{"id":"https://openalex.org/W4406857468","doi":"https://doi.org/10.1109/tmm.2025.3535277","title":"<i>Purifier</i>$^{+}$: Plug-and-Play Backdoor Mitigation for Pre-Trained Models via Activation Alignment","display_name":"<i>Purifier</i>$^{+}$: Plug-and-Play Backdoor Mitigation for Pre-Trained Models via Activation Alignment","publication_year":2025,"publication_date":"2025-01-01","ids":{"openalex":"https://openalex.org/W4406857468","doi":"https://doi.org/10.1109/tmm.2025.3535277"},"language":"en","primary_location":{"id":"doi:10.1109/tmm.2025.3535277","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmm.2025.3535277","pdf_url":null,"source":{"id":"https://openalex.org/S137030581","display_name":"IEEE Transactions on Multimedia","issn_l":"1520-9210","issn":["1520-9210","1941-0077"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Multimedia","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Xiaoyu Zhang","orcid":"https://orcid.org/0000-0002-5702-5749"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Xiaoyu Zhang","raw_affiliation_strings":["State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","institution_ids":["https://openalex.org/I149594827"]},{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036410193","display_name":"Yulin Jin","orcid":"https://orcid.org/0009-0008-1846-7502"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yulin Jin","raw_affiliation_strings":["State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","institution_ids":["https://openalex.org/I149594827"]},{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109034588","display_name":"Howell Tong","orcid":"https://orcid.org/0009-0003-5026-6085"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haoyu Tong","raw_affiliation_strings":["State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","institution_ids":["https://openalex.org/I149594827"]},{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041918034","display_name":"Jian Lou","orcid":"https://orcid.org/0000-0002-4110-2068"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jian Lou","raw_affiliation_strings":["School of Software Engineering, Sun Yat-Sen University, Guangzhou, China"],"affiliations":[{"raw_affiliation_string":"School of Software Engineering, Sun Yat-Sen University, Guangzhou, China","institution_ids":["https://openalex.org/I157773358"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5037706636","display_name":"Kai Wu","orcid":"https://orcid.org/0000-0002-1852-6364"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kai Wu","raw_affiliation_strings":["School of Artificial Intelligence, Xidian University, Xi&#x0027;an, China","School of Artificial Intelligence, Xidian University, China"],"affiliations":[{"raw_affiliation_string":"School of Artificial Intelligence, Xidian University, Xi&#x0027;an, China","institution_ids":["https://openalex.org/I149594827"]},{"raw_affiliation_string":"School of Artificial Intelligence, Xidian University, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"last","author":{"id":null,"display_name":"Xiaofeng Chen","orcid":"https://orcid.org/0000-0001-5858-5070"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaofeng Chen","raw_affiliation_strings":["State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China"],"affiliations":[{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, Xi&#x0027;an, Shaanxi, China","institution_ids":["https://openalex.org/I149594827"]},{"raw_affiliation_string":"State Key Laboratory of Integrated Service Networks (ISN), Xidian University, China","institution_ids":["https://openalex.org/I149594827"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I149594827"],"apc_list":null,"apc_paid":null,"fwci":2.3568,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.87686497,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":"27","issue":null,"first_page":"3910","last_page":"3924"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T13702","display_name":"Machine Learning in Healthcare","score":0.9828000068664551,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T13702","display_name":"Machine Learning in Healthcare","score":0.9828000068664551,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10444","display_name":"Context-Aware Activity Recognition Systems","score":0.9628999829292297,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9301000237464905,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.8379592895507812},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7558654546737671},{"id":"https://openalex.org/keywords/plug-in","display_name":"Plug-in","score":0.5605618357658386},{"id":"https://openalex.org/keywords/plug-and-play","display_name":"Plug and play","score":0.5372860431671143},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.36778393387794495},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2791828215122223},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1825416386127472}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.8379592895507812},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7558654546737671},{"id":"https://openalex.org/C4924752","wikidata":"https://www.wikidata.org/wiki/Q184148","display_name":"Plug-in","level":2,"score":0.5605618357658386},{"id":"https://openalex.org/C2780070844","wikidata":"https://www.wikidata.org/wiki/Q857815","display_name":"Plug and play","level":2,"score":0.5372860431671143},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.36778393387794495},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2791828215122223},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1825416386127472}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tmm.2025.3535277","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmm.2025.3535277","pdf_url":null,"source":{"id":"https://openalex.org/S137030581","display_name":"IEEE Transactions on Multimedia","issn_l":"1520-9210","issn":["1520-9210","1941-0077"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Multimedia","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7799999713897705,"display_name":"Climate action","id":"https://metadata.un.org/sdg/13"}],"awards":[{"id":"https://openalex.org/G1349971534","display_name":null,"funder_award_id":"62206207","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G2994629394","display_name":null,"funder_award_id":"ZYTS24140","funder_id":"https://openalex.org/F4320335787","funder_display_name":"Fundamental Research Funds for the Central Universities"},{"id":"https://openalex.org/G3504150597","display_name":null,"funder_award_id":"62472345","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G5420252985","display_name":null,"funder_award_id":"B16037","funder_id":"https://openalex.org/F4320336698","funder_display_name":"Overseas Expertise Introduction Center for Discipline Innovation of Food Nutrition and Human Health (111 Center)"},{"id":"https://openalex.org/G5538951345","display_name":null,"funder_award_id":"62121001","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6783866552","display_name":null,"funder_award_id":"62102300","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G7940625749","display_name":null,"funder_award_id":"62432012","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G8362771766","display_name":null,"funder_award_id":"61960206014","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320335787","display_name":"Fundamental Research Funds for the Central Universities","ror":null},{"id":"https://openalex.org/F4320336698","display_name":"Overseas Expertise Introduction Center for Discipline Innovation of Food Nutrition and Human Health (111 Center)","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":38,"referenced_works":["https://openalex.org/W2194775991","https://openalex.org/W2543927648","https://openalex.org/W2753783305","https://openalex.org/W2807363941","https://openalex.org/W2970335439","https://openalex.org/W2972714212","https://openalex.org/W2985913519","https://openalex.org/W2986013765","https://openalex.org/W2990270730","https://openalex.org/W2996800219","https://openalex.org/W3107337211","https://openalex.org/W3163966458","https://openalex.org/W3211240005","https://openalex.org/W4285222939","https://openalex.org/W4304080842","https://openalex.org/W4312700692","https://openalex.org/W4312755707","https://openalex.org/W4386072159","https://openalex.org/W4386076050","https://openalex.org/W4386083011","https://openalex.org/W4390421903","https://openalex.org/W4396843660","https://openalex.org/W4400909677","https://openalex.org/W4405181470","https://openalex.org/W6681673350","https://openalex.org/W6743581629","https://openalex.org/W6746897123","https://openalex.org/W6754587887","https://openalex.org/W6755207826","https://openalex.org/W6770897281","https://openalex.org/W6771747359","https://openalex.org/W6776469819","https://openalex.org/W6788876066","https://openalex.org/W6789325072","https://openalex.org/W6790438916","https://openalex.org/W6803053407","https://openalex.org/W6803329306","https://openalex.org/W6853799129"],"related_works":["https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W3025520020","https://openalex.org/W2095769150","https://openalex.org/W2279095528","https://openalex.org/W2352394813","https://openalex.org/W2360042170","https://openalex.org/W2368465758","https://openalex.org/W2108894446","https://openalex.org/W4223592178"],"abstract_inverted_index":{"Pre-trained":[0],"models":[1,30,50,78],"are":[2],"extensively":[3],"embraced":[4],"in":[5,51,76,156,232],"deep":[6],"learning,":[7],"facilitating":[8],"efficient":[9],"fine-tuning":[10],"for":[11,127],"downstream":[12,29],"user-specific":[13],"tasks":[14],"and":[15,60,86,103,111,138,159,168,201,217,230],"yielding":[16],"substantial":[17],"computational":[18],"savings.":[19],"However,":[20],"backdoor":[21,128,184,194],"attacks":[22],"present":[23],"a":[24,153,199,241],"significant":[25],"security":[26],"threat":[27,45],"to":[28,42,47,83,178,240],"constructed":[31],"on":[32,90],"corrupted":[33],"pre-trained":[34,77],"models,":[35],"necessitating":[36],"the":[37,49,70,87,121,147,176,192],"implementation":[38],"of":[39,72,144,149,183,187,243],"effective":[40],"countermeasures":[41],"mitigate":[43],"this":[44,91,163],"prior":[46,189],"deploying":[48],"safety-critical":[52],"applications.":[53],"This":[54],"paper":[55],"introduces":[56],"<italic":[57,64,108,112,165,169,214,218],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[58,65,67,109,113,115,166,170,172,215,219,221],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">Purifier</i>":[59,110,167,216],"its":[61],"advanced":[62],"version":[63],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">Purifier</i><inline-formula":[66,114,171,220],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[68,116,173,222],"notation=\"LaTeX\">$^{+}$</tex-math></inline-formula>,":[69],"former":[71],"which":[73],"mitigates":[74],"backdoors":[75],"by":[79,92],"aligning":[80],"anomaly":[81,124],"activation":[82,97,101,106,125],"normal":[84],"activation,":[85],"latter":[88],"builds":[89],"making":[93],"importance":[94],"rating":[95],"about":[96,191],"patterns,":[98],"boosting":[99],"important":[100],"patterns":[102,126],"suppressing":[104],"unimportant":[105],"patterns.":[107],"notation=\"LaTeX\">$^{+}$</tex-math></inline-formula>":[117,174,223],"draw":[118],"inspiration":[119],"from":[120],"observation":[122],"that":[123,213],"triggers":[129,185],"manifest":[130],"across":[131],"various":[132,181],"perspectives":[133],"such":[134],"as":[135],"channel-wise,":[136],"cube-wise,":[137],"feature-wise,":[139],"each":[140],"exhibiting":[141],"distinct":[142],"levels":[143],"granularity.":[145],"Crucially,":[146],"choice":[148],"alignment":[150],"granularity":[151],"plays":[152],"pivotal":[154],"role":[155],"ensuring":[157],"robustness":[158],"accuracy.":[160],"In":[161],"addressing":[162],"challenge,":[164],"demonstrate":[175,212],"ability":[177],"effectively":[179],"thwart":[180],"categories":[182],"devoid":[186],"requiring":[188],"information":[190],"specific":[193],"attacks.":[195,246],"Additionally,":[196],"it":[197],"offers":[198],"convenient":[200],"flexible":[202],"deployment":[203],"feature,":[204],"namely,":[205],"plug-and-play":[206],"capability.":[207],"The":[208],"comprehensive":[209],"experimental":[210],"results":[211],"outperform":[224],"current":[225],"methodologies":[226],"regarding":[227],"defense":[228],"efficacy":[229],"accuracy":[231],"model":[233],"inference":[234],"with":[235],"uncontaminated":[236],"samples":[237],"when":[238],"subjected":[239],"series":[242],"State-of-the-Art":[244],"mainstream":[245]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
