{"id":"https://openalex.org/W4405182564","doi":"https://doi.org/10.1145/3658644.3690250","title":"Fisher Information guided Purification against Backdoor Attacks","display_name":"Fisher Information guided Purification against Backdoor Attacks","publication_year":2024,"publication_date":"2024-12-02","ids":{"openalex":"https://openalex.org/W4405182564","doi":"https://doi.org/10.1145/3658644.3690250"},"language":"en","primary_location":{"id":"doi:10.1145/3658644.3690250","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3658644.3690250","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3658644.3690250","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3658644.3690250","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101823565","display_name":"Nazmul Karim","orcid":"https://orcid.org/0000-0001-5522-4456"},"institutions":[{"id":"https://openalex.org/I106165777","display_name":"University of Central Florida","ror":"https://ror.org/036nfer12","country_code":"US","type":"education","lineage":["https://openalex.org/I106165777"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nazmul Karim","raw_affiliation_strings":["University of Central Florida, Orlando, Florida, USA"],"raw_orcid":"https://orcid.org/0000-0001-5522-4456","affiliations":[{"raw_affiliation_string":"University of Central Florida, Orlando, Florida, USA","institution_ids":["https://openalex.org/I106165777"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053332315","display_name":"Abdullah Al Arafat","orcid":"https://orcid.org/0000-0002-7017-0158"},"institutions":[{"id":"https://openalex.org/I137902535","display_name":"North Carolina State University","ror":"https://ror.org/04tj63d06","country_code":"US","type":"education","lineage":["https://openalex.org/I137902535"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Abdullah Al Arafat","raw_affiliation_strings":["North Carolina State University, Raleigh, North Carolina, USA"],"raw_orcid":"https://orcid.org/0000-0002-7017-0158","affiliations":[{"raw_affiliation_string":"North Carolina State University, Raleigh, North Carolina, USA","institution_ids":["https://openalex.org/I137902535"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102895327","display_name":"Adnan Siraj Rakin","orcid":"https://orcid.org/0000-0001-5444-8394"},"institutions":[{"id":"https://openalex.org/I123946342","display_name":"Binghamton University","ror":"https://ror.org/008rmbt77","country_code":"US","type":"education","lineage":["https://openalex.org/I123946342"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Adnan Siraj Rakin","raw_affiliation_strings":["Binghamton University (SUNY), Binghamton, New York, USA"],"raw_orcid":"https://orcid.org/0000-0001-5444-8394","affiliations":[{"raw_affiliation_string":"Binghamton University (SUNY), Binghamton, New York, USA","institution_ids":["https://openalex.org/I123946342"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067621571","display_name":"Zhishan Guo","orcid":"https://orcid.org/0000-0002-5967-1058"},"institutions":[{"id":"https://openalex.org/I137902535","display_name":"North Carolina State University","ror":"https://ror.org/04tj63d06","country_code":"US","type":"education","lineage":["https://openalex.org/I137902535"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zhishan Guo","raw_affiliation_strings":["North Carolina State University, Raleigh, North Carolina, USA"],"raw_orcid":"https://orcid.org/0000-0002-5967-1058","affiliations":[{"raw_affiliation_string":"North Carolina State University, Raleigh, North Carolina, USA","institution_ids":["https://openalex.org/I137902535"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5109495751","display_name":"Nazanin Rahnavard","orcid":null},"institutions":[{"id":"https://openalex.org/I106165777","display_name":"University of Central Florida","ror":"https://ror.org/036nfer12","country_code":"US","type":"education","lineage":["https://openalex.org/I106165777"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nazanin Rahnavard","raw_affiliation_strings":["University of Central Florida, Orlando, Florida, USA"],"raw_orcid":"https://orcid.org/0000-0003-3434-1359","affiliations":[{"raw_affiliation_string":"University of Central Florida, Orlando, Florida, USA","institution_ids":["https://openalex.org/I106165777"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.2219,"has_fulltext":true,"cited_by_count":4,"citation_normalized_percentile":{"value":0.83751031,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":97,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"4435","last_page":"4449"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9987999796867371,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10812","display_name":"Human Pose and Action Recognition","score":0.9969000220298767,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9969533681869507},{"id":"https://openalex.org/keywords/maxima-and-minima","display_name":"Maxima and minima","score":0.8452615737915039},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.664109468460083},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.459199994802475},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.40071776509284973},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3341159224510193},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.19951856136322021},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.07554885745048523}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9969533681869507},{"id":"https://openalex.org/C186633575","wikidata":"https://www.wikidata.org/wiki/Q845060","display_name":"Maxima and minima","level":2,"score":0.8452615737915039},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.664109468460083},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.459199994802475},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.40071776509284973},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3341159224510193},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.19951856136322021},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.07554885745048523},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3658644.3690250","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3658644.3690250","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3658644.3690250","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3658644.3690250","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3658644.3690250","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3658644.3690250","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1233724514","display_name":"Cross-layer Adaptive Rate/Resolution Design for Energy-Aware Acquisition of Spectrally Sparse Signals Leveraging Spin-based Devices","funder_award_id":"1810256","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G3580070533","display_name":null,"funder_award_id":"ECCS-1810256 and CMMI-2246672","funder_id":"https://openalex.org/F4320323817","funder_display_name":"Universitas Brawijaya"},{"id":"https://openalex.org/G4834495204","display_name":null,"funder_award_id":"2246672","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G7541570764","display_name":null,"funder_award_id":"ECCS-1810256","funder_id":"https://openalex.org/F4320337392","funder_display_name":"Division of Electrical, Communications and Cyber Systems"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320323817","display_name":"Universitas Brawijaya","ror":"https://ror.org/01wk3d929"},{"id":"https://openalex.org/F4320337391","display_name":"Division of Civil, Mechanical and Manufacturing Innovation","ror":"https://ror.org/028yd4c30"},{"id":"https://openalex.org/F4320337392","display_name":"Division of Electrical, Communications and Cyber Systems","ror":"https://ror.org/01krpsy48"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4405182564.pdf","grobid_xml":"https://content.openalex.org/works/W4405182564.grobid-xml"},"referenced_works_count":43,"referenced_works":["https://openalex.org/W1523918473","https://openalex.org/W1539670134","https://openalex.org/W2126579184","https://openalex.org/W2257408573","https://openalex.org/W2302255633","https://openalex.org/W2807363941","https://openalex.org/W2885195348","https://openalex.org/W2934843808","https://openalex.org/W2942091739","https://openalex.org/W2947133760","https://openalex.org/W2970335439","https://openalex.org/W2971661634","https://openalex.org/W2996800219","https://openalex.org/W3012113073","https://openalex.org/W3034414373","https://openalex.org/W3035226846","https://openalex.org/W3093239278","https://openalex.org/W3106646114","https://openalex.org/W3107337211","https://openalex.org/W3112001526","https://openalex.org/W3114838227","https://openalex.org/W3162804012","https://openalex.org/W3178326529","https://openalex.org/W3210227505","https://openalex.org/W3214636874","https://openalex.org/W3216083537","https://openalex.org/W4214537185","https://openalex.org/W4214563788","https://openalex.org/W4214564822","https://openalex.org/W4214680449","https://openalex.org/W4214812658","https://openalex.org/W4236965008","https://openalex.org/W4239072543","https://openalex.org/W4252979261","https://openalex.org/W4283705168","https://openalex.org/W4286994061","https://openalex.org/W4312329299","https://openalex.org/W4312768002","https://openalex.org/W4321487910","https://openalex.org/W4382239944","https://openalex.org/W4386072159","https://openalex.org/W4390873175","https://openalex.org/W6800893530"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4281902577","https://openalex.org/W4309417370","https://openalex.org/W4292107232","https://openalex.org/W3009072493","https://openalex.org/W4386080799","https://openalex.org/W3140988292","https://openalex.org/W4317672133","https://openalex.org/W4386185023"],"abstract_inverted_index":{"Studies":[0],"on":[1,196],"backdoor":[2,37,55,100,114,132,145,201,237],"attacks":[3],"in":[4,129,248],"recent":[5],"years":[6],"suggest":[7],"that":[8,31,125,188],"an":[9,160,179],"adversary":[10],"can":[11,34,56,75],"compromise":[12],"the":[13,36,54,61,82,97,127,131,136,144,150,171,189],"integrity":[14],"of":[15,26,69,119,122,139,152,163,173,183,200],"a":[16,23,41,51,66,112,120,197],"deep":[17],"neural":[18],"network":[19],"(DNN)":[20],"by":[21,59,92],"manipulating":[22],"small":[24],"set":[25],"training":[27],"samples.Our":[28],"analysis":[29],"shows":[30],"such":[32,89],"manipulation":[33],"make":[35],"model":[38,62,128,227],"converge":[39],"to":[40,50,63,77,86],"bad":[42],"local":[43],"minima,":[44],"i.e.,":[45],"sharper":[46],"minima":[47,74],"as":[48,166],"compared":[49],"benign":[52],"model.Intuitively,":[53],"be":[57],"purified":[58],"re-optimizing":[60],"smoother":[64,73],"minima.However,":[65],"nave":[67],"adoption":[68],"any":[70],"optimization":[71],"targeting":[72],"lead":[76],"sub-optimal":[78],"purification":[79,115],"techniques":[80],"hampering":[81],"clean":[83,140],"test":[84],"accuracy.Hence,":[85],"effectively":[87],"obtain":[88],"re-optimization,":[90],"inspired":[91],"our":[93],"novel":[94,113,123],"perspective":[95],"establishing":[96],"connection":[98],"between":[99],"removal":[101,146],"and":[102,134,177,232],"loss":[103],"smoothness,":[104],"we":[105,158],"propose":[106],"Fisher":[107,153],"Information":[108,154],"guided":[109],"Purification":[110],"(FIP),":[111],"framework.Proposed":[116],"FIP":[117],"consists":[118],"couple":[121],"regularizers":[124],"aid":[126],"suppressing":[130],"effects":[133],"retaining":[135],"acquired":[137],"knowledge":[138,151],"data":[141],"distribution":[142],"throughout":[143],"procedure":[147],"through":[148],"exploiting":[149],"Matrix":[155],"(FIM).In":[156],"addition,":[157],"introduce":[159],"efficient":[161],"variant":[162],"FIP,":[164,168],"dubbed":[165],"Fast":[167],"which":[169],"reduces":[170],"number":[172],"tunable":[174],"parameters":[175],"significantly":[176],"obtains":[178],"impressive":[180],"runtime":[181],"gain":[182],"almost":[184],"5.Extensive":[185],"experiments":[186],"show":[187],"proposed":[190],"method":[191],"achieves":[192],"state-of-the-art":[193],"(SOTA)":[194],"performance":[195],"wide":[198],"range":[199],"defense":[202],"benchmarks:":[203],"5":[204],"different":[205,219,236],"tasks-Image":[206],"Recognition,":[207,212],"Object":[208],"Detection,":[209],"Video":[210],"Action":[211],"3D":[213],"point":[214],"Cloud,":[215],"Language":[216],"Generation;":[217],"11":[218],"datasets":[220],"including":[221],"ImageNet,":[222],"PASCAL":[223],"VOC,":[224],"UCF101;":[225],"diverse":[226],"architectures":[228],"spanning":[229],"both":[230],"CNN":[231],"vision":[233],"transformer;":[234],"14":[235],"attacks,":[238],"e.g.,":[239],"Dynamic,":[240],"WaNet,":[241],"LIRA,":[242],"ISSBA,":[243],"etc.Our":[244],"code":[245],"is":[246],"available":[247],"this":[249],"GitHub":[250],"Repository.":[251]},"counts_by_year":[{"year":2025,"cited_by_count":4}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
