312049866},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.23055073618888855},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.21942323446273804},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.14416742324829102},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.11848953366279602}],"concepts":[{"id":"https://openalex.org/C196083921","wikidata":"https://www.wikidata.org/wiki/Q7915758","display_name":"Variance (accounting)","level":2,"score":0.6676413416862488},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.5932645797729492},{"id":"https://openalex.org/C4199805","wikidata":"https://www.wikidata.org/wiki/Q2725903","display_name":"Gaussian noise","level":2,"score":0.5846899151802063},{"id":"https://openalex.org/C93226319","wikidata":"https://www.wikidata.org/wiki/Q193137","display_name":"Differential (mechanical device)","level":2,"score":0.5428019762039185},{"id":"https://openalex.org/C163716315","wikidata":"https://www.wikidata.org/wiki/Q901177","display_name":"Gaussian","level":2,"score":0.5405082106590271},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5204049348831177},{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.45058673620224},{"id":"https://openalex.org/C149782125","wikidata":"https://www.wikidata.org/wiki/Q160039","display_name":"Econometrics","level":1,"score":0.3259371519088745},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.30150142312049866},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.23055073618888855},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.21942323446273804},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.14416742324829102},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.11848953366279602},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0},{"id":"https://openalex.org/C121955636","wikidata":"https://www.wikidata.org/wiki/Q4116214","display_name":"Accounting","level":1,"score":0.0},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tai.2025.3540030","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tai.2025.3540030","pdf_url":null,"source":{"id":"https://openalex.org/S4210169448","display_name":"IEEE Transactions on Artificial Intelligence","issn_l":"2691-4581","issn":["2691-4581"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Artificial Intelligence","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W1873763122","https://openalex.org/W2053801139","https://openalex.org/W2125908420","https://openalex.org/W2473418344","https://openalex.org/W2735874745","https://openalex.org/W2962763344","https://openalex.org/W2964881778","https://openalex.org/W2977797911","https://openalex.org/W2981347044","https://openalex.org/W3008145398","https://openalex.org/W3016632787","https://openalex.org/W3023244064","https://openalex.org/W3027749727","https://openalex.org/W3045941597","https://openalex.org/W3084128899","https://openalex.org/W3099106497","https://openalex.org/W3106378891","https://openalex.org/W3181552969","https://openalex.org/W3192324887","https://openalex.org/W3195708967","https://openalex.org/W3200256144","https://openalex.org/W3200331505","https://openalex.org/W3201079611","https://openalex.org/W3203600060","https://openalex.org/W3211470872","https://openalex.org/W4210485920","https://openalex.org/W4213044365","https://openalex.org/W4226249052","https://openalex.org/W4285205054","https://openalex.org/W4285554319","https://openalex.org/W4309618081","https://openalex.org/W4321770320","https://openalex.org/W4386233424","https://openalex.org/W4390938718","https://openalex.org/W4391262294"],"related_works":["https://openalex.org/W3038283795","https://openalex.org/W2604501336","https://openalex.org/W2558166297","https://openalex.org/W2734500670","https://openalex.org/W2315671126","https://openalex.org/W2970364557","https://openalex.org/W2900759811","https://openalex.org/W1970319972","https://openalex.org/W2953254336","https://openalex.org/W2112030392"],"abstract_inverted_index":{"The":[0,151],"emerging":[1],"field":[2],"of":[3,49,94,161,176,210],"federated":[4,108],"learning":[5,109],"(FL)":[6],"is":[7],"reshaping":[8],"privacy-preserved":[9],"data":[10,35],"analysis":[11],"and":[12,27,33,166,193,219],"decision":[13],"support":[14],"mechanisms":[15],"within":[16,90],"several":[17],"critical":[18],"infrastructure":[19],"(CIs)":[20],"sectors":[21],"such":[22],"as":[23,238],"autonomous":[24],"transportation,":[25],"energy,":[26],"healthcare.":[28],"To":[29],"shield":[30],"sensitive":[31],"operational":[32],"client":[34],"from":[36],"privacy":[37,40],"attackers,":[38],"differential":[39,71],"(DP)":[41],"has":[42,153],"been":[43],"proposed":[44],"to":[45,86,139,189,261],"integrate":[46],"on":[47],"top":[48],"the":[50,79,91,95,105,145,158,162,171,177,199],"FL":[51,164],"process.":[52],"Yet,":[53],"we":[54,116,226],"identify":[55],"that":[56,255],"integrating":[57],"Gaussian":[58,82],"noise":[59,83,93,143],"for":[60,70],"achieving":[61],"DP":[62,231],"guarantee":[63],"can":[64],"inadvertently":[65],"create":[66],"a":[67,97,118,154,228],"new":[68],"vector":[69],"model":[72,121,149,165],"poisoning":[73,122],"attacks":[74,204],"in":[75,81,104],"FL.":[76],"Moreover,":[77],"exploiting":[78],"variance":[80],"enables":[84,137],"attackers":[85,138],"camouflage":[87],"their":[88],"activities":[89],"legitimate":[92],"system,":[96],"significant":[98],"yet":[99],"largely":[100],"overlooked":[101],"security":[102],"flaw":[103],"differentially":[106,146],"private":[107,147],"(DPFL)":[110],"framework.":[111],"Addressing":[112],"this":[113,256],"research":[114],"gap,":[115],"introduce":[117,227],"novel":[119],"adaptive":[120],"through":[123],"episodic":[124],"loss":[125],"memorization":[126],"(<inline-formula":[127],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[128,132,179,183,212,216,221,236,244,248],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[129,180,213,217,222,245],"notation=\"LaTeX\">$\\alpha$</tex-math></inline-formula>":[130,181,246],"<monospace":[131,182,235,247],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">-MPELM</monospace>)":[133],"technique.":[134],"This":[135],"method":[136],"dynamically":[140],"inject":[141],"adversarial":[142],"into":[144],"local":[148],"parameters.":[150],"technique":[152],"dual":[155],"purpose:":[156],"hindering":[157],"optimal":[159,263],"convergence":[160],"global":[163],"simultaneously":[167],"avoiding":[168],"detection":[169,196],"by":[170],"anomaly":[172,195],"detectors.":[173],"Our":[174,251],"evaluation":[175],"<inline-formula":[178,211,215,220,243],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">-MPELM</monospace>":[184,249],"attack":[185,207],"reveals":[186],"its":[187],"capability":[188],"deceive":[190],"Norm,":[191],"Accuracy,":[192],"Mix":[194],"algorithms,":[197],"surpassing":[198],"conventional":[200],"random":[201],"malicious":[202],"device":[203],"(RMD)":[205],"with":[206],"accuracy":[208],"improvements":[209],"notation=\"LaTeX\">$6.8$</tex-math></inline-formula>,":[214],"notation=\"LaTeX\">$12.6$</tex-math></inline-formula>,":[218],"notation=\"LaTeX\">$13.8$</tex-math></inline-formula>%,":[223],"respectively.":[224],"Additionally,":[225],"reinforcement":[229],"learning-based":[230],"level":[232],"selection":[233],"strategy,":[234],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">rDP</monospace>,":[237],"an":[239,262],"effective":[240],"countermeasure":[241],"against":[242],"attack.":[250],"empirical":[252],"findings":[253],"confirm":[254],"defense":[257],"mechanism":[258],"steadily":[259],"progresses":[260],"policy.":[264]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":9}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
