{"id":"https://openalex.org/W2966104011","doi":"https://doi.org/10.1109/tr.2022.3159784","title":"Model Agnostic Defence Against Backdoor Attacks in Machine Learning","display_name":"Model Agnostic Defence Against Backdoor Attacks in Machine Learning","publication_year":2022,"publication_date":"2022-04-11","ids":{"openalex":"https://openalex.org/W2966104011","doi":"https://doi.org/10.1109/tr.2022.3159784","mag":"2966104011"},"language":"en","primary_location":{"id":"doi:10.1109/tr.2022.3159784","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tr.2022.3159784","pdf_url":null,"source":{"id":"https://openalex.org/S87725633","display_name":"IEEE Transactions on Reliability","issn_l":"0018-9529","issn":["0018-9529","1558-1721"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Reliability","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5016159914","display_name":"Sakshi Udeshi","orcid":null},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Sakshi Udeshi","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":"https://orcid.org/0000-0001-6484-6249","affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109432690","display_name":"Shanshan Peng","orcid":null},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Shanshan Peng","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036756962","display_name":"Gerald Woo","orcid":null},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Gerald Woo","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060380061","display_name":"Lionell Loh","orcid":null},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Lionell Loh","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036849365","display_name":"Louth Rawshan","orcid":null},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Louth Rawshan","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5088928000","display_name":"Sudipta Chattopadhyay","orcid":"https://orcid.org/0000-0002-4843-5391"},"institutions":[{"id":"https://openalex.org/I152815399","display_name":"Singapore University of Technology and Design","ror":"https://ror.org/05j6fvn87","country_code":"SG","type":"education","lineage":["https://openalex.org/I152815399"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Sudipta Chattopadhyay","raw_affiliation_strings":["Singapore University of Technology and Design, Singapore"],"raw_orcid":"https://orcid.org/0000-0002-4843-5391","affiliations":[{"raw_affiliation_string":"Singapore University of Technology and Design, Singapore","institution_ids":["https://openalex.org/I152815399"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5016159914"],"corresponding_institution_ids":["https://openalex.org/I152815399"],"apc_list":null,"apc_paid":null,"fwci":7.7689,"has_fulltext":false,"cited_by_count":74,"citation_normalized_percentile":{"value":0.97709672,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":100},"biblio":{"volume":"71","issue":"2","first_page":"880","last_page":"895"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9932000041007996,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9884999990463257,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9801491498947144},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6327880024909973},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5132996439933777},{"id":"https://openalex.org/keywords/reliability-theory","display_name":"Reliability theory","score":0.46000009775161743},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.34619131684303284},{"id":"https://openalex.org/keywords/reliability-engineering","display_name":"Reliability engineering","score":0.2645307183265686},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.23864683508872986},{"id":"https://openalex.org/keywords/failure-rate","display_name":"Failure rate","score":0.07662591338157654}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9801491498947144},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6327880024909973},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5132996439933777},{"id":"https://openalex.org/C201729545","wikidata":"https://www.wikidata.org/wiki/Q2193887","display_name":"Reliability theory","level":3,"score":0.46000009775161743},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.34619131684303284},{"id":"https://openalex.org/C200601418","wikidata":"https://www.wikidata.org/wiki/Q2193887","display_name":"Reliability engineering","level":1,"score":0.2645307183265686},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.23864683508872986},{"id":"https://openalex.org/C163164238","wikidata":"https://www.wikidata.org/wiki/Q2737027","display_name":"Failure rate","level":2,"score":0.07662591338157654}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tr.2022.3159784","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tr.2022.3159784","pdf_url":null,"source":{"id":"https://openalex.org/S87725633","display_name":"IEEE Transactions on Reliability","issn_l":"0018-9529","issn":["0018-9529","1558-1721"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Reliability","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.5400000214576721,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320320751","display_name":"Ministry of Education - Singapore","ror":"https://ror.org/01kcva023"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":48,"referenced_works":["https://openalex.org/W1507872748","https://openalex.org/W1565377632","https://openalex.org/W2076063813","https://openalex.org/W2109294327","https://openalex.org/W2119028650","https://openalex.org/W2325939864","https://openalex.org/W2482589566","https://openalex.org/W2594877703","https://openalex.org/W2616028256","https://openalex.org/W2748789698","https://openalex.org/W2753783305","https://openalex.org/W2774423163","https://openalex.org/W2789524546","https://openalex.org/W2794609696","https://openalex.org/W2804337238","https://openalex.org/W2809701591","https://openalex.org/W2934843808","https://openalex.org/W2963208512","https://openalex.org/W2963327228","https://openalex.org/W2963565751","https://openalex.org/W2963735478","https://openalex.org/W2963913218","https://openalex.org/W2964041528","https://openalex.org/W2964153729","https://openalex.org/W2964164993","https://openalex.org/W2990270730","https://openalex.org/W3005347330","https://openalex.org/W3011700838","https://openalex.org/W3099444373","https://openalex.org/W3105507623","https://openalex.org/W3105599650","https://openalex.org/W3110683067","https://openalex.org/W3167334189","https://openalex.org/W4285719527","https://openalex.org/W6637162671","https://openalex.org/W6734921443","https://openalex.org/W6743581629","https://openalex.org/W6745566777","https://openalex.org/W6746897123","https://openalex.org/W6751161574","https://openalex.org/W6752073087","https://openalex.org/W6756333562","https://openalex.org/W6759638512","https://openalex.org/W6773842061","https://openalex.org/W6774126473","https://openalex.org/W6775361835","https://openalex.org/W6786768871","https://openalex.org/W6910318977"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4401407399"],"abstract_inverted_index":{"Machine":[0],"learning":[1],"(ML)":[2],"has":[3],"automated":[4],"a":[5,37,66,83,191],"multitude":[6],"of":[7,22,40,117,151],"our":[8,27,88,136,171],"day-to-day":[9],"decision-making":[10],"domains,":[11],"such":[12,74],"as":[13,160,162],"education,":[14],"employment,":[15],"and":[16,72,95,127,157],"driving":[17],"automation.":[18],"The":[19],"continued":[20],"success":[21],"ML":[23,55,80],"largely":[24],"depends":[25],"on":[26,155],"ability":[28],"to":[29,70,104,219],"trust":[30,53],"the":[31,51,91,98,114,118,152,177,205,212,217],"model":[32,67,99],"we":[33,60,107,138,209],"are":[34],"using.":[35],"Recently,":[36],"new":[38],"class":[39],"attacks":[41,44,49,76,111,203],"called":[42],"backdoor":[43,75,183,202],"have":[45,122],"been":[46],"developed.":[47],"These":[48],"undermine":[50],"user\u2019s":[52],"in":[54,77,200],"models.":[56,81,134],"In":[57,102,135],"this":[58,105],"article,":[59],"present":[61],"<sc":[62,124,141,172,194],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[63,125,142,147,173,195],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">Neo</small>":[64,126,143,174,196],",":[65],"agnostic":[68],"framework":[69],"detect":[71,145],"mitigate":[73,109],"image":[78,85],"classification":[79,86],"For":[82],"given":[84],"model,":[87],"approach":[89,175],"analyzes":[90],"inputs":[92,154],"it":[93,129,158],"receives":[94],"determines":[96],"if":[97],"is":[100,159,197],"backdoored.":[101],"addition":[103],"feature,":[106],"also":[108,169,210],"these":[110],"by":[112],"determining":[113],"correct":[115],"predictions":[116],"poisoned":[119,133,153,214],"images.":[120],"We":[121,168],"implemented":[123],"evaluated":[128],"against":[130],"three":[131],"state-of-the-art":[132,178],"evaluation,":[137],"show":[139],"that":[140,188],"can":[144],"<inline-formula":[146],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[148],"notation=\"LaTeX\">$\\approx$</tex-math></inline-formula>":[149],"88%":[150],"average":[156],"fast":[161],"4.4":[163],"ms":[164],"per":[165],"input":[166,215],"image.":[167],"compare":[170],"with":[176],"defence":[179],"methodologies":[180],"proposed":[181],"for":[182,216],"attacks.":[184],"Our":[185],"evaluation":[186],"reveals":[187],"despite":[189],"being":[190],"blackbox":[192],"approach,":[193],"more":[198],"effective":[199],"thwarting":[201],"than":[204],"existing":[206],"techniques.":[207],"Finally,":[208],"reconstruct":[211],"exact":[213],"user":[218],"effectively":[220],"test":[221],"their":[222],"systems.":[223]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":19},{"year":2024,"cited_by_count":19},{"year":2023,"cited_by_count":12},{"year":2022,"cited_by_count":6},{"year":2021,"cited_by_count":10},{"year":2020,"cited_by_count":7}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
