@inproceedings{bb162600,
AUTHOR = "Deng, Y. and Karam, L.J.",
TITLE = "Universal Adversarial Attack Via Enhanced Projected Gradient Descent",
BOOKTITLE = ICIP20,
YEAR = "2020",
PAGES = "1241-1245",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158453"}
@inproceedings{bb162601,
AUTHOR = "Sun, C. and Chen, S. and Cai, J. and Huang, X.",
TITLE = "Type I Attack For Generative Models",
BOOKTITLE = ICIP20,
YEAR = "2020",
PAGES = "593-597",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158454"}
@inproceedings{bb162602,
AUTHOR = "Braunegg, A. and Chakraborty, A. and Krumdick, M. and Lape, N. and Leary, S. and Manville, K. and Merkhofer, E. and Strickhart, L. and Walmer, M.",
TITLE = "Apricot: A Dataset of Physical Adversarial Attacks on Object Detection",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "XXI:35-50",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158455"}
@inproceedings{bb162603,
AUTHOR = "Zhang, H. and Zhu, L.C. and Zhu, Y. and Yang, Y.",
TITLE = "Motion-Excited Sampler: Video Adversarial Attack with Sparked Prior",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "XX:240-256",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158456"}
@inproceedings{bb162604,
AUTHOR = "Gao, L.L. and Zhang, Q.L. and Song, J.K. and Liu, X.L. and Shen, H.T.",
TITLE = "Patch-wise Attack for Fooling Deep Neural Network",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "XXVIII:307-322",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158457"}
@inproceedings{bb162605,
AUTHOR = "Bai, J.W. and Chen, B. and Li, Y.M. and Wu, D.X. and Guo, W.W. and Xia, S.T. and Yang, E.H.",
TITLE = "Targeted Attack for Deep Hashing Based Retrieval",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "I:618-634",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158458"}
@inproceedings{bb162606,
AUTHOR = "Nakka, K.K. and Salzmann, M.",
TITLE = "Indirect Local Attacks for Context-aware Semantic Segmentation Networks",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "V:611-628",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158459"}
@inproceedings{bb162607,
AUTHOR = "Wu, Z.X. and Lim, S.N. and Davis, L.S. and Goldstein, T.",
TITLE = "Making an Invisibility Cloak: Real World Adversarial Attacks on Object
Detectors",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "IV:1-17",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158460"}
@inproceedings{bb162608,
AUTHOR = "Li, Q.Z. and Guo, Y.W. and Chen, H.",
TITLE = "Yet Another Intermediate-level Attack",
BOOKTITLE = ECCV20,
YEAR = "2020",
PAGES = "XVI: 241-257",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158461"}
@inproceedings{bb162609,
AUTHOR = "Li, M. and Deng, C. and Li, T. and Yan, J. and Gao, X. and Huang, H.",
TITLE = "Towards Transferable Targeted Attack",
BOOKTITLE = CVPR20,
YEAR = "2020",
PAGES = "638-646",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158462"}
@inproceedings{bb162610,
AUTHOR = "Gupta, S. and Dube, P. and Verma, A.",
TITLE = "Improving the affordability of robustness training for DNNs",
BOOKTITLE = AML-CV20,
YEAR = "2020",
PAGES = "3383-3392",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158463"}
@inproceedings{bb162611,
AUTHOR = "Zhang, Z. and Wu, T.",
TITLE = "Learning Ordered Top-k Adversarial Attacks via Adversarial
Distillation",
BOOKTITLE = AML-CV20,
YEAR = "2020",
PAGES = "3364-3373",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158464"}
@inproceedings{bb162612,
AUTHOR = "Chen, X. and Yan, X. and Zheng, F. and Jiang, Y. and Xia, S. and Zhao, Y. and Ji, R.",
TITLE = "One-Shot Adversarial Attacks on Visual Tracking With Dual Attention",
BOOKTITLE = CVPR20,
YEAR = "2020",
PAGES = "10173-10182",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158465"}
@inproceedings{bb162613,
AUTHOR = "Zhou, H. and Chen, D. and Liao, J. and Chen, K. and Dong, X. and Liu, K. and Zhang, W. and Hua, G. and Yu, N.",
TITLE = "LG-GAN: Label Guided Adversarial Network for Flexible Targeted Attack
of Point Cloud Based Deep Networks",
BOOKTITLE = CVPR20,
YEAR = "2020",
PAGES = "10353-10362",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158466"}
@inproceedings{bb162614,
AUTHOR = "Machiraju, H. and Balasubramanian, V.N.",
TITLE = "A Little Fog for a Large Turn",
BOOKTITLE = WACV20,
YEAR = "2020",
PAGES = "2891-2900",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158467"}
@inproceedings{bb162615,
AUTHOR = "Yang, C.H. and Liu, Y. and Chen, P. and Ma, X. and Tsai, Y.J.",
TITLE = "When Causal Intervention Meets Adversarial Examples and Image Masking
for Deep Neural Networks",
BOOKTITLE = ICIP19,
YEAR = "2019",
PAGES = "3811-3815",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158468"}
@inproceedings{bb162616,
AUTHOR = "Yao, H. and Regan, M. and Yang, Y. and Ren, Y.",
TITLE = "Image Decomposition and Classification Through a Generative Model",
BOOKTITLE = ICIP19,
YEAR = "2019",
PAGES = "400-404",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158469"}
@inproceedings{bb162617,
AUTHOR = "Li, J. and Ji, R. and Liu, H. and Hong, X. and Gao, Y. and Tian, Q.",
TITLE = "Universal Perturbation Attack Against Image Retrieval",
BOOKTITLE = ICCV19,
YEAR = "2019",
PAGES = "4898-4907",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158470"}
@inproceedings{bb162618,
AUTHOR = "Finlay, C. and Pooladian, A. and Oberman, A.",
TITLE = "The LogBarrier Adversarial Attack:
Making Effective Use of Decision Boundary Information",
BOOKTITLE = ICCV19,
YEAR = "2019",
PAGES = "4861-4869",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158471"}
@inproceedings{bb162619,
AUTHOR = "Jandial, S. and Mangla, P. and Varshney, S. and Balasubramanian, V.",
TITLE = "AdvGAN++: Harnessing Latent Layers for Adversary Generation",
BOOKTITLE = NeruArch19,
YEAR = "2019",
PAGES = "2045-2048",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158472"}
@inproceedings{bb162620,
AUTHOR = "Wang, C.L. and Bunel, R. and Dvijotham, K. and Huang, P.S. and Grefenstette, E. and Kohli, P.",
TITLE = "Knowing When to Stop: Evaluation and Verification of Conformity to
Output-Size Specifications",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "12252-12261",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158473"}
@inproceedings{bb162621,
AUTHOR = "Modas, A. and Moosavi Dezfooli, S.M. and Frossard, P.",
TITLE = "SparseFool: A Few Pixels Make a Big Difference",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "9079-9088",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158474"}
@inproceedings{bb162622,
AUTHOR = "Yao, Z.W. and Gholami, A. and Xu, P. and Keutzer, K. and Mahoney, M.W.",
TITLE = "Trust Region Based Adversarial Attack on Neural Networks",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "11342-11351",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158475"}
@inproceedings{bb162623,
AUTHOR = "Zeng, X.H. and Liu, C.X. and Wang, Y.S. and Qiu, W.C. and Xie, L.X. and Tai, Y.W. and Tang, C.K. and Yuille, A.L.",
TITLE = "Adversarial Attacks Beyond the Image Space",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "4297-4306",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158476"}
@inproceedings{bb162624,
AUTHOR = "Corneanu, C.A. and Madadi, M. and Escalera, S. and Martinez, A.M.",
TITLE = "What Does It Mean to Learn in Deep Networks? And, How Does One Detect
Adversarial Attacks?",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "4752-4761",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158477"}
@inproceedings{bb162625,
AUTHOR = "Liu, X.Q. and Hsieh, C.J.",
TITLE = "Rob-GAN: Generator, Discriminator, and Adversarial Attacker",
BOOKTITLE = CVPR19,
YEAR = "2019",
PAGES = "11226-11235",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158478"}
@inproceedings{bb162626,
AUTHOR = "Gupta, P. and Rahtu, E.",
TITLE = "MLAttack: Fooling Semantic Segmentation Networks by Multi-layer Attacks",
BOOKTITLE = GCPR19,
YEAR = "2019",
PAGES = "401-413",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158479"}
@inproceedings{bb162627,
AUTHOR = "Zhao, W. and Yang, P.P. and Ni, R.R. and Zhao, Y. and Li, W.J.",
TITLE = "Cycle GAN-Based Attack on Recaptured Images to Fool both Human and
Machine",
BOOKTITLE = IWDW18,
YEAR = "2018",
PAGES = "83-92",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158480"}
@inproceedings{bb162628,
AUTHOR = "Xu, X.J. and Chen, X.Y. and Liu, C. and Rohrbach, A. and Darrell, T.J. and Song, D.",
TITLE = "Fooling Vision and Language Models Despite Localization and Attention
Mechanism",
BOOKTITLE = CVPR18,
YEAR = "2018",
PAGES = "4951-4961",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158481"}
@inproceedings{bb162629,
AUTHOR = "Dong, Y. and Liao, F. and Pang, T. and Su, H. and Zhu, J. and Hu, X. and Li, J.",
TITLE = "Boosting Adversarial Attacks with Momentum",
BOOKTITLE = CVPR18,
YEAR = "2018",
PAGES = "9185-9193",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158482"}
@inproceedings{bb162630,
AUTHOR = "Eykholt, K. and Evtimov, I. and Fernandes, E. and Li, B. and Rahmati, A. and Xiao, C. and Prakash, A. and Kohno, T. and Song, D.",
TITLE = "Robust Physical-World Attacks on Deep Learning Visual Classification",
BOOKTITLE = CVPR18,
YEAR = "2018",
PAGES = "1625-1634",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654defatk5.html#TT158483"}
@article{bb162631,
AUTHOR = "Chen, X. and Ma, Y.N. and Lu, S.W. and Yao, Y.",
TITLE = "Boundary augment: A data augment method to defend poison attack",
JOURNAL = IET-IPR,
VOLUME = "15",
YEAR = "2021",
NUMBER = "13",
PAGES = "3292-3303",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158484"}
@article{bb162632,
AUTHOR = "Ma, K. and Xu, Q.Q. and Zeng, J.S. and Cao, X.C. and Huang, Q.M.",
TITLE = "Poisoning Attack Against Estimating From Pairwise Comparisons",
JOURNAL = PAMI,
VOLUME = "44",
YEAR = "2022",
NUMBER = "10",
MONTH = "October",
PAGES = "6393-6408",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158485"}
@article{bb162633,
AUTHOR = "Zhang, J. and Chen, D.D. and Huang, Q.D. and Liao, J. and Zhang, W.M. and Feng, H.M. and Hua, G. and Yu, N.H.",
TITLE = "Poison Ink: Robust and Invisible Backdoor Attack",
JOURNAL = IP,
VOLUME = "31",
YEAR = "2022",
PAGES = "5691-5705",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158486"}
@article{bb162634,
AUTHOR = "Gao, Y.H. and Li, Y.M. and Zhu, L.H. and Wu, D.X. and Jiang, Y. and Xia, S.T.",
TITLE = "Not All Samples Are Born Equal:
Towards Effective Clean-Label Backdoor Attacks",
JOURNAL = PR,
VOLUME = "139",
YEAR = "2023",
PAGES = "109512",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158487"}
@article{bb162635,
AUTHOR = "Ma, Q.L. and Qin, J.P. and Yan, K. and Wang, L. and Sun, H.",
TITLE = "Stealthy Frequency-Domain Backdoor Attacks:
Fourier Decomposition and Fundamental Frequency Injection",
JOURNAL = SPLetters,
VOLUME = "30",
YEAR = "2023",
PAGES = "1677-1681",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158488"}
@article{bb162636,
AUTHOR = "Zhang, Z. and Yuan, X. and Zhu, L. and Song, J.K. and Nie, L.Q.",
TITLE = "BadCM: Invisible Backdoor Attack Against Cross-Modal Learning",
JOURNAL = IP,
VOLUME = "33",
YEAR = "2024",
PAGES = "2558-2571",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158489"}
@article{bb162637,
AUTHOR = "Wang, K.Y. and Deng, H.X. and Xu, Y.J. and Liu, Z.L. and Fang, Y.",
TITLE = "Multi-target label backdoor attacks on graph neural networks",
JOURNAL = PR,
VOLUME = "152",
YEAR = "2024",
PAGES = "110449",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158490"}
@article{bb162638,
AUTHOR = "Niu, Z.X. and Sun, Y.Y. and Miao, Q.G. and Jin, R. and Hua, G.",
TITLE = "Towards Unified Robustness Against Both Backdoor and Adversarial
Attacks",
JOURNAL = PAMI,
VOLUME = "46",
YEAR = "2024",
NUMBER = "12",
MONTH = "December",
PAGES = "7589-7605",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158491"}
@article{bb162639,
AUTHOR = "Wang, B. and Yu, F. and Wei, F. and Li, Y. and Wang, W.",
TITLE = "Invisible Intruders: Label-Consistent Backdoor Attack Using
Re-Parameterized Noise Trigger",
JOURNAL = MultMed,
VOLUME = "26",
YEAR = "2024",
PAGES = "10766-10778",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158492"}
@article{bb162640,
AUTHOR = "Chen, W.M. and Xu, X.W. and Wang, X.D. and Zhou, H.S. and Li, Z. and Chen, Y.M.",
TITLE = "Invisible backdoor attack with attention and steganography",
JOURNAL = CVIU,
VOLUME = "249",
YEAR = "2024",
PAGES = "104208",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158493"}
@article{bb162641,
AUTHOR = "Hou, L.S. and Hua, Z.Y. and Li, Y.H. and Zheng, Y.F. and Zhang, L.Y.",
TITLE = "M-to-N Backdoor Paradigm: A Multi-Trigger and Multi-Target Attack to
Deep Learning Models",
JOURNAL = CirSysVideo,
VOLUME = "34",
YEAR = "2024",
NUMBER = "11",
MONTH = "November",
PAGES = "11299-11312",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158494"}
@article{bb162642,
AUTHOR = "Tang, W.X. and Li, J.H. and Rao, Y. and Zhou, Z. and Peng, F.",
TITLE = "A trigger-perceivable backdoor attack framework driven by image
steganography",
JOURNAL = PR,
VOLUME = "161",
YEAR = "2025",
PAGES = "111262",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158495"}
@article{bb162643,
AUTHOR = "Feng, Y. and Ma, B.T. and Liu, D.N. and Zhang, Y.N. and Cai, W.D. and Xia, Y.",
TITLE = "Contrastive Neuron Pruning for Backdoor Defense",
JOURNAL = IP,
VOLUME = "34",
YEAR = "2025",
PAGES = "1234-1245",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158496"}
@article{bb162644,
AUTHOR = "Sundar, A.P. and Li, F. and Zou, X. and Gao, T. and Hosler, R.",
TITLE = "Vaccination Against Backdoor Attacks on Federated Learning Systems",
JOURNAL = SMCS,
VOLUME = "55",
YEAR = "2025",
NUMBER = "7",
MONTH = "July",
PAGES = "4434-4443",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158497"}
@article{bb162645,
AUTHOR = "Hou, L.S. and Hua, Z.Y. and Luo, W. and Zhang, L.Y.",
TITLE = "FixGuard: Repairing Backdoored Models via Class-Wise Trigger Recovery
and Unlearning",
JOURNAL = SPLetters,
VOLUME = "32",
YEAR = "2025",
PAGES = "2544-2548",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158498"}
@article{bb162646,
AUTHOR = "Zhang, X.Y. and Jin, Y.L. and Tong, H.Y. and Lou, J. and Wu, K. and Chen, X.F.",
TITLE = "Purifier+: Plug-and-Play Backdoor Mitigation for Pre-Trained Models
via Activation Alignment",
JOURNAL = MultMed,
VOLUME = "27",
YEAR = "2025",
PAGES = "3910-3924",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158499"}
@article{bb162647,
AUTHOR = "Wu, B.Y. and Chen, H.R. and Zhang, M.D. and Zhu, Z.H. and Wei, S.K. and Yuan, D.N. and Zhu, M.L. and Wang, R.T. and Liu, L. and Shen, C.",
TITLE = "BackdoorBench: A Comprehensive Benchmark and Analysis of Backdoor
Learning",
JOURNAL = IJCV,
VOLUME = "133",
YEAR = "2025",
NUMBER = "8",
MONTH = "August",
PAGES = "5700-5787",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158500"}
@article{bb162648,
AUTHOR = "Wu, S.X. and He, Q. and Yu, J. and Sang, J.",
TITLE = "Backdoor for Debias: Mitigating Model Bias With Backdoor Attack-Based
Artificial Bias",
JOURNAL = CirSysVideo,
VOLUME = "35",
YEAR = "2025",
NUMBER = "8",
MONTH = "August",
PAGES = "8421-8432",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158501"}
@article{bb162649,
AUTHOR = "Wu, Z.X. and Wen, J. and Peng, W.L. and Zhou, Y. and Zhang, Z.W.",
TITLE = "IBSD: Iterable Black-Box Self-Defense Against Backdoor Attacks",
JOURNAL = SPLetters,
VOLUME = "32",
YEAR = "2025",
PAGES = "3979-3983",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158502"}
@article{bb162650,
AUTHOR = "Zhang, Y.L. and Pu, Y.J. and Li, J.Z. and Zhao, S.X. and Lang, B.",
TITLE = "TSBA: A two-stage poison-only backdoor attack on visual object
tracking",
JOURNAL = PR,
VOLUME = "171",
YEAR = "2026",
PAGES = "112222",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158503"}
@article{bb162651,
AUTHOR = "Li, S. and Zhang, J. and Qi, Y. and Chen, K.J. and Zhang, T.W. and Zhang, W.M. and Yu, N.H.",
TITLE = "Clean Image May Be Dangerous:
Data Poisoning Attacks Against Deep Hashing",
JOURNAL = MultMed,
VOLUME = "27",
YEAR = "2025",
PAGES = "8541-8554",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158504"}
@article{bb162652,
AUTHOR = "Hao, L.G. and Hao, K.R. and Wei, B. and Tang, X.S.",
TITLE = "Multi-target federated backdoor attack based on feature aggregation",
JOURNAL = PR,
VOLUME = "172",
YEAR = "2026",
PAGES = "112333",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158505"}
@article{bb162653,
AUTHOR = "Huang, L. and Zhang, L.Y. and Chang, C.C. and Wang, W. and Qin, C.",
TITLE = "Backdoor defense based on adversarial prediction proximity and
contrastive knowledge distillation",
JOURNAL = PR,
VOLUME = "172",
YEAR = "2026",
PAGES = "112336",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158506"}
@article{bb162654,
AUTHOR = "Zeng, D.Y. and Liu, Y.P. and Zhang, S.Z. and Zhang, S. and Fang, B.X. and Yang, Z.",
TITLE = "Perturbation distillation and backdoor feature induction for
universal defense in deep vision models",
JOURNAL = PR,
VOLUME = "172",
YEAR = "2026",
PAGES = "112485",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158507"}
@article{bb162655,
AUTHOR = "Li, B.L. and Hu, T. and Liu, X.L. and Xie, J.C. and Yi, P.",
TITLE = "Generalizable poisoning-resistant backdoor detection and removal
framework: From dataset perspective",
JOURNAL = PR,
VOLUME = "172",
YEAR = "2026",
PAGES = "112766",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158508"}
@article{bb162656,
AUTHOR = "Lu, R. and Yu, P. and Huang, Z.T. and Xia, Z.H. and Jiang, X.Y.",
TITLE = "BAM: Backdoor defense based on adversarial mitigation",
JOURNAL = PR,
VOLUME = "172",
YEAR = "2026",
PAGES = "112662",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158509"}
@article{bb162657,
AUTHOR = "Wang, R.T. and Chen, H.R. and Zhu, Z.H. and Liu, L. and Wu, B.Y.",
TITLE = "Versatile Backdoor Attack With Visible, Semantic, Sample-Specific and
Compatible Triggers",
JOURNAL = PAMI,
VOLUME = "48",
YEAR = "2026",
NUMBER = "3",
MONTH = "March",
PAGES = "3680-3697",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158510"}
@inproceedings{bb162658,
AUTHOR = "Li, Y.Z. and Li, Y.M. and Wu, B.Y. and Li, L.K. and He, R. and Lyu, S.W.",
TITLE = "Invisible Backdoor Attack with Sample-Specific Triggers",
BOOKTITLE = ICCV21,
YEAR = "2021",
PAGES = "16443-16452",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158511"}
@article{bb162659,
AUTHOR = "Wang, Z.Q. and Zhang, J. and Shan, S.G. and Chen, X.L.",
TITLE = "Dynamic Attention Analysis for Backdoor Detection in Text-to-Image
Diffusion Models",
JOURNAL = PAMI,
VOLUME = "48",
YEAR = "2026",
NUMBER = "3",
MONTH = "March",
PAGES = "3652-3665",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158512"}
@article{bb162660,
AUTHOR = "Li, Z.Q. and Zeng, Y. and Xia, P.F. and Liu, L. and Fu, Z.J. and Li, B.",
TITLE = "Large language models are good attackers: Efficient and stealthy
textual backdoor attacks",
JOURNAL = PR,
VOLUME = "174",
YEAR = "2026",
PAGES = "112967",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158513"}
@inproceedings{bb162661,
AUTHOR = "Le Roux, Q. and Teglia, Y. and Bourbao, E. and Moundi, P.L. and Furon, T.",
TITLE = "BAIT: A New DNN Backdoor Attack Using Inpainted Triggers",
BOOKTITLE = ICIP25,
YEAR = "2025",
PAGES = "510-515",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158514"}
@inproceedings{bb162662,
AUTHOR = "Yuan, Z.H. and Shi, J. and Zhou, P. and Gong, N.Z.Q. and Sun, L.C.",
TITLE = "BadToken: Token-level Backdoor Attacks to Multi-modal Large Language
Models",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "29927-29936",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158515"}
@inproceedings{bb162663,
AUTHOR = "Zhang, H. and Wang, Z. and Li, B. and Lin, F. and Han, T.X. and Jin, M.Y. and Zhan, C. and Du, M. and Wang, H.W. and Ma, S.Q.",
TITLE = "Invisible Backdoor Attack against Self-supervised Learning",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "25790-25801",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158516"}
@inproceedings{bb162664,
AUTHOR = "Li, Y. and Zhao, Y.C. and Zhu, C.C. and Zhang, J.",
TITLE = "Infighting in the Dark: Multi-Label Backdoor Attack in Federated
Learning",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "25770-25779",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158517"}
@inproceedings{bb162665,
AUTHOR = "Liu, Z. and Zhang, H.",
TITLE = "Stealthy Backdoor Attack in Self-Supervised Learning Vision Encoders
for Large Vision Language Models",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "25060-25070",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158518"}
@inproceedings{bb162666,
AUTHOR = "Zhang, H. and Wang, Y.C. and Yan, S.H. and Zhu, C.Y. and Zhou, Z.Q. and Hou, L.S. and Hu, S. and Li, M.H. and Zhang, Y.J. and Zhang, L.Y.",
TITLE = "Test-Time Backdoor Detection for Object Detection Models",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "24377-24386",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158519"}
@inproceedings{bb162667,
AUTHOR = "Hou, S.Z. and Li, S.Z. and Yao, D.",
TITLE = "DeDe: Detecting Backdoor Samples for SSL Encoders via Decoders",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "20675-20684",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158520"}
@inproceedings{bb162668,
AUTHOR = "Xu, J.H. and Zhang, Z.K. and Hu, R.",
TITLE = "Detecting Backdoor Attacks in Federated Learning via Direction
Alignment Inspection",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "20654-20664",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158521"}
@inproceedings{bb162669,
AUTHOR = "Han, Y.N. and Zhao, B.Y. and Chu, R. and Luo, F. and Sikdar, B. and Lao, Y.J.",
TITLE = "UIBDiffusion: Universal Imperceptible Backdoor Attack for Diffusion
Models",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "19186-19196",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158522"}
@inproceedings{bb162670,
AUTHOR = "Li, W. and Chen, P.Y. and Liu, S. and Wang, R.",
TITLE = "PSBD: Prediction Shift Uncertainty Unlocks Backdoor Detection",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "10255-10264",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158523"}
@inproceedings{bb162671,
AUTHOR = "Liang, S.Y. and Liang, J.W. and Pang, T.Y. and Du, C. and Liu, A. and Zhu, M.L. and Cao, X.C. and Tao, D.C.",
TITLE = "Revisiting Backdoor Attacks against Large Vision-Language Models from
Domain Shift",
BOOKTITLE = CVPR25,
YEAR = "2025",
PAGES = "9477-9486",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158524"}
@inproceedings{bb162672,
AUTHOR = "Lee, C.Y. and Kao, C.C. and Yeh, C.H. and Lu, C.S. and Yu, C.M. and Chen, C.S.",
TITLE = "Defending Against Repetitive Backdoor Attacks on Semi-Supervised
Learning Through Lens of Rate-Distortion-Perception Trade-Off",
BOOKTITLE = WACV25,
YEAR = "2025",
PAGES = "6465-6474",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158525"}
@inproceedings{bb162673,
AUTHOR = "Nagaonkar, S. and Tripathi, A.M. and Mishra, A.",
TITLE = "When Visual State Space Model Meets Backdoor Attacks",
BOOKTITLE = WACV25,
YEAR = "2025",
PAGES = "7419-7428",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158526"}
@inproceedings{bb162674,
AUTHOR = "Styborski, J. and Lyu, M.Z. and Huang, Y. and Kong, A.",
TITLE = "Exploiting Supervised Poison Vulnerability to Strengthen
Self-supervised Defense",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXXXII: 265-283",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158527"}
@inproceedings{bb162675,
AUTHOR = "Fares, S. and Nandakumar, K.",
TITLE = "Attack To Defend: Exploiting Adversarial Attacks for Detecting
Poisoned Models",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "24726-24735",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158528"}
@inproceedings{bb162676,
AUTHOR = "Karim, N. and Arafat, A.A. and Khalid, U. and Guo, Z. and Rahnavard, N.",
TITLE = "Augmented Neural Fine-tuning for Efficient Backdoor Purification",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXXX: 401-418",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158529"}
@inproceedings{bb162677,
AUTHOR = "Pham, H. and Ta, T.A. and Tran, A. and Doan, K.D.",
TITLE = "Flatness-aware Sequential Learning Generates Resilient Backdoors",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXXXVII: 89-107",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158530"}
@inproceedings{bb162678,
AUTHOR = "Huynh, T. and Tran, A. and Doan, K.D. and Pham, T.",
TITLE = "Data Poisoning Quantization Backdoor Attack",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXXXIV: 38-54",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158531"}
@inproceedings{bb162679,
AUTHOR = "Phan, H. and Xiao, J.Q. and Sui, Y. and Zhang, T. and Tang, Z.J. and Shi, C. and Wang, Y. and Chen, Y.Y. and Yuan, B.",
TITLE = "Clean and Compact: Efficient Data-free Backdoor Defense with Model
Compactness",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LX: 273-290",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158532"}
@inproceedings{bb162680,
AUTHOR = "Jin, H.B. and Chen, R.X. and Chen, J. and Zheng, H.B. and Zhang, Y. and Wang, H.H.",
TITLE = "Catchbackdoor: Backdoor Detection via Critical Trojan Neural Path
Fuzzing",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "XLVII: 90-106",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158533"}
@inproceedings{bb162681,
AUTHOR = "Huang, W.K. and Ye, M. and Shi, Z.K. and Du, B. and Tao, D.C.",
TITLE = "Fisher Calibration for Backdoor-robust Heterogeneous Federated Learning",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "XV: 247-265",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158534"}
@inproceedings{bb162682,
AUTHOR = "Wang, R.F. and Guo, Q. and Li, H.L. and Wan, R.J.",
TITLE = "Event Trojan: Asynchronous Event-based Backdoor Attacks",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "VII: 315-332",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158535"}
@inproceedings{bb162683,
AUTHOR = "Cheng, S.Y. and Shen, G.Y. and Zhang, K.Y. and Tao, G.H. and An, S.W. and Guo, H.X. and Ma, S.Q. and Zhang, X.Y.",
TITLE = "Unit: Backdoor Mitigation via Automated Neural Distribution Tightening",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXII: 262-281",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158536"}
@inproceedings{bb162684,
AUTHOR = "Cai, K. and Zhang, Z.K. and Lou, Q. and Yao, F.",
TITLE = "WBP: Training-time Backdoor Attacks Through Hardware-based Weight Bit
Poisoning",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXV: 179-197",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158537"}
@inproceedings{bb162685,
AUTHOR = "Lyu, W.M. and Pang, L. and Ma, T.F. and Ling, H.B. and Chen, C.",
TITLE = "TROJVLM: Backdoor Attack Against Vision Language Models",
BOOKTITLE = ECCV24,
YEAR = "2024",
PAGES = "LXV: 467-483",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158538"}
@inproceedings{bb162686,
AUTHOR = "Shin, J.J.",
TITLE = "Mask-Based Invisible Backdoor Attacks on Object Detection",
BOOKTITLE = ICIP24,
YEAR = "2024",
PAGES = "1050-1056",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158539"}
@inproceedings{bb162687,
AUTHOR = "Li, B. and Cai, Y. and Li, H. and Xue, F. and Li, Z.F. and Li, Y.M.",
TITLE = "Nearest is Not Dearest: Towards Practical Defense Against
Quantization-Conditioned Backdoor Attacks",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "24523-24533",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158540"}
@inproceedings{bb162688,
AUTHOR = "Guan, J. and Liang, J. and He, R.",
TITLE = "Backdoor Defense via Test-Time Detecting and Repairing",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "24564-24573",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158541"}
@inproceedings{bb162689,
AUTHOR = "Cheng, S.Y. and Tao, G.H. and Liu, Y.Q. and Shen, G.Y. and An, S.W. and Feng, S.W. and Xu, X.Z. and Zhang, K.Y. and Ma, S.Q. and Zhang, X.Y.",
TITLE = "Lotus: Evasive and Resilient Backdoor Attacks through
Sub-Partitioning",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "24798-24809",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158542"}
@inproceedings{bb162690,
AUTHOR = "Hammoud, H.A.A.K. and Liu, S.M. and Alkhrashi, M. and AlBalawi, F. and Ghanem, B.",
TITLE = "Look, Listen, and Attack:
Backdoor Attacks Against Video Action Recognition",
BOOKTITLE = SAIAD24,
YEAR = "2024",
PAGES = "3439-3450",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158543"}
@inproceedings{bb162691,
AUTHOR = "Zhang, J.H. and Liu, H.B. and Jia, J.Y. and Gong, N.Z.Q.",
TITLE = "Data Poisoning Based Backdoor Attacks to Contrastive Learning",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "24357-24366",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158544"}
@inproceedings{bb162692,
AUTHOR = "Yin, W. and Lou, J. and Zhou, P. and Xie, Y. and Feng, D. and Sun, Y.H. and Zhang, T. and Sun, L.C.",
TITLE = "Physical Backdoor: Towards Temperature-Based Backdoor Attacks in the
Physical World",
BOOKTITLE = CVPR24,
YEAR = "2024",
PAGES = "12733-12743",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158545"}
@inproceedings{bb162693,
AUTHOR = "Subramanya, A. and Koohpayegani, S.A. and Saha, A. and Tejankar, A. and Pirsiavash, H.",
TITLE = "A Closer Look at Robustness of Vision Transformers to Backdoor
Attacks",
BOOKTITLE = WACV24,
YEAR = "2024",
PAGES = "3862-3871",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158546"}
@inproceedings{bb162694,
AUTHOR = "Zhu, Z.X. and Wang, R. and Zou, C. and Jing, L.H.",
TITLE = "The Victim and The Beneficiary: Exploiting a Poisoned Model to Train
a Clean Model on Poisoned Data",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "155-164",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158547"}
@inproceedings{bb162695,
AUTHOR = "Ding, R. and Duan, S.J. and Xu, X.L. and Fei, Y.",
TITLE = "VertexSerum: Poisoning Graph Neural Networks for Link Inference",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "4509-4518",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158548"}
@inproceedings{bb162696,
AUTHOR = "Bansal, H. and Yin, F. and Singhi, N. and Grover, A. and Yang, Y. and Chang, K.W.",
TITLE = "CleanCLIP: Mitigating Data Poisoning Attacks in Multimodal
Contrastive Learning",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "112-123",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158549"}
@inproceedings{bb162697,
AUTHOR = "Sur, I. and Sikka, K. and Walmer, M. and Koneripalli, K. and Roy, A. and Lin, X. and Divakaran, A. and Jha, S.",
TITLE = "TIJO: Trigger Inversion with Joint Optimization for Defending
Multimodal Backdoored Models",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "165-175",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158550"}
@inproceedings{bb162698,
AUTHOR = "Li, C.J. and Pang, R. and Xi, Z. and Du, T.Y. and Ji, S. and Yao, Y. and Wang, T.",
TITLE = "An Embarrassingly Simple Backdoor Attack on Self-supervised Learning",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "4344-4355",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158551"}
@inproceedings{bb162699,
AUTHOR = "Zhu, M.L. and Wei, S. and Shen, L. and Fan, Y.B. and Wu, B.Y.",
TITLE = "Enhancing Fine-Tuning based Backdoor Defense with Sharpness-Aware
Minimization",
BOOKTITLE = ICCV23,
YEAR = "2023",
PAGES = "4443-4454",
BIBSOURCE = "http://www.visionbib.com/bibliography/pattern654bdoor7.html#TT158552"}
Last update:Feb 26, 2026 at 10:58:24