{"id":"https://openalex.org/W3199693999","doi":"https://doi.org/10.1109/tdsc.2022.3166671","title":"FooBaR: Fault Fooling Backdoor Attack on Neural Network Training","display_name":"FooBaR: Fault Fooling Backdoor Attack on Neural Network Training","publication_year":2022,"publication_date":"2022-01-01","ids":{"openalex":"https://openalex.org/W3199693999","doi":"https://doi.org/10.1109/tdsc.2022.3166671","mag":"3199693999"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2022.3166671","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2022.3166671","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2109.11249","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5052953682","display_name":"Jakub Breier","orcid":"https://orcid.org/0000-0002-7844-5267"},"institutions":[{"id":"https://openalex.org/I4210123126","display_name":"Silicon Austria Labs (Austria)","ror":"https://ror.org/03b1qgn79","country_code":"AT","type":"company","lineage":["https://openalex.org/I4210123126"]}],"countries":["AT"],"is_corresponding":true,"raw_author_name":"Jakub Breier","raw_affiliation_strings":["Embedded Systems, Silicon Austria Labs GmbH, 226176 Graz, Styria, Austria"],"affiliations":[{"raw_affiliation_string":"Embedded Systems, Silicon Austria Labs GmbH, 226176 Graz, Styria, Austria","institution_ids":["https://openalex.org/I4210123126"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069420868","display_name":"Xiaolu Hou","orcid":"https://orcid.org/0000-0002-4512-6921"},"institutions":[{"id":"https://openalex.org/I110757952","display_name":"Slovak University of Technology in Bratislava","ror":"https://ror.org/0561ghm58","country_code":"SK","type":"education","lineage":["https://openalex.org/I110757952"]}],"countries":["SK"],"is_corresponding":false,"raw_author_name":"Xiaolu Hou","raw_affiliation_strings":["Institute of Applied Informatics, Slovak University of Technology in Bratislava, 61791 Bratislava, Bratislava, Slovakia"],"affiliations":[{"raw_affiliation_string":"Institute of Applied Informatics, Slovak University of Technology in Bratislava, 61791 Bratislava, Bratislava, Slovakia","institution_ids":["https://openalex.org/I110757952"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019979722","display_name":"Mart\u00edn Ochoa","orcid":"https://orcid.org/0000-0002-7816-5775"},"institutions":[{"id":"https://openalex.org/I35440088","display_name":"ETH Zurich","ror":"https://ror.org/05a28rw58","country_code":"CH","type":"education","lineage":["https://openalex.org/I2799323385","https://openalex.org/I35440088"]}],"countries":["CH"],"is_corresponding":false,"raw_author_name":"Martin Ochoa","raw_affiliation_strings":["Department of Computer Science, ETH Zurich, 27219 Zurich, Zrich, Switzerland"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, ETH Zurich, 27219 Zurich, Zrich, Switzerland","institution_ids":["https://openalex.org/I35440088"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5037239301","display_name":"Jes\u00fas Solano","orcid":"https://orcid.org/0000-0002-2742-0641"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jesus Solano","raw_affiliation_strings":["Research, AppGate, Inc., Bogota D.C., Bogota, Colombia"],"affiliations":[{"raw_affiliation_string":"Research, AppGate, Inc., Bogota D.C., Bogota, Colombia","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5052953682"],"corresponding_institution_ids":["https://openalex.org/I4210123126"],"apc_list":null,"apc_paid":null,"fwci":1.518,"has_fulltext":false,"cited_by_count":11,"citation_normalized_percentile":{"value":0.8473657,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"1"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9677000045776367,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9449999928474426,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9477900266647339},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7756040096282959},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6382781863212585},{"id":"https://openalex.org/keywords/training","display_name":"Training (meteorology)","score":0.6179832816123962},{"id":"https://openalex.org/keywords/fault","display_name":"Fault (geology)","score":0.4504394233226776},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.42493534088134766},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.3826565444469452},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.38090288639068604}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9477900266647339},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7756040096282959},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6382781863212585},{"id":"https://openalex.org/C2777211547","wikidata":"https://www.wikidata.org/wiki/Q17141490","display_name":"Training (meteorology)","level":2,"score":0.6179832816123962},{"id":"https://openalex.org/C175551986","wikidata":"https://www.wikidata.org/wiki/Q47089","display_name":"Fault (geology)","level":2,"score":0.4504394233226776},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.42493534088134766},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3826565444469452},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.38090288639068604},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C153294291","wikidata":"https://www.wikidata.org/wiki/Q25261","display_name":"Meteorology","level":1,"score":0.0},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.0},{"id":"https://openalex.org/C165205528","wikidata":"https://www.wikidata.org/wiki/Q83371","display_name":"Seismology","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tdsc.2022.3166671","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2022.3166671","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},{"id":"pmh:oai:arXiv.org:2109.11249","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2109.11249","pdf_url":"https://arxiv.org/pdf/2109.11249","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2109.11249","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2109.11249","pdf_url":"https://arxiv.org/pdf/2109.11249","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.5099999904632568,"display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G6827528811","display_name":null,"funder_award_id":"SK-SRB-21-0059","funder_id":"https://openalex.org/F4320323251","funder_display_name":"Agent\u00fara na Podporu V\u00fdskumu a V\u00fdvoja"},{"id":"https://openalex.org/G8410312996","display_name":null,"funder_award_id":"SASPRO 2 COFUND Marie Sklodowska-Curie grant agree","funder_id":"https://openalex.org/F4320312330","funder_display_name":"Slovensk\u00e1 Akad\u00e9mia Vied"}],"funders":[{"id":"https://openalex.org/F4320312330","display_name":"Slovensk\u00e1 Akad\u00e9mia Vied","ror":"https://ror.org/03h7qq074"},{"id":"https://openalex.org/F4320323251","display_name":"Agent\u00fara na Podporu V\u00fdskumu a V\u00fdvoja","ror":"https://ror.org/037nx0e70"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":98,"referenced_works":["https://openalex.org/W9657784","https://openalex.org/W154022573","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W2007339694","https://openalex.org/W2040553105","https://openalex.org/W2072181464","https://openalex.org/W2095785650","https://openalex.org/W2103658959","https://openalex.org/W2112507308","https://openalex.org/W2112796928","https://openalex.org/W2114235603","https://openalex.org/W2139750209","https://openalex.org/W2163563130","https://openalex.org/W2163605009","https://openalex.org/W2167421362","https://openalex.org/W2180748755","https://openalex.org/W2274565976","https://openalex.org/W2399941526","https://openalex.org/W2557513839","https://openalex.org/W2602892162","https://openalex.org/W2741840250","https://openalex.org/W2741961238","https://openalex.org/W2745565856","https://openalex.org/W2748789698","https://openalex.org/W2749901318","https://openalex.org/W2753783305","https://openalex.org/W2771112233","https://openalex.org/W2773446523","https://openalex.org/W2774423163","https://openalex.org/W2786070938","https://openalex.org/W2789876780","https://openalex.org/W2807363941","https://openalex.org/W2807835252","https://openalex.org/W2888940765","https://openalex.org/W2888975495","https://openalex.org/W2889233174","https://openalex.org/W2896575297","https://openalex.org/W2900018096","https://openalex.org/W2926259481","https://openalex.org/W2934843808","https://openalex.org/W2948811271","https://openalex.org/W2949506549","https://openalex.org/W2964043980","https://openalex.org/W2964153729","https://openalex.org/W2964923388","https://openalex.org/W2965565691","https://openalex.org/W2969596189","https://openalex.org/W2972304568","https://openalex.org/W2983058739","https://openalex.org/W2986013765","https://openalex.org/W2995091922","https://openalex.org/W3008241282","https://openalex.org/W3025279871","https://openalex.org/W3033754679","https://openalex.org/W3034579202","https://openalex.org/W3096114331","https://openalex.org/W3102908045","https://openalex.org/W3103836116","https://openalex.org/W3125834223","https://openalex.org/W3127436526","https://openalex.org/W3135067613","https://openalex.org/W3154181338","https://openalex.org/W3167334189","https://openalex.org/W3185788529","https://openalex.org/W3189812816","https://openalex.org/W3197312262","https://openalex.org/W3212158867","https://openalex.org/W4242053016","https://openalex.org/W4242164861","https://openalex.org/W4247200422","https://openalex.org/W4256477176","https://openalex.org/W4288337628","https://openalex.org/W4289300166","https://openalex.org/W4300250944","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6676935882","https://openalex.org/W6684191040","https://openalex.org/W6684559340","https://openalex.org/W6694611762","https://openalex.org/W6736049462","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6754272107","https://openalex.org/W6754279747","https://openalex.org/W6754587887","https://openalex.org/W6756074407","https://openalex.org/W6763559720","https://openalex.org/W6766787143","https://openalex.org/W6768077297","https://openalex.org/W6771898115","https://openalex.org/W6774614704","https://openalex.org/W6780292011","https://openalex.org/W6785443933","https://openalex.org/W6790153967","https://openalex.org/W6799824255","https://openalex.org/W6803907735"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W3015678314","https://openalex.org/W4281902577","https://openalex.org/W4200629851","https://openalex.org/W3009072493","https://openalex.org/W4386185023","https://openalex.org/W4317672133","https://openalex.org/W3140988292","https://openalex.org/W4386080799","https://openalex.org/W2372829958"],"abstract_inverted_index":{"Neural":[0],"network":[1,51,145],"implementations":[2],"are":[3,82,99,189],"known":[4],"to":[5,8,74,86,92,121,150],"be":[6,53,87],"vulnerable":[7],"physical":[9],"attack":[10,36,173],"vectors":[11],"such":[12,131],"as":[13,135,184,186],"fault":[14],"injection":[15],"attacks.":[16],"As":[17],"of":[18,60,78,106],"now,":[19],"these":[20],"attacks":[21,65,132],"were":[22],"only":[23],"utilized":[24],"during":[25,41,55],"the":[26,42,49,58,116,122,136,144,196],"inference":[27,90],"phase.":[28],"In":[29],"this":[30],"work,":[31],"we":[32],"explore":[33],"a":[34,46,76,104,112,166],"novel":[35],"paradigm":[37],"by":[38,101],"injecting":[39],"faults":[40,137],"training":[43,126,139],"phase":[44,140],"in":[45,125],"way":[47],"that":[48,70,109,146],"resulting":[50],"can":[52],"attacked":[54,117,190],"deployment":[56],"without":[57],"necessity":[59],"further":[61],"faulting.":[62,128],"We":[63,129,154],"discuss":[64],"against":[66,158],"ReLU":[67],"activation":[68,118],"functions":[69],"make":[71],"it":[72],"possible":[73],"generate":[75],"family":[77],"malicious":[79,97],"inputs,":[80,85],"which":[81],"called":[83],"fooling":[84,133,152],"used":[88],"at":[89,138],"time":[91],"induce":[93],"controlled":[94],"misclassifications.":[95],"Such":[96],"inputs":[98],"obtained":[100],"mathematically":[102],"solving":[103],"system":[105],"linear":[107],"equations":[108],"would":[110],"cause":[111],"particular":[113],"behaviour":[114],"on":[115,165,195],"functions,":[119],"similar":[120],"one":[123],"induced":[124],"through":[127],"call":[130],"backdoors":[134,142],"inject":[141],"into":[143],"allow":[147],"an":[148],"attacker":[149],"produce":[151],"inputs.":[153],"evaluate":[155],"our":[156],"approach":[157],"multi-layer":[159],"perceptron":[160],"networks":[161,164],"and":[162,179],"convolutional":[163],"popular":[167],"image":[168],"classification":[169,181,198],"task":[170],"obtaining":[171],"high":[172,180,193],"success":[174],"rates":[175],"(60%":[176],"-":[177],"100%)":[178],"confidence":[182],"when":[183],"little":[185],"25":[187],"neurons":[188],"while":[191],"preserving":[192],"accuracy":[194],"original":[197],"task.":[199]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":4}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
