{"id":"https://openalex.org/W4389279215","doi":"https://doi.org/10.1145/3627106.3627134","title":"On the Detection of Image-Scaling Attacks in Machine Learning","display_name":"On the Detection of Image-Scaling Attacks in Machine Learning","publication_year":2023,"publication_date":"2023-12-02","ids":{"openalex":"https://openalex.org/W4389279215","doi":"https://doi.org/10.1145/3627106.3627134"},"language":"en","primary_location":{"id":"doi:10.1145/3627106.3627134","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3627106.3627134","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3627106.3627134","source":{"id":"https://openalex.org/S4306417673","display_name":"Annual Computer Security Applications Conference","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Annual Computer Security Applications Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3627106.3627134","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5085852581","display_name":"Erwin Quiring","orcid":"https://orcid.org/0009-0004-7170-1274"},"institutions":[{"id":"https://openalex.org/I1297971548","display_name":"International Computer Science Institute","ror":"https://ror.org/01ewh7m12","country_code":"US","type":"nonprofit","lineage":["https://openalex.org/I1297971548"]},{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE","US"],"is_corresponding":false,"raw_author_name":"Erwin Quiring","raw_affiliation_strings":["International Computer Science Institute (ICSI), USA and Ruhr University Bochum, Germany"],"raw_orcid":"https://orcid.org/0009-0004-7170-1274","affiliations":[{"raw_affiliation_string":"International Computer Science Institute (ICSI), USA and Ruhr University Bochum, Germany","institution_ids":["https://openalex.org/I1297971548","https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101657411","display_name":"Andreas M\u00fcller","orcid":"https://orcid.org/0009-0003-1199-4477"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Andreas M\u00fcller","raw_affiliation_strings":["Ruhr University Bochum, Germany"],"raw_orcid":"https://orcid.org/0009-0003-1199-4477","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum, Germany","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5066077721","display_name":"Konrad Rieck","orcid":"https://orcid.org/0000-0002-5054-8758"},"institutions":[{"id":"https://openalex.org/I4577782","display_name":"Technische Universit\u00e4t Berlin","ror":"https://ror.org/03v4gjf40","country_code":"DE","type":"education","lineage":["https://openalex.org/I4577782"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Konrad Rieck","raw_affiliation_strings":["TU Berlin, Germany"],"raw_orcid":"https://orcid.org/0000-0002-5054-8758","affiliations":[{"raw_affiliation_string":"TU Berlin, Germany","institution_ids":["https://openalex.org/I4577782"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.3119,"has_fulltext":true,"cited_by_count":3,"citation_normalized_percentile":{"value":0.4953656,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"506","last_page":"520"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.996999979019165,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.9836999773979187,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.8973337411880493},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7473545670509338},{"id":"https://openalex.org/keywords/scaling","display_name":"Scaling","score":0.71354740858078},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.6623365879058838},{"id":"https://openalex.org/keywords/preprocessor","display_name":"Preprocessor","score":0.6365823745727539},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5656741261482239},{"id":"https://openalex.org/keywords/image-scaling","display_name":"Image scaling","score":0.423694372177124},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.4198282063007355},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.41093796491622925},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3635476231575012},{"id":"https://openalex.org/keywords/image-processing","display_name":"Image processing","score":0.35477226972579956},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.3374214172363281},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.0844389796257019}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.8973337411880493},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7473545670509338},{"id":"https://openalex.org/C99844830","wikidata":"https://www.wikidata.org/wiki/Q102441924","display_name":"Scaling","level":2,"score":0.71354740858078},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.6623365879058838},{"id":"https://openalex.org/C34736171","wikidata":"https://www.wikidata.org/wiki/Q918333","display_name":"Preprocessor","level":2,"score":0.6365823745727539},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5656741261482239},{"id":"https://openalex.org/C27405340","wikidata":"https://www.wikidata.org/wiki/Q440296","display_name":"Image scaling","level":4,"score":0.423694372177124},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.4198282063007355},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.41093796491622925},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3635476231575012},{"id":"https://openalex.org/C9417928","wikidata":"https://www.wikidata.org/wiki/Q1070689","display_name":"Image processing","level":3,"score":0.35477226972579956},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.3374214172363281},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0844389796257019},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3627106.3627134","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3627106.3627134","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3627106.3627134","source":{"id":"https://openalex.org/S4306417673","display_name":"Annual Computer Security Applications Conference","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Annual Computer Security Applications Conference","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3627106.3627134","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3627106.3627134","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3627106.3627134","source":{"id":"https://openalex.org/S4306417673","display_name":"Annual Computer Security Applications Conference","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Annual Computer Security Applications Conference","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G18682879","display_name":null,"funder_award_id":"390781972","funder_id":"https://openalex.org/F4320320879","funder_display_name":"Deutsche Forschungsgemeinschaft"},{"id":"https://openalex.org/G37013880","display_name":null,"funder_award_id":"101043410","funder_id":"https://openalex.org/F4320323817","funder_display_name":"Universitas Brawijaya"},{"id":"https://openalex.org/G6892912966","display_name":null,"funder_award_id":"390781972","funder_id":"https://openalex.org/F4320323817","funder_display_name":"Universitas Brawijaya"},{"id":"https://openalex.org/G7910929434","display_name":null,"funder_award_id":"BIFOLD23B","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"}],"funders":[{"id":"https://openalex.org/F4320320875","display_name":"Deutscher Akademischer Austauschdienst","ror":"https://ror.org/039djdh30"},{"id":"https://openalex.org/F4320320879","display_name":"Deutsche Forschungsgemeinschaft","ror":"https://ror.org/018mejw64"},{"id":"https://openalex.org/F4320321114","display_name":"Bundesministerium f\u00fcr Bildung und Forschung","ror":"https://ror.org/04pz7b180"},{"id":"https://openalex.org/F4320323817","display_name":"Universitas Brawijaya","ror":"https://ror.org/01wk3d929"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4389279215.pdf","grobid_xml":"https://content.openalex.org/works/W4389279215.grobid-xml"},"referenced_works_count":21,"referenced_works":["https://openalex.org/W1964026338","https://openalex.org/W2064076387","https://openalex.org/W2117539524","https://openalex.org/W2142694135","https://openalex.org/W2159244236","https://openalex.org/W2194775991","https://openalex.org/W2572504188","https://openalex.org/W2753783305","https://openalex.org/W2796004214","https://openalex.org/W2947227164","https://openalex.org/W2963857521","https://openalex.org/W2965628707","https://openalex.org/W2985913519","https://openalex.org/W3004589439","https://openalex.org/W3010216907","https://openalex.org/W3020403113","https://openalex.org/W3114686421","https://openalex.org/W3115279145","https://openalex.org/W3118608800","https://openalex.org/W3188362651","https://openalex.org/W3205870294"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W3140988292","https://openalex.org/W2145653895","https://openalex.org/W2903632330"],"abstract_inverted_index":{"Image":[0],"scaling":[1,65],"is":[2,17,77],"an":[3,24,30],"integral":[4],"part":[5],"of":[6],"machine":[7],"learning":[8],"and":[9,56],"computer":[10],"vision":[11],"systems.":[12],"Unfortunately,":[13],"this":[14],"preprocessing":[15],"step":[16],"vulnerable":[18],"to":[19,29,48,53,63,81],"so-called":[20],"image-scaling":[21],"attacks":[22,85],"where":[23],"attacker":[25],"makes":[26],"unnoticeable":[27],"changes":[28],"image":[31,38],"so":[32],"that":[33],"it":[34,76],"becomes":[35],"a":[36],"new":[37,44],"after":[39],"scaling.":[40],"This":[41],"opens":[42],"up":[43],"ways":[45],"for":[46],"attackers":[47],"control":[49],"the":[50],"prediction":[51],"or":[52],"improve":[54],"poisoning":[55],"backdoor":[57],"attacks.":[58],"While":[59],"effective":[60],"techniques":[61],"exist":[62],"prevent":[64],"attacks,":[66],"their":[67],"detection":[68],"has":[69],"not":[70,79],"been":[71],"rigorously":[72],"studied":[73],"yet.":[74],"Consequently,":[75],"currently":[78],"possible":[80],"reliably":[82],"spot":[83],"these":[84],"in":[86],"practice.":[87]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
