{"id":"https://openalex.org/W4404056941","doi":"https://doi.org/10.1109/tcss.2024.3482723","title":"Backdoor Attack and Defense on Deep Learning: A Survey","display_name":"Backdoor Attack and Defense on Deep Learning: A Survey","publication_year":2024,"publication_date":"2024-11-05","ids":{"openalex":"https://openalex.org/W4404056941","doi":"https://doi.org/10.1109/tcss.2024.3482723"},"language":"en","primary_location":{"id":"doi:10.1109/tcss.2024.3482723","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcss.2024.3482723","pdf_url":null,"source":{"id":"https://openalex.org/S2490693980","display_name":"IEEE Transactions on Computational Social Systems","issn_l":"2329-924X","issn":["2329-924X","2373-7476"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Computational Social Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Yang Bai","orcid":"https://orcid.org/0000-0002-2475-4232"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yang Bai","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0002-2475-4232","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053775539","display_name":"Gaojie Xing","orcid":"https://orcid.org/0009-0006-7040-8919"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Gaojie Xing","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0006-7040-8919","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Hongyan Wu","orcid":"https://orcid.org/0009-0002-0115-9753"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hongyan Wu","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0002-0115-9753","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Zhihong Rao","orcid":"https://orcid.org/0009-0002-0140-8780"},"institutions":[{"id":"https://openalex.org/I2800372957","display_name":"China Electronics Technology Group Corporation","ror":"https://ror.org/0098hst83","country_code":"CN","type":"company","lineage":["https://openalex.org/I2800372957"]},{"id":"https://openalex.org/I4210110458","display_name":"Institute of Electronics","ror":"https://ror.org/01z143507","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210110458"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhihong Rao","raw_affiliation_strings":["30th Institute of Electronics Technology Group, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0002-0140-8780","affiliations":[{"raw_affiliation_string":"30th Institute of Electronics Technology Group, Chengdu, China","institution_ids":["https://openalex.org/I2800372957","https://openalex.org/I4210110458"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103221383","display_name":"Chuan Ma","orcid":"https://orcid.org/0000-0001-6198-9498"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chuan Ma","raw_affiliation_strings":["School of Computer Science, Chongqing University, Chongqing, China"],"raw_orcid":"https://orcid.org/0000-0001-6198-9498","affiliations":[{"raw_affiliation_string":"School of Computer Science, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100604225","display_name":"Shiping Wang","orcid":"https://orcid.org/0000-0001-5195-9682"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shiping Wang","raw_affiliation_strings":["College of Computer and Data Science and the Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou University, Fuzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-5195-9682","affiliations":[{"raw_affiliation_string":"College of Computer and Data Science and the Fujian Provincial Key Laboratory of Network Computing and Intelligent Information Processing, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100442739","display_name":"Xiaolei Liu","orcid":"https://orcid.org/0000-0001-8510-4025"},"institutions":[{"id":"https://openalex.org/I2801345734","display_name":"China Academy of Engineering Physics","ror":"https://ror.org/039vqpp67","country_code":"CN","type":"facility","lineage":["https://openalex.org/I2801345734"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaolei Liu","raw_affiliation_strings":["Institute of Computer Application, China Academy of Engineering Physics, Mianyang, China"],"raw_orcid":"https://orcid.org/0000-0001-8510-4025","affiliations":[{"raw_affiliation_string":"Institute of Computer Application, China Academy of Engineering Physics, Mianyang, China","institution_ids":["https://openalex.org/I2801345734"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Yimin Zhou","orcid":"https://orcid.org/0000-0001-8692-9635"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yimin Zhou","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0000-0001-8692-9635","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Jiajia Tang","orcid":"https://orcid.org/0009-0007-5321-5258"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiajia Tang","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0007-5321-5258","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Kaijun Huang","orcid":"https://orcid.org/0009-0003-7368-8862"},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kaijun Huang","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0003-7368-8862","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5000846172","display_name":"Jia-Le Kang","orcid":null},"institutions":[{"id":"https://openalex.org/I24201400","display_name":"Chengdu University of Information Technology","ror":"https://ror.org/01yxwrh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I24201400"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiale Kang","raw_affiliation_strings":["School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China"],"raw_orcid":"https://orcid.org/0009-0007-9533-8539","affiliations":[{"raw_affiliation_string":"School of Cybersecurity (Xin Gu Industrial College), and SUGON Industrial Control and Security Center, Chengdu University of Information Technology, Chengdu, China","institution_ids":["https://openalex.org/I24201400"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":11,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":4.582,"has_fulltext":false,"cited_by_count":15,"citation_normalized_percentile":{"value":0.95399741,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"12","issue":"1","first_page":"404","last_page":"434"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9987000226974487,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9702000021934509,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9546999931335449,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9701370000839233},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5962462425231934},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.4942181408405304},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3488132059574127}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9701370000839233},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5962462425231934},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.4942181408405304},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3488132059574127}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tcss.2024.3482723","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcss.2024.3482723","pdf_url":null,"source":{"id":"https://openalex.org/S2490693980","display_name":"IEEE Transactions on Computational Social Systems","issn_l":"2329-924X","issn":["2329-924X","2373-7476"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Computational Social Systems","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":206,"referenced_works":["https://openalex.org/W2115579991","https://openalex.org/W2176950688","https://openalex.org/W2194775991","https://openalex.org/W2473555522","https://openalex.org/W2595653137","https://openalex.org/W2618099328","https://openalex.org/W2749604329","https://openalex.org/W2753783305","https://openalex.org/W2797558164","https://openalex.org/W2807363941","https://openalex.org/W2909693640","https://openalex.org/W2919358988","https://openalex.org/W2934843808","https://openalex.org/W2941584439","https://openalex.org/W2963748066","https://openalex.org/W2966104011","https://openalex.org/W2966689772","https://openalex.org/W2970335439","https://openalex.org/W2971661634","https://openalex.org/W2973217491","https://openalex.org/W2985913519","https://openalex.org/W2986013765","https://openalex.org/W2990270730","https://openalex.org/W2990595670","https://openalex.org/W2993843842","https://openalex.org/W2996800219","https://openalex.org/W2999321020","https://openalex.org/W3010216907","https://openalex.org/W3019166713","https://openalex.org/W3034258347","https://openalex.org/W3034414373","https://openalex.org/W3035367371","https://openalex.org/W3041133507","https://openalex.org/W3042368254","https://openalex.org/W3083185154","https://openalex.org/W3091577071","https://openalex.org/W3092005433","https://openalex.org/W3096592874","https://openalex.org/W3099729825","https://openalex.org/W3100789280","https://openalex.org/W3106646114","https://openalex.org/W3107337211","https://openalex.org/W3108535146","https://openalex.org/W3115279145","https://openalex.org/W3127520698","https://openalex.org/W3127616799","https://openalex.org/W3128663834","https://openalex.org/W3132455321","https://openalex.org/W3136021864","https://openalex.org/W3152758407","https://openalex.org/W3155871095","https://openalex.org/W3158240034","https://openalex.org/W3158487140","https://openalex.org/W3163083600","https://openalex.org/W3163966458","https://openalex.org/W3164573547","https://openalex.org/W3167002899","https://openalex.org/W3175215793","https://openalex.org/W3176270593","https://openalex.org/W3189812816","https://openalex.org/W3190075653","https://openalex.org/W3192036897","https://openalex.org/W3204548896","https://openalex.org/W3204619801","https://openalex.org/W3205084690","https://openalex.org/W3205191765","https://openalex.org/W3206218040","https://openalex.org/W3212158867","https://openalex.org/W3212213895","https://openalex.org/W3213508244","https://openalex.org/W3215171287","https://openalex.org/W4205710429","https://openalex.org/W4214563788","https://openalex.org/W4214564822","https://openalex.org/W4214680449","https://openalex.org/W4221129260","https://openalex.org/W4230172274","https://openalex.org/W4239517406","https://openalex.org/W4281645443","https://openalex.org/W4294982857","https://openalex.org/W4296437512","https://openalex.org/W4304945145","https://openalex.org/W4311852625","https://openalex.org/W4312280786","https://openalex.org/W4312569687","https://openalex.org/W4312877401","https://openalex.org/W4313192591","https://openalex.org/W4319793479","https://openalex.org/W4322760473","https://openalex.org/W4323066547","https://openalex.org/W4323345707","https://openalex.org/W4323655037","https://openalex.org/W4324007135","https://openalex.org/W4324007138","https://openalex.org/W4328028903","https://openalex.org/W4361213317","https://openalex.org/W4361223432","https://openalex.org/W4362471971","https://openalex.org/W4362714395","https://openalex.org/W4365807860","https://openalex.org/W4367146727","https://openalex.org/W4375869395","https://openalex.org/W4382051836","https://openalex.org/W4384642512","https://openalex.org/W4384915898","https://openalex.org/W4385245566","https://openalex.org/W4385301073","https://openalex.org/W4385327089","https://openalex.org/W4385679845","https://openalex.org/W4386065356","https://openalex.org/W4386065388","https://openalex.org/W4386066003","https://openalex.org/W4386066154","https://openalex.org/W4386072159","https://openalex.org/W4386072220","https://openalex.org/W4386075973","https://openalex.org/W4386083143","https://openalex.org/W4386270217","https://openalex.org/W4386495194","https://openalex.org/W4386702911","https://openalex.org/W4387212527","https://openalex.org/W4387233540","https://openalex.org/W4388017405","https://openalex.org/W4390658722","https://openalex.org/W4390872151","https://openalex.org/W4391529040","https://openalex.org/W4393146551","https://openalex.org/W4393147367","https://openalex.org/W4393147478","https://openalex.org/W4393154589","https://openalex.org/W4393154709","https://openalex.org/W4393156872","https://openalex.org/W4393158745","https://openalex.org/W4393158822","https://openalex.org/W4393160691","https://openalex.org/W4393160968","https://openalex.org/W4393161237","https://openalex.org/W4398757423","https://openalex.org/W4401042536","https://openalex.org/W4401042907","https://openalex.org/W4401043416","https://openalex.org/W4402264202","https://openalex.org/W4402264217","https://openalex.org/W4402264407","https://openalex.org/W4402754214","https://openalex.org/W4402916566","https://openalex.org/W4404782283","https://openalex.org/W6637373629","https://openalex.org/W6728757088","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6752600739","https://openalex.org/W6754587887","https://openalex.org/W6755207826","https://openalex.org/W6756074407","https://openalex.org/W6756333562","https://openalex.org/W6756840679","https://openalex.org/W6767183785","https://openalex.org/W6770046844","https://openalex.org/W6770286897","https://openalex.org/W6770897281","https://openalex.org/W6771533808","https://openalex.org/W6774126473","https://openalex.org/W6775678023","https://openalex.org/W6779739866","https://openalex.org/W6780640148","https://openalex.org/W6781420246","https://openalex.org/W6784558051","https://openalex.org/W6784747331","https://openalex.org/W6786651539","https://openalex.org/W6788654946","https://openalex.org/W6788876066","https://openalex.org/W6789325072","https://openalex.org/W6791576469","https://openalex.org/W6791723494","https://openalex.org/W6799246147","https://openalex.org/W6799444384","https://openalex.org/W6803053407","https://openalex.org/W6803329705","https://openalex.org/W6803620494","https://openalex.org/W6809627489","https://openalex.org/W6809890637","https://openalex.org/W6838900714","https://openalex.org/W6838956875","https://openalex.org/W6839252630","https://openalex.org/W6850028645","https://openalex.org/W6850141011","https://openalex.org/W6850353503","https://openalex.org/W6850771501","https://openalex.org/W6851888872","https://openalex.org/W6853525784","https://openalex.org/W6853669195","https://openalex.org/W6855892658","https://openalex.org/W6860616875","https://openalex.org/W6861292197","https://openalex.org/W6861479177","https://openalex.org/W6861812825","https://openalex.org/W6862463349","https://openalex.org/W6863208875","https://openalex.org/W6863939801","https://openalex.org/W6866738067","https://openalex.org/W6869205968","https://openalex.org/W6869463478","https://openalex.org/W6869711746","https://openalex.org/W6872569777","https://openalex.org/W7030604027"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4401407399"],"abstract_inverted_index":{"Deep":[0],"learning,":[1,8],"as":[2],"an":[3],"important":[4],"branch":[5],"of":[6,52,81,112,177],"machine":[7],"has":[9,100],"been":[10],"widely":[11,126],"applied":[12],"in":[13,86,89,134,154,203],"computer":[14],"vision,":[15],"natural":[16],"language":[17],"processing,":[18],"speech":[19],"recognition,":[20],"and":[21,116,132,137,142,180,192,200],"more.":[22],"However,":[23],"recent":[24],"studies":[25],"have":[26,107,124,138,150],"revealed":[27],"that":[28,49,185],"deep":[29,45,121,204],"learning":[30,46],"systems":[31],"are":[32],"vulnerable":[33],"to":[34],"backdoor":[35,42,63,70,98,113,135,178,198],"attacks.":[36],"Backdoor":[37],"attackers":[38],"inject":[39],"a":[40,69,109,174],"hidden":[41,62],"into":[43,196],"the":[44,50,53,61,90,197],"model,":[47],"such":[48],"predictions":[51],"infected":[54],"model":[55,128],"will":[56,188],"be":[57],"maliciously":[58],"changed":[59],"if":[60],"is":[64],"activated":[65],"by":[66],"input":[67],"with":[68],"trigger":[71],"while":[72],"behaving":[73],"normally":[74],"on":[75,95,120,145,159],"any":[76],"benign":[77],"sample.":[78],"This":[79],"kind":[80],"attack":[82,199],"can":[83,172],"potentially":[84],"result":[85],"severe":[87],"consequences":[88],"real":[91],"world.":[92],"Therefore,":[93],"research":[94,136,166,195],"defending":[96],"against":[97],"attacks":[99,179],"emerged":[101],"rapidly.":[102],"In":[103],"this":[104,169,186],"article,":[105],"we":[106,149,183],"provided":[108],"comprehensive":[110],"survey":[111],"attacks,":[114,140],"detections,":[115],"defenses":[117,143],"previously":[118],"demonstrated":[119],"learning.":[122,205],"We":[123],"investigated":[125],"used":[127],"architectures,":[129],"benchmark":[130],"datasets,":[131],"metrics":[133],"classified":[139],"detections":[141],"based":[144,158],"different":[146],"criteria.":[147],"Furthermore,":[148,182],"analyzed":[151],"some":[152],"limitations":[153],"existing":[155],"methods":[156,202],"and,":[157],"this,":[160],"pointed":[161],"out":[162],"several":[163],"promising":[164],"future":[165],"directions.":[167],"Through":[168],"survey,":[170],"beginners":[171],"gain":[173],"preliminary":[175],"understanding":[176],"defenses.":[181],"anticipate":[184],"work":[187],"provide":[189],"new":[190],"perspectives":[191],"inspire":[193],"extra":[194],"defense":[201]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":10},{"year":2024,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
