{"id":"https://openalex.org/W4417073179","doi":"https://doi.org/10.1145/3743093.3770939","title":"You Are Out of My Focus: A Defocus-Blur Backdoor Attack against Deep Learning Models","display_name":"You Are Out of My Focus: A Defocus-Blur Backdoor Attack against Deep Learning Models","publication_year":2025,"publication_date":"2025-12-06","ids":{"openalex":"https://openalex.org/W4417073179","doi":"https://doi.org/10.1145/3743093.3770939"},"language":null,"primary_location":{"id":"doi:10.1145/3743093.3770939","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3743093.3770939","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM International Conference on Multimedia in Asia","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Tao Wang","orcid":"https://orcid.org/0009-0009-2719-3678"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Tao Wang","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100325334","display_name":"Hongwei Li","orcid":"https://orcid.org/0000-0002-1961-7946"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hongwei Li","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066542952","display_name":"Wenbo Jiang","orcid":"https://orcid.org/0000-0002-4592-8094"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenbo Jiang","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5065844974","display_name":"Jiaming He","orcid":"https://orcid.org/0009-0006-5391-2056"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiaming He","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Zihan Wang","orcid":"https://orcid.org/0009-0000-5184-6637"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zihan Wang","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113368675","display_name":"Rui Zhang","orcid":"https://orcid.org/0009-0004-1200-2588"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Rui Zhang","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017191320","display_name":"Ji Guo","orcid":"https://orcid.org/0009-0008-8990-436X"},"institutions":[{"id":"https://openalex.org/I150229711","display_name":"University of Electronic Science and Technology of China","ror":"https://ror.org/04qr3zq92","country_code":"CN","type":"education","lineage":["https://openalex.org/I150229711"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ji Guo","raw_affiliation_strings":["University of Electronic Science and Technology of China, Chengdu, China"],"affiliations":[{"raw_affiliation_string":"University of Electronic Science and Technology of China, Chengdu, China","institution_ids":["https://openalex.org/I150229711"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101684253","display_name":"Jiachen Li","orcid":"https://orcid.org/0000-0002-0602-9360"},"institutions":[{"id":"https://openalex.org/I196699116","display_name":"Wuhan University of Technology","ror":"https://ror.org/03fe7t173","country_code":"CN","type":"education","lineage":["https://openalex.org/I196699116"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiachen Li","raw_affiliation_strings":["School of Computer Science and Artificial Intelligence, Wuhan University of Technology, Wuhan, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Artificial Intelligence, Wuhan University of Technology, Wuhan, China","institution_ids":["https://openalex.org/I196699116"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":8,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I150229711"],"apc_list":null,"apc_paid":null,"fwci":2.3568,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.92044998,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"7"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9169999957084656,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9169999957084656,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11105","display_name":"Advanced Image Processing Techniques","score":0.03150000050663948,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.017400000244379044,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.9886000156402588},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5939000248908997},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.5005000233650208},{"id":"https://openalex.org/keywords/gaussian","display_name":"Gaussian","score":0.4327999949455261},{"id":"https://openalex.org/keywords/particle-swarm-optimization","display_name":"Particle swarm optimization","score":0.41019999980926514},{"id":"https://openalex.org/keywords/trojan","display_name":"Trojan","score":0.3671000003814697},{"id":"https://openalex.org/keywords/unobservable","display_name":"Unobservable","score":0.36570000648498535},{"id":"https://openalex.org/keywords/image-restoration","display_name":"Image restoration","score":0.3621000051498413}],"concepts":[{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.9886000156402588},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6869999766349792},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6166999936103821},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5939000248908997},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.5005000233650208},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.45190000534057617},{"id":"https://openalex.org/C163716315","wikidata":"https://www.wikidata.org/wiki/Q901177","display_name":"Gaussian","level":2,"score":0.4327999949455261},{"id":"https://openalex.org/C85617194","wikidata":"https://www.wikidata.org/wiki/Q2072794","display_name":"Particle swarm optimization","level":2,"score":0.41019999980926514},{"id":"https://openalex.org/C174333608","wikidata":"https://www.wikidata.org/wiki/Q19635","display_name":"Trojan","level":2,"score":0.3671000003814697},{"id":"https://openalex.org/C2780695315","wikidata":"https://www.wikidata.org/wiki/Q3799040","display_name":"Unobservable","level":2,"score":0.36570000648498535},{"id":"https://openalex.org/C106430172","wikidata":"https://www.wikidata.org/wiki/Q6002272","display_name":"Image restoration","level":4,"score":0.3621000051498413},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3434999883174896},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.33640000224113464},{"id":"https://openalex.org/C9417928","wikidata":"https://www.wikidata.org/wiki/Q1070689","display_name":"Image processing","level":3,"score":0.31949999928474426},{"id":"https://openalex.org/C4199805","wikidata":"https://www.wikidata.org/wiki/Q2725903","display_name":"Gaussian noise","level":2,"score":0.3181000053882599},{"id":"https://openalex.org/C2776608160","wikidata":"https://www.wikidata.org/wiki/Q4785462","display_name":"Natural (archaeology)","level":2,"score":0.3174000084400177},{"id":"https://openalex.org/C61326573","wikidata":"https://www.wikidata.org/wiki/Q1496376","display_name":"Gaussian process","level":3,"score":0.29429998993873596},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.2888000011444092},{"id":"https://openalex.org/C104317376","wikidata":"https://www.wikidata.org/wiki/Q1894545","display_name":"Gaussian blur","level":5,"score":0.2766999900341034},{"id":"https://openalex.org/C2987933465","wikidata":"https://www.wikidata.org/wiki/Q141130","display_name":"Image manipulation","level":3,"score":0.2581000030040741},{"id":"https://openalex.org/C65856478","wikidata":"https://www.wikidata.org/wiki/Q3991682","display_name":"Attack model","level":2,"score":0.2542000114917755},{"id":"https://openalex.org/C67226441","wikidata":"https://www.wikidata.org/wiki/Q1665389","display_name":"Robust statistics","level":3,"score":0.25360000133514404}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3743093.3770939","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3743093.3770939","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 7th ACM International Conference on Multimedia in Asia","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G4570470601","display_name":null,"funder_award_id":"BX20230060 and 2024M760356","funder_id":"https://openalex.org/F4320321543","funder_display_name":"China Postdoctoral Science Foundation"},{"id":"https://openalex.org/G6123051551","display_name":null,"funder_award_id":"2023-XT00-00002-GX","funder_id":"https://openalex.org/F4320336736","funder_display_name":"Chengdu Science and Technology Program"},{"id":"https://openalex.org/G8728328795","display_name":null,"funder_award_id":"62402087 and 62020106013","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320321543","display_name":"China Postdoctoral Science Foundation","ror":"https://ror.org/0426zh255"},{"id":"https://openalex.org/F4320336736","display_name":"Chengdu Science and Technology Program","ror":null}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":16,"referenced_works":["https://openalex.org/W1786686177","https://openalex.org/W2133665775","https://openalex.org/W2141983208","https://openalex.org/W2765424254","https://openalex.org/W2942091739","https://openalex.org/W2962785568","https://openalex.org/W2962858109","https://openalex.org/W2990270730","https://openalex.org/W2996800219","https://openalex.org/W3107337211","https://openalex.org/W4214680449","https://openalex.org/W4372266914","https://openalex.org/W4386083011","https://openalex.org/W4396982204","https://openalex.org/W4409362356","https://openalex.org/W4413786017"],"related_works":[],"abstract_inverted_index":{"With":[0],"the":[1,23,33,52,75,88,93,98,103,121,129,151,165,169,180],"widespread":[2],"adoption":[3],"of":[4,45,97,168],"deep":[5],"learning":[6],"in":[7,61,164],"image":[8,139],"recognition,":[9],"backdoor":[10,27,68],"attacks":[11,28,40],"have":[12],"emerged":[13],"as":[14],"a":[15,43,66,111,157],"significant":[16],"security":[17],"threat,":[18],"drawing":[19],"increasing":[20],"attention":[21],"from":[22,42],"research":[24],"community.":[25],"Traditional":[26],"are":[29],"often":[30],"limited":[31],"to":[32,83,117],"digital":[34],"domain,":[35],"while":[36,106],"few":[37],"existing":[38],"physical-world":[39],"suffer":[41],"lack":[44],"stealthiness.":[46],"In":[47,171],"this":[48,85],"paper,":[49],"inspired":[50],"by":[51,58],"natural":[53,86],"defocus":[54,76,130],"blur":[55,77,82,124],"commonly":[56],"caused":[57],"camera":[59],"optics":[60],"real-world":[62],"environments,":[63],"we":[64,109],"propose":[65],"physically-aware":[67],"attack":[69,104,159],"method":[70,90,182],"called":[71],"DBBA":[72],"based":[73,154],"on":[74,136],"phenomenon.":[78,131],"By":[79],"leveraging":[80],"Gaussian":[81,123],"simulate":[84,128],"phenomenon,":[87],"proposed":[89,152,181],"enhances":[91],"both":[92],"stealthiness":[94,185],"and":[95,142,186],"plausibility":[96],"trigger.":[99],"To":[100],"further":[101],"optimize":[102],"effectiveness":[105,160],"maintaining":[107],"stealthiness,":[108],"introduce":[110],"Particle":[112],"Swarm":[113],"Optimization":[114],"(PSO)":[115],"algorithm":[116],"automatically":[118],"search":[119],"for":[120],"optimal":[122],"parameters":[125],"that":[126,150,179],"best":[127],"We":[132],"conduct":[133],"extensive":[134],"experiments":[135],"multiple":[137],"mainstream":[138],"classification":[140,166],"datasets":[141],"across":[143],"various":[144],"model":[145],"architectures.":[146],"Experimental":[147],"results":[148],"demonstrate":[149],"defocus-blur":[153],"trigger":[155],"achieves":[156],"high":[158],"with":[161],"minimal":[162],"degradation":[163],"accuracy":[167],"model.":[170],"addition,":[172],"evaluations":[173],"against":[174],"representative":[175],"defense":[176],"techniques":[177],"reveal":[178],"exhibits":[183],"strong":[184],"robustness.":[187]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-12-06T00:00:00"}
