{"id":"https://openalex.org/W4387872706","doi":"https://doi.org/10.1109/tifs.2023.3326983","title":"Privacy-Enhancing and Robust Backdoor Defense for Federated Learning on Heterogeneous Data","display_name":"Privacy-Enhancing and Robust Backdoor Defense for Federated Learning on Heterogeneous Data","publication_year":2023,"publication_date":"2023-10-23","ids":{"openalex":"https://openalex.org/W4387872706","doi":"https://doi.org/10.1109/tifs.2023.3326983"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2023.3326983","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2023.3326983","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://ink.library.smu.edu.sg/sis_research/8631","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5086373764","display_name":"Zekai Chen","orcid":"https://orcid.org/0009-0004-7895-8291"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zekai Chen","raw_affiliation_strings":["College of Mathematics and Computer Science, Fuzhou University, Fuzhou, China"],"affiliations":[{"raw_affiliation_string":"College of Mathematics and Computer Science, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075265849","display_name":"Shengxing Yu","orcid":null},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shengxing Yu","raw_affiliation_strings":["School of Electronics Engineering and Computer Science, Peking University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"School of Electronics Engineering and Computer Science, Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064674050","display_name":"Mingyuan Fan","orcid":"https://orcid.org/0000-0001-9550-9237"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Mingyuan Fan","raw_affiliation_strings":["School of Data Science and Engineering, East China Normal University, Shanghai, China"],"affiliations":[{"raw_affiliation_string":"School of Data Science and Engineering, East China Normal University, Shanghai, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058120371","display_name":"Ximeng Liu","orcid":"https://orcid.org/0000-0002-4238-3295"},"institutions":[{"id":"https://openalex.org/I6469544","display_name":"City University of Macau","ror":"https://ror.org/04gpd4q15","country_code":"MO","type":"education","lineage":["https://openalex.org/I6469544"]},{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN","MO"],"is_corresponding":false,"raw_author_name":"Ximeng Liu","raw_affiliation_strings":["College of Mathematics and Computer Science, Fuzhou University, Fuzhou, China","Faculty of Data Science, City University of Macau, Macau, China"],"affiliations":[{"raw_affiliation_string":"College of Mathematics and Computer Science, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]},{"raw_affiliation_string":"Faculty of Data Science, City University of Macau, Macau, China","institution_ids":["https://openalex.org/I6469544"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5001712801","display_name":"Robert H. Deng","orcid":"https://orcid.org/0000-0003-3491-8146"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Robert H. Deng","raw_affiliation_strings":["School of Information Systems, Singapore Management University, Bras Basah, Singapore"],"affiliations":[{"raw_affiliation_string":"School of Information Systems, Singapore Management University, Bras Basah, Singapore","institution_ids":["https://openalex.org/I79891267"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5086373764"],"corresponding_institution_ids":["https://openalex.org/I80947539"],"apc_list":null,"apc_paid":null,"fwci":3.3053,"has_fulltext":false,"cited_by_count":19,"citation_normalized_percentile":{"value":0.937271,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"19","issue":null,"first_page":"693","last_page":"707"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9962000250816345,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9715999960899353,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9799364805221558},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.820720911026001},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.6769159436225891},{"id":"https://openalex.org/keywords/shuffling","display_name":"Shuffling","score":0.6528351306915283},{"id":"https://openalex.org/keywords/cluster-analysis","display_name":"Cluster analysis","score":0.6274675726890564},{"id":"https://openalex.org/keywords/upload","display_name":"Upload","score":0.5397601127624512},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.49826502799987793},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.46008041501045227},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.45425865054130554},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.40226873755455017},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.392846941947937},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3715277910232544},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.29168200492858887}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9799364805221558},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.820720911026001},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.6769159436225891},{"id":"https://openalex.org/C167927819","wikidata":"https://www.wikidata.org/wiki/Q1930567","display_name":"Shuffling","level":2,"score":0.6528351306915283},{"id":"https://openalex.org/C73555534","wikidata":"https://www.wikidata.org/wiki/Q622825","display_name":"Cluster analysis","level":2,"score":0.6274675726890564},{"id":"https://openalex.org/C71901391","wikidata":"https://www.wikidata.org/wiki/Q7126699","display_name":"Upload","level":2,"score":0.5397601127624512},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.49826502799987793},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.46008041501045227},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.45425865054130554},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.40226873755455017},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.392846941947937},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3715277910232544},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.29168200492858887},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tifs.2023.3326983","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2023.3326983","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:ink.library.smu.edu.sg:sis_research-9634","is_oa":true,"landing_page_url":"https://ink.library.smu.edu.sg/sis_research/8631","pdf_url":null,"source":{"id":"https://openalex.org/S4306401925","display_name":"Singapore Management University Institutional Knowledge (InK) (Singapore Management University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79891267","host_organization_name":"Singapore Management University","host_organization_lineage":["https://openalex.org/I79891267"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"https://doi.org/10.1109/TIFS.2023.3326983","raw_type":"Journal Article"}],"best_oa_location":{"id":"pmh:oai:ink.library.smu.edu.sg:sis_research-9634","is_oa":true,"landing_page_url":"https://ink.library.smu.edu.sg/sis_research/8631","pdf_url":null,"source":{"id":"https://openalex.org/S4306401925","display_name":"Singapore Management University Institutional Knowledge (InK) (Singapore Management University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79891267","host_organization_name":"Singapore Management University","host_organization_lineage":["https://openalex.org/I79891267"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"https://doi.org/10.1109/TIFS.2023.3326983","raw_type":"Journal Article"},"sustainable_development_goals":[{"score":0.49000000953674316,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G1064780937","display_name":null,"funder_award_id":"0038/2022/A","funder_id":"https://openalex.org/F4320323893","funder_display_name":"Fundo para o Desenvolvimento das Ci\u00eancias e da Tecnologia"},{"id":"https://openalex.org/G4910714274","display_name":null,"funder_award_id":"2021J06013","funder_id":"https://openalex.org/F4320321878","funder_display_name":"Natural Science Foundation of Fujian Province"},{"id":"https://openalex.org/G979158640","display_name":null,"funder_award_id":"62072109","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321878","display_name":"Natural Science Foundation of Fujian Province","ror":null},{"id":"https://openalex.org/F4320323893","display_name":"Fundo para o Desenvolvimento das Ci\u00eancias e da Tecnologia","ror":"https://ror.org/05vna4324"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":40,"referenced_works":["https://openalex.org/W51265332","https://openalex.org/W1485800369","https://openalex.org/W2003668524","https://openalex.org/W2112796928","https://openalex.org/W2263396941","https://openalex.org/W2606882085","https://openalex.org/W2750384547","https://openalex.org/W2805670944","https://openalex.org/W2911978475","https://openalex.org/W2972594657","https://openalex.org/W2980189697","https://openalex.org/W2982426954","https://openalex.org/W3012501605","https://openalex.org/W3030742901","https://openalex.org/W3032769455","https://openalex.org/W3044223678","https://openalex.org/W3086590218","https://openalex.org/W3178386862","https://openalex.org/W3183881215","https://openalex.org/W4206728481","https://openalex.org/W4210368049","https://openalex.org/W4220719396","https://openalex.org/W4226271719","https://openalex.org/W4285817743","https://openalex.org/W4310826648","https://openalex.org/W4312839173","https://openalex.org/W4319027606","https://openalex.org/W4386160485","https://openalex.org/W6728757088","https://openalex.org/W6738460352","https://openalex.org/W6743688258","https://openalex.org/W6748786018","https://openalex.org/W6752600739","https://openalex.org/W6756840679","https://openalex.org/W6771533808","https://openalex.org/W6780640148","https://openalex.org/W6781420246","https://openalex.org/W6800286734","https://openalex.org/W6847114990","https://openalex.org/W7056673059"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W3015678314","https://openalex.org/W4281902577","https://openalex.org/W4200629851","https://openalex.org/W3009072493","https://openalex.org/W4386185023","https://openalex.org/W3093748630","https://openalex.org/W3206218040","https://openalex.org/W4387022642","https://openalex.org/W4206776436"],"abstract_inverted_index":{"Federated":[0,78],"learning":[1,9],"(FL)":[2],"allows":[3],"multiple":[4],"clients":[5],"to":[6,23,87,96,155],"train":[7],"deep":[8],"models":[10,41],"collaboratively":[11],"while":[12],"protecting":[13],"sensitive":[14],"local":[15],"datasets.":[16],"However,":[17],"FL":[18],"has":[19],"been":[20],"highly":[21],"susceptible":[22],"security":[24],"for":[25,35,153,159],"federated":[26],"backdoor":[27],"attacks":[28],"(FBA)":[29],"through":[30],"injecting":[31],"triggers":[32],"and":[33,51,55,83,107,121,149,168],"privacy":[34],"potential":[36],"data":[37],"leakage":[38],"from":[39,137],"uploaded":[40],"in":[42,145,174],"practical":[43],"application":[44],"scenarios.":[45],"FBA":[46,98,162],"defense":[47,135,147],"strategies":[48],"consider":[49],"specific":[50],"limited":[52],"attacker":[53],"models,":[54],"a":[56,76],"sufficient":[57],"amount":[58],"of":[59,91,100,113,187],"noise":[60],"injected":[61],"can":[62],"only":[63],"mitigate":[64],"rather":[65],"than":[66],"eliminate":[67],"the":[68,89,133,156,160],"attack.":[69],"To":[70],"address":[71],"these":[72],"deficiencies,":[73],"we":[74],"introduce":[75],"Robust":[77],"Backdoor":[79],"Defense":[80],"Scheme":[81],"(RFBDS)":[82],"Privacy-preserving":[84],"RFBDS":[85,95,114],"(PrivRFBDS)":[86],"ensure":[88],"elimination":[90],"adversarial":[92],"backdoors.":[93],"Our":[94],"overcome":[97],"consists":[99],"amplified":[101],"magnitude":[102],"sparsification,":[103],"adaptive":[104,108],"OPTICS":[105],"clustering,":[106],"clipping.":[109],"The":[110,130],"experimental":[111],"evaluation":[112],"is":[115,125,177],"conducted":[116],"on":[117],"three":[118],"benchmark":[119],"datasets":[120],"an":[122],"extensive":[123],"comparison":[124],"made":[126],"with":[127],"state-of-the-art":[128,188],"studies.":[129],"results":[131],"demonstrate":[132],"promising":[134],"performance":[136],"RFBDS,":[138],"moderately":[139],"improved":[140],"by":[141],"31.75%":[142],"~":[143,151],"73.75%":[144],"clustering":[146],"methods,":[148],"0.03%":[150],"56.90%":[152],"Non-IID":[154],"utmost":[157],"extent":[158],"average":[161],"success":[163],"rate":[164],"over":[165],"MNIST,":[166],"FMNIST,":[167],"CIFAR10.":[169],"Besides,":[170],"our":[171],"privacy-preserving":[172],"shuffling":[173],"PrivRFBDS":[175],"maintains":[176],"<inline-formula":[178],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[179],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">":[180],"<tex-math":[181],"notation=\"LaTeX\">$7.83e^{-5}\\,\\,\\sim":[182],"\\,\\,0.42\\times":[183],"$":[184],"</tex-math></inline-formula>":[185],"that":[186],"works.":[189]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":14},{"year":2024,"cited_by_count":4}],"updated_date":"2026-03-29T08:15:47.926485","created_date":"2025-10-10T00:00:00"}
