{"id":"https://openalex.org/W7135036220","doi":"https://doi.org/10.1109/vlsi-soc64688.2025.11421719","title":"Trojan Attacks on Graph Convolution Neural Networks for Circuit Analysis","display_name":"Trojan Attacks on Graph Convolution Neural Networks for Circuit Analysis","publication_year":2025,"publication_date":"2025-10-12","ids":{"openalex":"https://openalex.org/W7135036220","doi":"https://doi.org/10.1109/vlsi-soc64688.2025.11421719"},"language":null,"primary_location":{"id":"doi:10.1109/vlsi-soc64688.2025.11421719","is_oa":false,"landing_page_url":"https://doi.org/10.1109/vlsi-soc64688.2025.11421719","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IFIP/IEEE 33rd International Conference on Very Large Scale Integration (VLSI-SoC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5103140585","display_name":"Rupesh Raj Karn","orcid":"https://orcid.org/0009-0008-3774-7016"},"institutions":[{"id":"https://openalex.org/I57206974","display_name":"New York University","ror":"https://ror.org/0190ak572","country_code":"US","type":"education","lineage":["https://openalex.org/I57206974"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Rupesh Raj Karn","raw_affiliation_strings":["New York University,Center for Cyber Security,Abu Dhabi,UAE"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"New York University,Center for Cyber Security,Abu Dhabi,UAE","institution_ids":["https://openalex.org/I57206974"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5059987567","display_name":"Ozgur Sinanoglu","orcid":"https://orcid.org/0000-0003-0782-0397"},"institutions":[{"id":"https://openalex.org/I57206974","display_name":"New York University","ror":"https://ror.org/0190ak572","country_code":"US","type":"education","lineage":["https://openalex.org/I57206974"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ozgur Sinanoglu","raw_affiliation_strings":["New York University,Center for Cyber Security,Abu Dhabi,UAE"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"New York University,Center for Cyber Security,Abu Dhabi,UAE","institution_ids":["https://openalex.org/I57206974"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.73329944,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.8391000032424927,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.8391000032424927,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.10170000046491623,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10363","display_name":"Low-power high-performance VLSI design","score":0.013700000010430813,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.6121000051498413},{"id":"https://openalex.org/keywords/mnist-database","display_name":"MNIST database","score":0.5327000021934509},{"id":"https://openalex.org/keywords/convolution","display_name":"Convolution (computer science)","score":0.5196999907493591},{"id":"https://openalex.org/keywords/trojan","display_name":"Trojan","score":0.5194000005722046},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.5097000002861023},{"id":"https://openalex.org/keywords/fidelity","display_name":"Fidelity","score":0.49380001425743103},{"id":"https://openalex.org/keywords/node","display_name":"Node (physics)","score":0.4867999851703644},{"id":"https://openalex.org/keywords/simple","display_name":"Simple (philosophy)","score":0.4562999904155731}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7311999797821045},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.6121000051498413},{"id":"https://openalex.org/C190502265","wikidata":"https://www.wikidata.org/wiki/Q17069496","display_name":"MNIST database","level":3,"score":0.5327000021934509},{"id":"https://openalex.org/C45347329","wikidata":"https://www.wikidata.org/wiki/Q5166604","display_name":"Convolution (computer science)","level":3,"score":0.5196999907493591},{"id":"https://openalex.org/C174333608","wikidata":"https://www.wikidata.org/wiki/Q19635","display_name":"Trojan","level":2,"score":0.5194000005722046},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.5097000002861023},{"id":"https://openalex.org/C2776459999","wikidata":"https://www.wikidata.org/wiki/Q2119376","display_name":"Fidelity","level":2,"score":0.49380001425743103},{"id":"https://openalex.org/C62611344","wikidata":"https://www.wikidata.org/wiki/Q1062658","display_name":"Node (physics)","level":2,"score":0.4867999851703644},{"id":"https://openalex.org/C2780586882","wikidata":"https://www.wikidata.org/wiki/Q7520643","display_name":"Simple (philosophy)","level":2,"score":0.4562999904155731},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.4138000011444092},{"id":"https://openalex.org/C14580979","wikidata":"https://www.wikidata.org/wiki/Q876049","display_name":"Very-large-scale integration","level":2,"score":0.39959999918937683},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3939000070095062},{"id":"https://openalex.org/C32946077","wikidata":"https://www.wikidata.org/wiki/Q618079","display_name":"Network analysis","level":2,"score":0.3824000060558319},{"id":"https://openalex.org/C106937863","wikidata":"https://www.wikidata.org/wiki/Q7236518","display_name":"Power graph analysis","level":3,"score":0.37619999051094055},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.3637000024318695},{"id":"https://openalex.org/C190560348","wikidata":"https://www.wikidata.org/wiki/Q3245116","display_name":"Circuit design","level":2,"score":0.3513000011444092},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.3449999988079071},{"id":"https://openalex.org/C113364801","wikidata":"https://www.wikidata.org/wiki/Q26674","display_name":"High fidelity","level":2,"score":0.32440000772476196},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.3206999897956848},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.3124000132083893},{"id":"https://openalex.org/C2780873074","wikidata":"https://www.wikidata.org/wiki/Q5656397","display_name":"Hardware Trojan","level":3,"score":0.30979999899864197},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.30809998512268066},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.3073999881744385},{"id":"https://openalex.org/C187455244","wikidata":"https://www.wikidata.org/wiki/Q942353","display_name":"Boolean function","level":2,"score":0.3025999963283539},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.29440000653266907},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.27469998598098755},{"id":"https://openalex.org/C134146338","wikidata":"https://www.wikidata.org/wiki/Q1815901","display_name":"Electronic circuit","level":2,"score":0.26170000433921814},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.2513999938964844}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/vlsi-soc64688.2025.11421719","is_oa":false,"landing_page_url":"https://doi.org/10.1109/vlsi-soc64688.2025.11421719","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IFIP/IEEE 33rd International Conference on Very Large Scale Integration (VLSI-SoC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9","score":0.47848066687583923}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Graph":[0],"convolutional":[1],"neural":[2,23],"networks":[3],"(GCNNs)":[4],"have":[5],"become":[6],"a":[7,30,68],"powerful":[8],"tool":[9],"for":[10,49,91],"circuit":[11,53,95],"analysis":[12],"in":[13,52,94,116],"VLSI":[14],"design.":[15],"This":[16],"work":[17],"systematically":[18],"studies":[19],"Trojan":[20],"attacks":[21,98],"on":[22,29,34,80],"networks,":[24],"first":[25],"demonstrating":[26],"their":[27],"impact":[28],"simple":[31],"CNN":[32],"trained":[33],"MNIST":[35],"to":[36,47,64,67],"illustrate":[37],"trigger":[38,108],"insertion":[39],"and":[40,60,103,110],"misclassification.":[41],"We":[42],"then":[43],"extend":[44],"this":[45],"approach":[46],"GCNNs":[48],"node":[50,58],"classification":[51],"netlists":[54],"(ISCAS\u201985,":[55],"EPFL),":[56],"introducing":[57],"features":[59],"graph":[61],"connectivity":[62],"triggers":[63],"force":[65],"misclassification":[66],"target":[69],"class.":[70],"Experiments":[71],"show":[72],"that":[73],"while":[74],"Trojanized":[75],"models":[76],"maintain":[77],"high":[78,100],"accuracy":[79],"clean":[81],"data,":[82],"they":[83],"reliably":[84],"misclassify":[85],"triggered":[86],"samples,":[87],"highlighting":[88],"the":[89],"need":[90],"robust":[92],"architectures":[93],"analysis.":[96],"The":[97],"exhibit":[99],"success":[101],"rates":[102],"clean-data":[104],"fidelity":[105],"across":[106],"diverse":[107],"types":[109],"gate":[111],"classes,":[112],"revealing":[113],"structural":[114],"vulnerabilities":[115],"GCNN-based":[117],"EDA":[118],"pipelines.":[119]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-13T00:00:00"}
