{"id":"https://openalex.org/W4367663504","doi":"https://doi.org/10.1109/tdsc.2023.3271956","title":"Quantization Backdoors to Deep Learning Commercial Frameworks","display_name":"Quantization Backdoors to Deep Learning Commercial Frameworks","publication_year":2023,"publication_date":"2023-05-01","ids":{"openalex":"https://openalex.org/W4367663504","doi":"https://doi.org/10.1109/tdsc.2023.3271956"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2023.3271956","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2023.3271956","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5114928939","display_name":"Hua Ma","orcid":"https://orcid.org/0000-0002-9069-7731"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I5681781","display_name":"The University of Adelaide","ror":"https://ror.org/00892tw58","country_code":"AU","type":"education","lineage":["https://openalex.org/I5681781"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Hua Ma","raw_affiliation_strings":["School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia","Data61, CSIRO, Australia"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia","institution_ids":["https://openalex.org/I5681781"]},{"raw_affiliation_string":"Data61, CSIRO, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039324800","display_name":"Huming Qiu","orcid":"https://orcid.org/0009-0004-5385-9414"},"institutions":[{"id":"https://openalex.org/I36399199","display_name":"Nanjing University of Science and Technology","ror":"https://ror.org/00xp9wg62","country_code":"CN","type":"education","lineage":["https://openalex.org/I36399199"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Huming Qiu","raw_affiliation_strings":["School of Computer Science and Engineering, Nanjing University of Science and Technology, Nanjing, Jiangsu, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanjing University of Science and Technology, Nanjing, Jiangsu, China","institution_ids":["https://openalex.org/I36399199"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Yansong Gao","orcid":"https://orcid.org/0000-0001-5783-2172"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I36399199","display_name":"Nanjing University of Science and Technology","ror":"https://ror.org/00xp9wg62","country_code":"CN","type":"education","lineage":["https://openalex.org/I36399199"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU","CN"],"is_corresponding":false,"raw_author_name":"Yansong Gao","raw_affiliation_strings":["Data61, CSIRO, Eveleigh, NSW, Australia","School of Computer Science and Engineering, Nanjing University of Science and Technology, China"],"affiliations":[{"raw_affiliation_string":"Data61, CSIRO, Eveleigh, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]},{"raw_affiliation_string":"School of Computer Science and Engineering, Nanjing University of Science and Technology, China","institution_ids":["https://openalex.org/I36399199"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100410710","display_name":"Zhi Zhang","orcid":"https://orcid.org/0000-0003-3604-5369"},"institutions":[{"id":"https://openalex.org/I177877127","display_name":"The University of Western Australia","ror":"https://ror.org/047272k79","country_code":"AU","type":"education","lineage":["https://openalex.org/I177877127"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Zhi Zhang","raw_affiliation_strings":["University of Western Australia, Perth, Australia"],"affiliations":[{"raw_affiliation_string":"University of Western Australia, Perth, Australia","institution_ids":["https://openalex.org/I177877127"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5086357020","display_name":"Alsharif Abuadbba","orcid":"https://orcid.org/0000-0001-9695-7947"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Alsharif Abuadbba","raw_affiliation_strings":["Data61, CSIRO, Eveleigh, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"Data61, CSIRO, Eveleigh, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009850797","display_name":"Minhui Xue","orcid":"https://orcid.org/0000-0002-9172-4252"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I42894916","display_name":"Data61","ror":"https://ror.org/03q397159","country_code":"AU","type":"other","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I42894916","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Minhui Xue","raw_affiliation_strings":["Data61, CSIRO, Eveleigh, NSW, Australia"],"affiliations":[{"raw_affiliation_string":"Data61, CSIRO, Eveleigh, NSW, Australia","institution_ids":["https://openalex.org/I42894916","https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048592388","display_name":"Anmin Fu","orcid":"https://orcid.org/0000-0002-1632-5737"},"institutions":[{"id":"https://openalex.org/I36399199","display_name":"Nanjing University of Science and Technology","ror":"https://ror.org/00xp9wg62","country_code":"CN","type":"education","lineage":["https://openalex.org/I36399199"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Anmin Fu","raw_affiliation_strings":["School of Computer Science and Engineering, Nanjing University of Science and Technology, Nanjing, Jiangsu, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanjing University of Science and Technology, Nanjing, Jiangsu, China","institution_ids":["https://openalex.org/I36399199"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100680951","display_name":"Jiliang Zhang","orcid":"https://orcid.org/0000-0001-8712-2964"},"institutions":[{"id":"https://openalex.org/I16609230","display_name":"Hunan University","ror":"https://ror.org/05htk5m33","country_code":"CN","type":"education","lineage":["https://openalex.org/I16609230"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiliang Zhang","raw_affiliation_strings":["College of Semiconductors (College of Integrated Circuits, Hunan University, Changsha, Hunan, China"],"affiliations":[{"raw_affiliation_string":"College of Semiconductors (College of Integrated Circuits, Hunan University, Changsha, Hunan, China","institution_ids":["https://openalex.org/I16609230"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053660700","display_name":"Said F. Al-Sarawi","orcid":"https://orcid.org/0000-0002-3242-8197"},"institutions":[{"id":"https://openalex.org/I5681781","display_name":"The University of Adelaide","ror":"https://ror.org/00892tw58","country_code":"AU","type":"education","lineage":["https://openalex.org/I5681781"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Said F. Al-Sarawi","raw_affiliation_strings":["School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia","institution_ids":["https://openalex.org/I5681781"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040978000","display_name":"Derek Abbott","orcid":"https://orcid.org/0000-0002-0945-2674"},"institutions":[{"id":"https://openalex.org/I5681781","display_name":"The University of Adelaide","ror":"https://ror.org/00892tw58","country_code":"AU","type":"education","lineage":["https://openalex.org/I5681781"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Derek Abbott","raw_affiliation_strings":["School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, The University of Adelaide, Adelaide, SA, Australia","institution_ids":["https://openalex.org/I5681781"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":10,"corresponding_author_ids":["https://openalex.org/A5114928939"],"corresponding_institution_ids":["https://openalex.org/I1292875679","https://openalex.org/I42894916","https://openalex.org/I5681781"],"apc_list":null,"apc_paid":null,"fwci":2.254,"has_fulltext":false,"cited_by_count":19,"citation_normalized_percentile":{"value":0.89954201,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":100},"biblio":{"volume":"21","issue":"3","first_page":"1155","last_page":"1172"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10036","display_name":"Advanced Neural Network Applications","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11216","display_name":"Radiation Detection and Scintillator Technologies","score":0.982699990272522,"subfield":{"id":"https://openalex.org/subfields/3108","display_name":"Radiation"},"field":{"id":"https://openalex.org/fields/31","display_name":"Physics and Astronomy"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9095675945281982},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7709989547729492},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.6099548935890198},{"id":"https://openalex.org/keywords/quantization","display_name":"Quantization (signal processing)","score":0.5688284635543823},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5348367094993591},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.4778984785079956},{"id":"https://openalex.org/keywords/chipset","display_name":"Chipset","score":0.45800352096557617},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.45641711354255676},{"id":"https://openalex.org/keywords/usability","display_name":"Usability","score":0.4435203969478607},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.43951594829559326},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.40055975317955017},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.32726550102233887},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.28374165296554565},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.28084325790405273},{"id":"https://openalex.org/keywords/human\u2013computer-interaction","display_name":"Human\u2013computer interaction","score":0.17898795008659363}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9095675945281982},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7709989547729492},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.6099548935890198},{"id":"https://openalex.org/C28855332","wikidata":"https://www.wikidata.org/wiki/Q198099","display_name":"Quantization (signal processing)","level":2,"score":0.5688284635543823},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5348367094993591},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.4778984785079956},{"id":"https://openalex.org/C73431340","wikidata":"https://www.wikidata.org/wiki/Q182656","display_name":"Chipset","level":3,"score":0.45800352096557617},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.45641711354255676},{"id":"https://openalex.org/C170130773","wikidata":"https://www.wikidata.org/wiki/Q216378","display_name":"Usability","level":2,"score":0.4435203969478607},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.43951594829559326},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.40055975317955017},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.32726550102233887},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.28374165296554565},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.28084325790405273},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.17898795008659363},{"id":"https://openalex.org/C165005293","wikidata":"https://www.wikidata.org/wiki/Q1074500","display_name":"Chip","level":2,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tdsc.2023.3271956","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2023.3271956","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},{"id":"pmh:oai:pure.atira.dk:publications/455743b7-7eb1-4dd4-a7be-af2d8c0a1d76","is_oa":false,"landing_page_url":"https://research-repository.uwa.edu.au/en/publications/455743b7-7eb1-4dd4-a7be-af2d8c0a1d76","pdf_url":null,"source":{"id":"https://openalex.org/S4306402492","display_name":"UWA Profiles and Research Repository (UWA)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I177877127","host_organization_name":"The University of Western Australia","host_organization_lineage":["https://openalex.org/I177877127"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Ma, H, Qiu, H, Gao, Y, Zhang, Z, Abuadbba, A, Xue, M, Fu, A, Zhang, J, Al-Sarawi, S F & Abbott, D 2024, 'Quantization Backdoors to Deep Learning Commercial Frameworks', IEEE Transactions on Dependable and Secure Computing, vol. 21, no. 3, pp. 1155-1172. https://doi.org/10.1109/tdsc.2023.3271956","raw_type":"info:eu-repo/semantics/publishedVersion"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G485163565","display_name":null,"funder_award_id":"62122023","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5663473917","display_name":null,"funder_award_id":"62072239","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7884576325","display_name":null,"funder_award_id":"2021J01544","funder_id":"https://openalex.org/F4320321878","funder_display_name":"Natural Science Foundation of Fujian Province"},{"id":"https://openalex.org/G7884758391","display_name":null,"funder_award_id":"62002167","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321878","display_name":"Natural Science Foundation of Fujian Province","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":71,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1945616565","https://openalex.org/W2067713319","https://openalex.org/W2112796928","https://openalex.org/W2194775991","https://openalex.org/W2300242332","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2807363941","https://openalex.org/W2845210056","https://openalex.org/W2897865027","https://openalex.org/W2934843808","https://openalex.org/W2947864246","https://openalex.org/W2963122961","https://openalex.org/W2963145956","https://openalex.org/W2966187620","https://openalex.org/W2966689772","https://openalex.org/W2971661634","https://openalex.org/W2985913519","https://openalex.org/W2986013765","https://openalex.org/W2990270730","https://openalex.org/W2996800219","https://openalex.org/W3008515144","https://openalex.org/W3044223678","https://openalex.org/W3047587361","https://openalex.org/W3081141044","https://openalex.org/W3087086069","https://openalex.org/W3088733693","https://openalex.org/W3099264032","https://openalex.org/W3100083812","https://openalex.org/W3100405174","https://openalex.org/W3104151879","https://openalex.org/W3108175762","https://openalex.org/W3112001526","https://openalex.org/W3115279145","https://openalex.org/W3118608800","https://openalex.org/W3128663834","https://openalex.org/W3130641740","https://openalex.org/W3152758407","https://openalex.org/W3157459315","https://openalex.org/W3161325720","https://openalex.org/W4200182016","https://openalex.org/W4283361424","https://openalex.org/W4287639545","https://openalex.org/W4288057770","https://openalex.org/W4298140072","https://openalex.org/W4312671514","https://openalex.org/W4387623692","https://openalex.org/W6637373629","https://openalex.org/W6640425456","https://openalex.org/W6693397755","https://openalex.org/W6713134421","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6747838042","https://openalex.org/W6750462152","https://openalex.org/W6752600739","https://openalex.org/W6766253520","https://openalex.org/W6766313860","https://openalex.org/W6766336336","https://openalex.org/W6768287286","https://openalex.org/W6772326514","https://openalex.org/W6774150056","https://openalex.org/W6776767859","https://openalex.org/W6781420246","https://openalex.org/W6784225549","https://openalex.org/W6787972765","https://openalex.org/W6788876066","https://openalex.org/W6795991173","https://openalex.org/W6802961543"],"related_works":["https://openalex.org/W2597787948","https://openalex.org/W2951786554","https://openalex.org/W4287064118","https://openalex.org/W2963058055","https://openalex.org/W3186840088","https://openalex.org/W2511279186","https://openalex.org/W4280607397","https://openalex.org/W3132360532","https://openalex.org/W4287864142","https://openalex.org/W3008756425"],"abstract_inverted_index":{"Due":[0],"to":[1,127,169,237,284],"their":[2,109],"low":[3],"latency":[4],"and":[5,37,55,83,171,192,194,203,234],"high":[6],"privacy":[7],"preservation,":[8],"there":[9],"is":[10,72,153,251,270,362],"currently":[11],"a":[12,65,73,89,96,129,134,149,239,278,302,321],"burgeoning":[13],"demand":[14],"for":[15],"deploying":[16],"deep":[17],"learning":[18],"(DL)":[19],"models":[20,31,212,250,326,331],"on":[21,80],"ubiquitous":[22],"edge":[23],"Internet":[24],"of":[25,67,148,223,247,320,324],"Things":[26],"(IoT)":[27],"devices.":[28],"However,":[29,108],"DL":[30,78,325],"are":[32,53,60,232],"often":[33],"large":[34,90],"in":[35,145,220,241,272],"size":[36],"require":[38],"large-scale":[39],"computation,":[40],"which":[41,138,276],"prevents":[42],"them":[43],"from":[44],"being":[45],"placed":[46],"directly":[47],"onto":[48],"IoT":[49],"devices,":[50],"where":[51],"resources":[52],"constrained,":[54],"32-bit":[56],"floating-point":[57],"(float-32)":[58],"operations":[59],"unavailable.":[61],"Commercial":[62],"framework":[63,168],"(i.e.,":[64],"set":[66],"toolkits)":[68],"empowered":[69],"model":[70,92,99,105,137,188,257,314,348],"quantization":[71,122,167,315],"pragmatic":[74],"solution":[75],"that":[76,120,133,207,301],"enables":[77],"deployment":[79],"mobile":[81],"devices":[82],"embedded":[84],"systems":[85],"by":[86,114,157],"effortlessly":[87],"post-quantizing":[88],"high-precision":[91],"(e.g.,":[93,100],"float-32)":[94],"into":[95,253,344],"small":[97],"low-precision":[98],"int-8)":[101],"while":[102,291],"retaining":[103],"the":[104,146,151,162,173,221,242,248,259,268,273,289,311,345,355],"inference":[106],"accuracy.":[107],"usability":[110],"might":[111],"be":[112,125,155],"threatened":[113],"security":[115,304,318],"vulnerabilities.":[116],"This":[117,298],"work":[118,299],"reveals":[119],"standard":[121,260],"toolkits":[123],"can":[124],"abused":[126],"activate":[128],"backdoor.":[130,357],"We":[131,205],"demonstrate":[132],"full-precision":[135,347],"backdoored":[136,211],"does":[139],"not":[140],"have":[141,339],"any":[142],"backdoor":[143,152,215,230,240,269,335],"effect":[144,216],"presence":[147,222],"trigger\u2014as":[150],"dormant\u2014can":[154],"activated":[156,271],"(i)":[158],"TensorFlow-Lite":[159],"(TFLite)":[160],"quantization,":[161,267],"only":[163],"<italic":[164,174,217],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[165,175,218,366],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">product-ready</i>":[166],"date,":[170],"(ii)":[172],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">beta":[176],"released</i>":[177],"PyTorch":[178,263],"Mobile":[179,264],"framework.":[180],"In":[181],"our":[182],"experiments,":[183],"we":[184,338],"employ":[185],"three":[186,198],"popular":[187,199],"architectures":[189],"(VGG16,":[190],"ResNet18,":[191],"ResNet50),":[193],"train":[195],"each":[196,246],"across":[197],"datasets:":[200],"MNIST,":[201],"CIFAR10":[202],"GTSRB.":[204],"ascertain":[206],"all":[208],"trained":[209],"float-32":[210,243,249],"exhibit":[213],"no":[214],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">even":[219],"trigger":[224],"inputs</i>":[225],".":[226,368],"Particularly,":[227],"four":[228],"influential":[229],"defenses":[231],"evaluated,":[233],"they":[235],"fail":[236],"identify":[238],"models.":[244],"When":[245],"converted":[252],"an":[254,308,350],"int-8":[255],"format":[256],"through":[258],"TFLite":[261],"or":[262],"framework's":[265],"post-training":[266,313],"quantized":[274],"model,":[275],"shows":[277],"stable":[279],"attack":[280,359],"success":[281],"rate":[282],"close":[283],"100%":[285],"upon":[286,295],"inputs":[287],"with":[288],"trigger,":[290],"it":[292],"usually":[293],"behaves":[294],"non-trigger":[296],"inputs.":[297],"highlights":[300],"stealthy":[303],"threat":[305],"occurs":[306],"when":[307],"end-user":[309],"utilizes":[310],"on-device":[312],"frameworks,":[316],"informing":[317],"researchers":[319],"cross-platform":[322],"overhaul":[323],"post-quantization":[327],"even":[328],"if":[329],"these":[330],"pass":[332],"security-aware":[333],"front-end":[334],"inspections.":[336],"Significantly,":[337],"identified":[340],"Gaussian":[341],"noise":[342],"injection":[343],"malicious":[346],"as":[349],"easy-to-use":[351],"preventative":[352],"defense":[353],"against":[354],"PQ":[356],"The":[358],"source":[360],"code":[361],"released":[363],"at":[364],"<uri":[365],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">https://github.com/quantization-backdoor</uri>":[367]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":11},{"year":2023,"cited_by_count":1}],"updated_date":"2026-04-18T07:56:08.524223","created_date":"2025-10-10T00:00:00"}
