{"id":"https://openalex.org/W4399487370","doi":"https://doi.org/10.1109/tifs.2024.3411936","title":"Backdoor Attack With Sparse and Invisible Trigger","display_name":"Backdoor Attack With Sparse and Invisible Trigger","publication_year":2024,"publication_date":"2024-01-01","ids":{"openalex":"https://openalex.org/W4399487370","doi":"https://doi.org/10.1109/tifs.2024.3411936"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3411936","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3411936","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101902398","display_name":"Yinghua Gao","orcid":"https://orcid.org/0000-0002-7158-2613"},"institutions":[{"id":"https://openalex.org/I4210114105","display_name":"Tsinghua\u2013Berkeley Shenzhen Institute","ror":"https://ror.org/02hhwwz98","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210114105","https://openalex.org/I95457486","https://openalex.org/I99065089"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Yinghua Gao","raw_affiliation_strings":["Tsinghua Shenzhen International Graduate School, Tsinghua University, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua Shenzhen International Graduate School, Tsinghua University, Shenzhen, China","institution_ids":["https://openalex.org/I4210114105","https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100346332","display_name":"Yiming Li","orcid":"https://orcid.org/0000-0002-2258-265X"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yiming Li","raw_affiliation_strings":["State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]},{"raw_affiliation_string":"The State Key Laboratory of Blockchain and Data Security, Zhejiang University, Hangzhou, China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5046712504","display_name":"Xueluan Gong","orcid":"https://orcid.org/0000-0003-2190-8117"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xueluan Gong","raw_affiliation_strings":["School of Computer Science, Wuhan University, Wuhan, China","School of Computer Science, Wuhan University, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science, Wuhan University, Wuhan, China","institution_ids":["https://openalex.org/I37461747"]},{"raw_affiliation_string":"School of Computer Science, Wuhan University, China","institution_ids":["https://openalex.org/I37461747"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100634431","display_name":"Zhifeng Li","orcid":"https://orcid.org/0000-0002-9653-7907"},"institutions":[{"id":"https://openalex.org/I2250653659","display_name":"Tencent (China)","ror":"https://ror.org/00hhjss72","country_code":"CN","type":"company","lineage":["https://openalex.org/I2250653659"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhifeng Li","raw_affiliation_strings":["Tencent Data Platform, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Tencent Data Platform, Shenzhen, China","institution_ids":["https://openalex.org/I2250653659"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034104790","display_name":"Shu\u2010Tao Xia","orcid":"https://orcid.org/0000-0002-8639-982X"},"institutions":[{"id":"https://openalex.org/I4210114105","display_name":"Tsinghua\u2013Berkeley Shenzhen Institute","ror":"https://ror.org/02hhwwz98","country_code":"CN","type":"facility","lineage":["https://openalex.org/I4210114105","https://openalex.org/I95457486","https://openalex.org/I99065089"]},{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Shu-Tao Xia","raw_affiliation_strings":["Tsinghua Shenzhen International Graduate School, Tsinghua University, Shenzhen, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua Shenzhen International Graduate School, Tsinghua University, Shenzhen, China","institution_ids":["https://openalex.org/I4210114105","https://openalex.org/I99065089"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100391116","display_name":"Qian Wang","orcid":"https://orcid.org/0000-0002-8967-8525"},"institutions":[{"id":"https://openalex.org/I37461747","display_name":"Wuhan University","ror":"https://ror.org/033vjfk17","country_code":"CN","type":"education","lineage":["https://openalex.org/I37461747"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Qian Wang","raw_affiliation_strings":["School of Cyber Science and Engineering, Wuhan University, Wuhan, China","School of Cyber Science and Engineering, Wuhan University, China"],"affiliations":[{"raw_affiliation_string":"School of Cyber Science and Engineering, Wuhan University, Wuhan, China","institution_ids":["https://openalex.org/I37461747"]},{"raw_affiliation_string":"School of Cyber Science and Engineering, Wuhan University, China","institution_ids":["https://openalex.org/I37461747"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5101902398"],"corresponding_institution_ids":["https://openalex.org/I4210114105","https://openalex.org/I99065089"],"apc_list":null,"apc_paid":null,"fwci":10.4804,"has_fulltext":false,"cited_by_count":31,"citation_normalized_percentile":{"value":0.98591796,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":100},"biblio":{"volume":"19","issue":null,"first_page":"6364","last_page":"6376"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9894000291824341,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.9656000137329102,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.8875244855880737},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7721827030181885},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4331832826137543},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4043218493461609},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.345861554145813}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.8875244855880737},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7721827030181885},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4331832826137543},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4043218493461609},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.345861554145813}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tifs.2024.3411936","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3411936","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G2404993877","display_name":null,"funder_award_id":"U20B2049","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2802018518","display_name":null,"funder_award_id":"62171248","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G3935748781","display_name":null,"funder_award_id":"U20A20178","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6034313629","display_name":null,"funder_award_id":"U21B2018","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6886773897","display_name":null,"funder_award_id":"JCYJ20220818101012025","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":67,"referenced_works":["https://openalex.org/W2056201402","https://openalex.org/W2083346837","https://openalex.org/W2096613063","https://openalex.org/W2129131372","https://openalex.org/W2134717257","https://openalex.org/W2145096794","https://openalex.org/W2159191733","https://openalex.org/W2194775991","https://openalex.org/W2300234500","https://openalex.org/W2604505099","https://openalex.org/W2807363941","https://openalex.org/W2934843808","https://openalex.org/W2942091739","https://openalex.org/W2945335799","https://openalex.org/W2962785568","https://openalex.org/W2963292690","https://openalex.org/W2970335439","https://openalex.org/W2971661634","https://openalex.org/W2972986629","https://openalex.org/W2985390828","https://openalex.org/W3034126795","https://openalex.org/W3034414373","https://openalex.org/W3034714646","https://openalex.org/W3042368254","https://openalex.org/W3104218734","https://openalex.org/W3107990944","https://openalex.org/W3114686421","https://openalex.org/W3114838227","https://openalex.org/W3116515605","https://openalex.org/W3121099749","https://openalex.org/W3128663834","https://openalex.org/W3152758407","https://openalex.org/W3166022359","https://openalex.org/W3170542759","https://openalex.org/W3175215793","https://openalex.org/W4214680449","https://openalex.org/W4247200422","https://openalex.org/W4285254934","https://openalex.org/W4293846201","https://openalex.org/W4317796293","https://openalex.org/W4362714395","https://openalex.org/W4372260097","https://openalex.org/W4386072042","https://openalex.org/W4390872667","https://openalex.org/W6631190155","https://openalex.org/W6637373629","https://openalex.org/W6684103851","https://openalex.org/W6684416548","https://openalex.org/W6746897123","https://openalex.org/W6751839145","https://openalex.org/W6756074407","https://openalex.org/W6785111086","https://openalex.org/W6789325072","https://openalex.org/W6792327856","https://openalex.org/W6794566239","https://openalex.org/W6796105096","https://openalex.org/W6802862418","https://openalex.org/W6803053407","https://openalex.org/W6809890637","https://openalex.org/W6809905531","https://openalex.org/W6844796666","https://openalex.org/W6845886309","https://openalex.org/W6845998782","https://openalex.org/W6850353503","https://openalex.org/W6858179132","https://openalex.org/W6868252184","https://openalex.org/W7005922919"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W2033914206","https://openalex.org/W2042327336"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"are":[4,72,80,172],"vulnerable":[5],"to":[6,50,90,95,128,162],"backdoor":[7,40,66,102,139,164],"attacks,":[8],"where":[9],"the":[10,21,27,32,36,61,110,154],"adversary":[11],"manipulates":[12],"a":[13,114],"small":[14],"portion":[15],"of":[16,64,156],"training":[17],"data":[18],"such":[19],"that":[20,70],"victim":[22],"model":[23],"predicts":[24],"normally":[25],"on":[26,146],"benign":[28],"samples":[29,34],"but":[30],"classifies":[31],"triggered":[33],"as":[35,113],"target":[37],"class.":[38],"The":[39,131,166],"attack":[41,140,158],"is":[42,87,134],"an":[43,97,125],"emerging":[44],"yet":[45],"threatening":[46],"training-phase":[47],"threat,":[48],"leading":[49],"serious":[51],"risks":[52],"in":[53],"DNN-based":[54],"applications.":[55],"In":[56],"this":[57,106],"paper,":[58],"we":[59,108],"revisit":[60],"trigger":[62,111],"patterns":[63],"existing":[65,93,163],"attacks.":[67],"We":[68,142],"reveal":[69],"they":[71],"either":[73],"visible":[74],"or":[75],"not":[76,81,88],"sparse":[77,99,136],"and":[78,100,120,123,137,159],"therefore":[79],"stealthy":[82],"enough.":[83],"More":[84],"importantly,":[85],"it":[86],"feasible":[89],"simply":[91],"combine":[92],"methods":[94],"design":[96],"effective":[98,126],"invisible":[101,138],"attack.":[103],"To":[104],"address":[105],"problem,":[107],"formulate":[109],"generation":[112],"bi-level":[115],"optimization":[116],"problem":[117],"with":[118],"sparsity":[119],"invisibility":[121],"constraints":[122],"propose":[124],"method":[127,133],"solve":[129],"it.":[130],"proposed":[132],"dubbed":[135],"(SIBA).":[141],"conduct":[143],"extensive":[144],"experiments":[145,171],"benchmark":[147],"datasets":[148],"under":[149],"different":[150],"settings,":[151],"which":[152],"verify":[153],"effectiveness":[155],"our":[157],"its":[160],"resistance":[161],"defenses.":[165],"codes":[167],"for":[168],"reproducing":[169],"main":[170],"available":[173],"at":[174],"<uri":[175],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[176],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">https://github.com/YinghuaGao/SIBA</uri>.":[177]},"counts_by_year":[{"year":2026,"cited_by_count":6},{"year":2025,"cited_by_count":20},{"year":2024,"cited_by_count":5}],"updated_date":"2026-04-14T08:04:32.555800","created_date":"2025-10-10T00:00:00"}
