{"id":"https://openalex.org/W4408323484","doi":"https://doi.org/10.1109/tdsc.2025.3550330","title":"Runtime Backdoor Detection for Federated Learning via Representational Dissimilarity Analysis","display_name":"Runtime Backdoor Detection for Federated Learning via Representational Dissimilarity Analysis","publication_year":2025,"publication_date":"2025-03-11","ids":{"openalex":"https://openalex.org/W4408323484","doi":"https://doi.org/10.1109/tdsc.2025.3550330"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2025.3550330","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3550330","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://research-information.bris.ac.uk/en/publications/725a26a3-1a28-49fa-8e63-b4b28483fd5c","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100717733","display_name":"Xiyue Zhang","orcid":"https://orcid.org/0000-0003-1649-7165"},"institutions":[{"id":"https://openalex.org/I36234482","display_name":"University of Bristol","ror":"https://ror.org/0524sp257","country_code":"GB","type":"education","lineage":["https://openalex.org/I36234482"]},{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Xiyue Zhang","raw_affiliation_strings":["School of Computer Science, University of Bristol, Bristol, U.K","Department of Computer Science, University of Oxford, UK"],"raw_orcid":"https://orcid.org/0000-0003-1649-7165","affiliations":[{"raw_affiliation_string":"School of Computer Science, University of Bristol, Bristol, U.K","institution_ids":["https://openalex.org/I36234482"]},{"raw_affiliation_string":"Department of Computer Science, University of Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034197769","display_name":"Xiaoyong Xue","orcid":"https://orcid.org/0000-0001-9001-4569"},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaoyong Xue","raw_affiliation_strings":["Department of Information and Computing Science, School of Mathematical Science, Peking University, Beijing, China","Department of Information and Computing Science, School of Mathematical Science, Peking University, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Department of Information and Computing Science, School of Mathematical Science, Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]},{"raw_affiliation_string":"Department of Information and Computing Science, School of Mathematical Science, Peking University, China","institution_ids":["https://openalex.org/I20231570"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102717874","display_name":"Xiaoning Du","orcid":null},"institutions":[{"id":"https://openalex.org/I56590836","display_name":"Monash University","ror":"https://ror.org/02bfwt286","country_code":"AU","type":"education","lineage":["https://openalex.org/I56590836"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Xiaoning Du","raw_affiliation_strings":["Department of Software Systems and Cybersecurity, Monash University, Clayton, VIC, Australia","Department of Software Systems and Cybersecurity, Monash University, Australia"],"raw_orcid":"https://orcid.org/0000-0003-3728-9541","affiliations":[{"raw_affiliation_string":"Department of Software Systems and Cybersecurity, Monash University, Clayton, VIC, Australia","institution_ids":["https://openalex.org/I56590836"]},{"raw_affiliation_string":"Department of Software Systems and Cybersecurity, Monash University, Australia","institution_ids":["https://openalex.org/I56590836"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084396416","display_name":"Xiaofei Xie","orcid":"https://orcid.org/0000-0002-1288-6502"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Xiaofei Xie","raw_affiliation_strings":["School of Computing and Information Systems, Singapore Management University, Singapore"],"raw_orcid":"https://orcid.org/0000-0002-1288-6502","affiliations":[{"raw_affiliation_string":"School of Computing and Information Systems, Singapore Management University, Singapore","institution_ids":["https://openalex.org/I79891267"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100355692","display_name":"Yang Liu","orcid":"https://orcid.org/0000-0001-7300-9215"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Yang Liu","raw_affiliation_strings":["School of Computer Science and Engineering, Nanyang Technological University, Singapore"],"raw_orcid":"https://orcid.org/0000-0001-7300-9215","affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5024021805","display_name":"Meng Sun","orcid":"https://orcid.org/0000-0001-6550-7396"},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Meng Sun","raw_affiliation_strings":["Department of Information and Computing Science, School of Mathematical Science, Peking University, Beijing, China","Department of Information and Computing Science, School of Mathematical Science, Peking University, China"],"raw_orcid":"https://orcid.org/0000-0001-6550-7396","affiliations":[{"raw_affiliation_string":"Department of Information and Computing Science, School of Mathematical Science, Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]},{"raw_affiliation_string":"Department of Information and Computing Science, School of Mathematical Science, Peking University, China","institution_ids":["https://openalex.org/I20231570"]}]}],"institutions":[],"countries_distinct_count":4,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5100717733"],"corresponding_institution_ids":["https://openalex.org/I36234482","https://openalex.org/I40120149"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.01711913,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"22","issue":"5","first_page":"4607","last_page":"4624"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9905999898910522,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9905999898910522,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14347","display_name":"Big Data and Digital Economy","score":0.9708999991416931,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9359999895095825,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9761247634887695},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7909502387046814},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4578413665294647},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3240235447883606},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.26063454151153564}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9761247634887695},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7909502387046814},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4578413665294647},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3240235447883606},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.26063454151153564}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/tdsc.2025.3550330","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3550330","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},{"id":"pmh:oai:research-information.bris.ac.uk:publications/725a26a3-1a28-49fa-8e63-b4b28483fd5c","is_oa":true,"landing_page_url":"https://research-information.bris.ac.uk/en/publications/725a26a3-1a28-49fa-8e63-b4b28483fd5c","pdf_url":null,"source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Zhang, X, Xue, X, Du, X, Xie, X, Liu, Y & Sun, M 2025, 'Runtime Backdoor Detection for Federated Learning via Representational Dissimilarity Analysis', IEEE Transactions on Dependable and Secure Computing, vol. 22, no. 5, pp. 4607-4624. https://doi.org/10.1109/TDSC.2025.3550330","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:research-information.bris.ac.uk:openaire/725a26a3-1a28-49fa-8e63-b4b28483fd5c","is_oa":true,"landing_page_url":"https://hdl.handle.net/1983/725a26a3-1a28-49fa-8e63-b4b28483fd5c","pdf_url":null,"source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":"Zhang, X, Xue, X, Du, X, Xie, X, Liu, Y & Sun, M 2025, 'Runtime Backdoor Detection for Federated Learning via Representational Dissimilarity Analysis', IEEE Transactions on Dependable and Secure Computing, vol. 22, no. 5, pp. 4607-4624. https://doi.org/10.1109/TDSC.2025.3550330","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:arXiv.org:2503.04473","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2503.04473","pdf_url":"https://arxiv.org/pdf/2503.04473","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:research-information.bris.ac.uk:publications/725a26a3-1a28-49fa-8e63-b4b28483fd5c","is_oa":true,"landing_page_url":"https://research-information.bris.ac.uk/en/publications/725a26a3-1a28-49fa-8e63-b4b28483fd5c","pdf_url":null,"source":{"id":"https://openalex.org/S4306400895","display_name":"Bristol Research (University of Bristol)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I36234482","host_organization_name":"University of Bristol","host_organization_lineage":["https://openalex.org/I36234482"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Zhang, X, Xue, X, Du, X, Xie, X, Liu, Y & Sun, M 2025, 'Runtime Backdoor Detection for Federated Learning via Representational Dissimilarity Analysis', IEEE Transactions on Dependable and Secure Computing, vol. 22, no. 5, pp. 4607-4624. https://doi.org/10.1109/TDSC.2025.3550330","raw_type":"info:eu-repo/semantics/publishedVersion"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1551371719","display_name":null,"funder_award_id":"61772038","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2010007046","display_name":null,"funder_award_id":"62172019","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2796670552","display_name":null,"funder_award_id":"Tier 3 MOET32020-0004","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"},{"id":"https://openalex.org/G4032461741","display_name":null,"funder_award_id":"Tier 1 21-SIS-SMU-033","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"}],"funders":[{"id":"https://openalex.org/F4320320709","display_name":"National Research Foundation Singapore","ror":"https://ror.org/03cpyc314"},{"id":"https://openalex.org/F4320320751","display_name":"Ministry of Education - Singapore","ror":"https://ror.org/01kcva023"},{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320324787","display_name":"Peking University","ror":"https://ror.org/02v51f717"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":20,"referenced_works":["https://openalex.org/W2111996007","https://openalex.org/W2112796928","https://openalex.org/W2144182447","https://openalex.org/W2160654481","https://openalex.org/W2194775991","https://openalex.org/W2753783305","https://openalex.org/W2783522756","https://openalex.org/W2934843808","https://openalex.org/W2963618920","https://openalex.org/W2966689772","https://openalex.org/W3012501605","https://openalex.org/W3100481436","https://openalex.org/W3100779497","https://openalex.org/W3175919946","https://openalex.org/W3190075653","https://openalex.org/W3204548896","https://openalex.org/W4206320562","https://openalex.org/W4213446860","https://openalex.org/W4252654521","https://openalex.org/W4390872697"],"related_works":["https://openalex.org/W2961085424","https://openalex.org/W4306674287","https://openalex.org/W4387369504","https://openalex.org/W3046775127","https://openalex.org/W4394896187","https://openalex.org/W3170094116","https://openalex.org/W4386462264","https://openalex.org/W3107602296","https://openalex.org/W4364306694","https://openalex.org/W4312192474"],"abstract_inverted_index":{"Federated":[0],"learning":[1,6,24],"(FL),":[2],"as":[3,123],"a":[4,9,36,76,93,132],"powerful":[5],"paradigm,":[7],"trains":[8],"shared":[10,43],"model":[11,14,23,69,104],"by":[12,107],"aggregating":[13],"updates":[15],"from":[16,25],"distributed":[17],"clients.":[18],"However,":[19],"the":[20,42],"decoupling":[21],"of":[22,134],"local":[26],"data":[27],"makes":[28],"FL":[29],"highly":[30],"vulnerable":[31],"to":[32,79,98,116],"backdoor":[33,52,108,159],"attacks,":[34],"where":[35],"single":[37],"compromised":[38],"client":[39],"can":[40],"poison":[41],"model.":[44],"While":[45],"recent":[46],"progress":[47],"has":[48],"been":[49],"made":[50],"in":[51,83,144],"detection,":[53],"existing":[54],"methods":[55,143],"face":[56],"challenges":[57],"with":[58,67,161],"detection":[59,145],"accuracy":[60,146],"and":[61,87,119,147],"runtime":[62,153],"effectiveness,":[63],"particularly":[64],"when":[65],"dealing":[66],"complex":[68],"architectures.":[70],"In":[71],"this":[72],"work,":[73],"we":[74],"propose":[75,112],"novel":[77],"approach":[78,140,156],"detecting":[80],"malicious":[81,121],"clients":[82,122],"an":[84,113],"accurate,":[85],"stable,":[86],"efficient":[88],"manner.":[89],"Our":[90],"method":[91,97],"utilizes":[92],"sampling-based":[94],"network":[95],"representation":[96],"quantify":[99],"dissimilarities":[100],"between":[101],"clients,":[102],"identifying":[103],"deviations":[105],"caused":[106],"injections.":[109],"We":[110],"also":[111],"iterative":[114],"algorithm":[115],"progressively":[117],"detect":[118],"exclude":[120],"outliers":[124],"based":[125],"on":[126],"these":[127],"dissimilarity":[128],"measurements.":[129],"Evaluations":[130],"across":[131],"range":[133],"benchmark":[135],"tasks":[136],"demonstrate":[137],"that":[138],"our":[139,155],"outperforms":[141],"state-of-the-art":[142],"defense":[148],"effectiveness.":[149],"When":[150],"deployed":[151],"for":[152],"protection,":[154],"effectively":[157],"eliminates":[158],"injections":[160],"marginal":[162],"overheads.":[163]},"counts_by_year":[],"updated_date":"2025-12-21T01:58:51.020947","created_date":"2025-10-10T00:00:00"}
