{"id":"https://openalex.org/W4390871473","doi":"https://doi.org/10.1109/tdsc.2024.3354049","title":"<i>BadCleaner:</i> Defending Backdoor Attacks in Federated Learning via Attention-Based Multi-Teacher Distillation","display_name":"<i>BadCleaner:</i> Defending Backdoor Attacks in Federated Learning via Attention-Based Multi-Teacher Distillation","publication_year":2024,"publication_date":"2024-01-15","ids":{"openalex":"https://openalex.org/W4390871473","doi":"https://doi.org/10.1109/tdsc.2024.3354049"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2024.3354049","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2024.3354049","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100744176","display_name":"Jiale Zhang","orcid":"https://orcid.org/0000-0002-2143-5666"},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jiale Zhang","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":"https://orcid.org/0000-0002-2143-5666","affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109000067","display_name":"Chengcheng Zhu","orcid":"https://orcid.org/0009-0007-4082-0803"},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chengcheng Zhu","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":"https://orcid.org/0009-0007-4082-0803","affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052951255","display_name":"Chunpeng Ge","orcid":"https://orcid.org/0000-0002-9274-7325"},"institutions":[{"id":"https://openalex.org/I154099455","display_name":"Shandong University","ror":"https://ror.org/0207yh398","country_code":"CN","type":"education","lineage":["https://openalex.org/I154099455"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chunpeng Ge","raw_affiliation_strings":["School of Software, Shandong University, Jinan, China"],"raw_orcid":"https://orcid.org/0000-0002-9274-7325","affiliations":[{"raw_affiliation_string":"School of Software, Shandong University, Jinan, China","institution_ids":["https://openalex.org/I154099455"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103221383","display_name":"Chuan Ma","orcid":"https://orcid.org/0000-0001-6198-9498"},"institutions":[{"id":"https://openalex.org/I4210123185","display_name":"Zhejiang Lab","ror":"https://ror.org/02m2h7991","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210123185"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Chuan Ma","raw_affiliation_strings":["Zhejiang Lab, Hangzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-6198-9498","affiliations":[{"raw_affiliation_string":"Zhejiang Lab, Hangzhou, China","institution_ids":["https://openalex.org/I4210123185"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017359136","display_name":"Yanchao Zhao","orcid":"https://orcid.org/0000-0001-6314-0332"},"institutions":[{"id":"https://openalex.org/I9842412","display_name":"Nanjing University of Aeronautics and Astronautics","ror":"https://ror.org/01scyh794","country_code":"CN","type":"education","lineage":["https://openalex.org/I9842412"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yanchao Zhao","raw_affiliation_strings":["College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"],"raw_orcid":"https://orcid.org/0000-0001-6314-0332","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China","institution_ids":["https://openalex.org/I9842412"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5006966486","display_name":"Xiaobing Sun","orcid":"https://orcid.org/0000-0001-5165-5080"},"institutions":[{"id":"https://openalex.org/I78978612","display_name":"Yangzhou University","ror":"https://ror.org/03tqb8s11","country_code":"CN","type":"education","lineage":["https://openalex.org/I78978612"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaobing Sun","raw_affiliation_strings":["School of Information Engineering, Yangzhou University, Yangzhou, China"],"raw_orcid":"https://orcid.org/0000-0001-5165-5080","affiliations":[{"raw_affiliation_string":"School of Information Engineering, Yangzhou University, Yangzhou, China","institution_ids":["https://openalex.org/I78978612"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100443103","display_name":"Bing Chen","orcid":"https://orcid.org/0000-0002-2863-5441"},"institutions":[{"id":"https://openalex.org/I9842412","display_name":"Nanjing University of Aeronautics and Astronautics","ror":"https://ror.org/01scyh794","country_code":"CN","type":"education","lineage":["https://openalex.org/I9842412"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bing Chen","raw_affiliation_strings":["College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China"],"raw_orcid":"https://orcid.org/0000-0002-2863-5441","affiliations":[{"raw_affiliation_string":"College of Computer Science and Technology, Nanjing University of Aeronautics and Astronautics, Nanjing, China","institution_ids":["https://openalex.org/I9842412"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5100744176"],"corresponding_institution_ids":["https://openalex.org/I78978612"],"apc_list":null,"apc_paid":null,"fwci":8.2518,"has_fulltext":false,"cited_by_count":25,"citation_normalized_percentile":{"value":0.97869806,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":"21","issue":"5","first_page":"4559","last_page":"4573"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9933000206947327,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9541000127792358,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9938473701477051},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7549027800559998},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.45224225521087646},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3895914554595947},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.35923680663108826}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9938473701477051},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7549027800559998},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.45224225521087646},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3895914554595947},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.35923680663108826}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tdsc.2024.3354049","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2024.3354049","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Quality Education","id":"https://metadata.un.org/sdg/4","score":0.550000011920929}],"awards":[{"id":"https://openalex.org/G1378608539","display_name":null,"funder_award_id":"62032025","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G165001791","display_name":null,"funder_award_id":"62172215","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2571181155","display_name":null,"funder_award_id":"U20A201092","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2923719292","display_name":null,"funder_award_id":"61972335","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3360831768","display_name":null,"funder_award_id":"62076125","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G4841166925","display_name":null,"funder_award_id":"62071222","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5913986867","display_name":null,"funder_award_id":"62002309","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6217827934","display_name":null,"funder_award_id":"62176122","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6547404887","display_name":null,"funder_award_id":"BK20220562","funder_id":"https://openalex.org/F4320322769","funder_display_name":"Natural Science Foundation of Jiangsu Province"},{"id":"https://openalex.org/G6774741262","display_name":null,"funder_award_id":"BK20200067","funder_id":"https://openalex.org/F4320322769","funder_display_name":"Natural Science Foundation of Jiangsu Province"},{"id":"https://openalex.org/G8361097853","display_name":null,"funder_award_id":"61872312","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8760566353","display_name":null,"funder_award_id":"62061146002","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8833945948","display_name":null,"funder_award_id":"62206238","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322769","display_name":"Natural Science Foundation of Jiangsu Province","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":56,"referenced_works":["https://openalex.org/W1821462560","https://openalex.org/W2053637704","https://openalex.org/W2767079719","https://openalex.org/W2807363941","https://openalex.org/W2912213068","https://openalex.org/W2934843808","https://openalex.org/W2936864631","https://openalex.org/W2964111476","https://openalex.org/W3004155269","https://openalex.org/W3083185154","https://openalex.org/W3094933146","https://openalex.org/W3174842369","https://openalex.org/W3175919946","https://openalex.org/W3178386862","https://openalex.org/W3182158470","https://openalex.org/W3203600060","https://openalex.org/W3203735593","https://openalex.org/W3204548896","https://openalex.org/W3205328330","https://openalex.org/W4214537185","https://openalex.org/W4224227775","https://openalex.org/W4224942092","https://openalex.org/W4225750584","https://openalex.org/W4226101686","https://openalex.org/W4283211779","https://openalex.org/W4283702393","https://openalex.org/W4285601739","https://openalex.org/W4285602113","https://openalex.org/W4285605767","https://openalex.org/W4312700692","https://openalex.org/W4312877401","https://openalex.org/W4385679845","https://openalex.org/W6638523607","https://openalex.org/W6728757088","https://openalex.org/W6730179637","https://openalex.org/W6752600739","https://openalex.org/W6756333562","https://openalex.org/W6756840679","https://openalex.org/W6759238902","https://openalex.org/W6770634426","https://openalex.org/W6771533808","https://openalex.org/W6773817997","https://openalex.org/W6780224944","https://openalex.org/W6780640148","https://openalex.org/W6787633081","https://openalex.org/W6788876066","https://openalex.org/W6791673544","https://openalex.org/W6796484261","https://openalex.org/W6799246147","https://openalex.org/W6803053407","https://openalex.org/W6803620494","https://openalex.org/W6809890637","https://openalex.org/W6810095145","https://openalex.org/W6839074529","https://openalex.org/W6846133217","https://openalex.org/W7056673059"],"related_works":["https://openalex.org/W4401407399","https://openalex.org/W2961085424","https://openalex.org/W4306674287","https://openalex.org/W3046775127","https://openalex.org/W3107602296","https://openalex.org/W4394896187","https://openalex.org/W3170094116","https://openalex.org/W4386462264","https://openalex.org/W4364306694","https://openalex.org/W4312192474"],"abstract_inverted_index":{"As":[0],"a":[1,108,144],"privacy-preserving":[2],"distributed":[3],"learning":[4,7],"paradigm,":[5],"federated":[6,117],"(FL)":[8],"has":[9],"been":[10],"proven":[11],"to":[12,15,33,66,152,165,171],"be":[13],"vulnerable":[14],"various":[16],"attacks,":[17],"among":[18],"which":[19,80],"backdoor":[20,35,112,157,190],"attack":[21],"is":[22,81],"one":[23],"of":[24,147,169,188],"the":[25,42,48,63,67,95,127,136,155,167,172,185,194],"toughest.":[26],"In":[27],"this":[28],"attack,":[29,54],"malicious":[30],"users":[31],"attempt":[32],"embed":[34],"triggers":[36],"into":[37],"local":[38],"models,":[39],"resulting":[40],"in":[41,85,94],"crafted":[43],"inputs":[44],"being":[45],"misclassified":[46],"as":[47],"targeted":[49],"labels.":[50],"To":[51,98],"address":[52],"such":[53,100],"several":[55],"defense":[56,113],"mechanisms":[57],"are":[58],"proposed,":[59],"but":[60],"may":[61],"lose":[62],"effectiveness":[64],"due":[65],"following":[68],"drawbacks.":[69],"First,":[70],"current":[71],"methods":[72],"heavily":[73],"rely":[74],"on":[75],"massive":[76],"labeled":[77],"clean":[78,149],"data,":[79],"an":[82,88,161],"impractical":[83],"setting":[84],"FL.":[86],"Moreover,":[87],"in-avoidable":[89],"performance":[90,132],"degradation":[91],"usually":[92],"occurs":[93],"defensive":[96],"procedure.":[97],"alleviate":[99,166],"concerns,":[101],"we":[102,159],"propose":[103],"<italic":[104,121,180],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[105,122,181],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">BadCleaner</i>":[106,123,182],",":[107],"lossless":[109],"and":[110],"efficient":[111],"scheme":[114],"via":[115],"attention-based":[116],"multi-teacher":[118],"distillation.":[119],"Firstly,":[120],"can":[124,183],"effectively":[125],"tune":[126],"backdoored":[128],"joint":[129],"model":[130,195],"without":[131,192],"degradation,":[133],"by":[134],"distilling":[135],"in-depth":[137],"knowledge":[138],"from":[139],"multiple":[140],"teachers":[141],"with":[142],"only":[143],"small":[145],"part":[146],"unlabeled":[148],"data.":[150],"Secondly,":[151],"fully":[153],"eliminate":[154],"hidden":[156],"patterns,":[158],"present":[160],"attention":[162,168],"transfer":[163],"method":[164],"models":[170],"trigger":[173],"regions.":[174],"The":[175],"extensive":[176],"evaluation":[177],"demonstrates":[178],"that":[179],"reduce":[184],"success":[186],"rates":[187],"state-of-the-art":[189],"attacks":[191],"compromising":[193],"performance.":[196]},"counts_by_year":[{"year":2026,"cited_by_count":4},{"year":2025,"cited_by_count":16},{"year":2024,"cited_by_count":5}],"updated_date":"2026-04-26T08:31:28.666265","created_date":"2024-01-16T00:00:00"}
