{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2022:ALWBWMQEGJZJTFFQ37W4AGRSBY","short_pith_number":"pith:ALWBWMQE","schema_version":"1.0","canonical_sha256":"02ec1b320432729994b0dfedc01a320e315abf513edc736aebcbddda39e20585","source":{"kind":"arxiv","id":"2201.00763","version":1},"attestation_state":"computed","paper":{"title":"DeepSight: Mitigating Backdoor Attacks in Federated Learning Through Deep Model Inspection","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Ahmad-Reza Sadeghi, Markus Miettinen, Phillip Rieger, Thien Duc Nguyen","submitted_at":"2022-01-03T17:10:07Z","abstract_excerpt":"Federated Learning (FL) allows multiple clients to collaboratively train a Neural Network (NN) model on their private data without revealing the data. Recently, several targeted poisoning attacks against FL have been introduced. These attacks inject a backdoor into the resulting model that allows adversary-controlled inputs to be misclassified. Existing countermeasures against backdoor attacks are inefficient and often merely aim to exclude deviating models from the aggregation. However, this approach also removes benign models of clients with deviating data distributions, causing the aggregat"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2201.00763","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","primary_cat":"cs.CR","submitted_at":"2022-01-03T17:10:07Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"aeb369fd23d1bdd15547b7c7dde3d14eb910e7613342c41e998e5cf7c577864d","abstract_canon_sha256":"ff41002eb114fd0cb8ba7efe4074b4b0870217aacce6ef4c05bec365900e2361"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T03:45:06.316733Z","signature_b64":"oQwDOwtFBmYdcPnVpXj0ZLOpjmC/CziglQH2YJRYaAEeHx5Ja+3OLWMX9pkamrBvqyVQYcKmjLZtxQw0PnEQDw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"02ec1b320432729994b0dfedc01a320e315abf513edc736aebcbddda39e20585","last_reissued_at":"2026-07-05T03:45:06.316088Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T03:45:06.316088Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"DeepSight: Mitigating Backdoor Attacks in Federated Learning Through Deep Model Inspection","license":"http://creativecommons.org/licenses/by-nc-sa/4.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Ahmad-Reza Sadeghi, Markus Miettinen, Phillip Rieger, Thien Duc Nguyen","submitted_at":"2022-01-03T17:10:07Z","abstract_excerpt":"Federated Learning (FL) allows multiple clients to collaboratively train a Neural Network (NN) model on their private data without revealing the data. Recently, several targeted poisoning attacks against FL have been introduced. These attacks inject a backdoor into the resulting model that allows adversary-controlled inputs to be misclassified. Existing countermeasures against backdoor attacks are inefficient and often merely aim to exclude deviating models from the aggregation. However, this approach also removes benign models of clients with deviating data distributions, causing the aggregat"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2201.00763","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2201.00763/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2201.00763","created_at":"2026-07-05T03:45:06.316171+00:00"},{"alias_kind":"arxiv_version","alias_value":"2201.00763v1","created_at":"2026-07-05T03:45:06.316171+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2201.00763","created_at":"2026-07-05T03:45:06.316171+00:00"},{"alias_kind":"pith_short_12","alias_value":"ALWBWMQEGJZJ","created_at":"2026-07-05T03:45:06.316171+00:00"},{"alias_kind":"pith_short_16","alias_value":"ALWBWMQEGJZJTFFQ","created_at":"2026-07-05T03:45:06.316171+00:00"},{"alias_kind":"pith_short_8","alias_value":"ALWBWMQE","created_at":"2026-07-05T03:45:06.316171+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":2,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.25858","citing_title":"Color Matters: Trigger Color Affects Success in Federated Backdoor Attacks","ref_index":28,"is_internal_anchor":false},{"citing_arxiv_id":"2604.04030","citing_title":"Jellyfish: Zero-Shot Federated Unlearning Scheme with Knowledge Disentanglement","ref_index":66,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY","json":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY.json","graph_json":"https://pith.science/api/pith-number/ALWBWMQEGJZJTFFQ37W4AGRSBY/graph.json","events_json":"https://pith.science/api/pith-number/ALWBWMQEGJZJTFFQ37W4AGRSBY/events.json","paper":"https://pith.science/paper/ALWBWMQE"},"agent_actions":{"view_html":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY","download_json":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY.json","view_paper":"https://pith.science/paper/ALWBWMQE","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2201.00763&json=true","fetch_graph":"https://pith.science/api/pith-number/ALWBWMQEGJZJTFFQ37W4AGRSBY/graph.json","fetch_events":"https://pith.science/api/pith-number/ALWBWMQEGJZJTFFQ37W4AGRSBY/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY/action/timestamp_anchor","attest_storage":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY/action/storage_attestation","attest_author":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY/action/author_attestation","sign_citation":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY/action/citation_signature","submit_replication":"https://pith.science/pith/ALWBWMQEGJZJTFFQ37W4AGRSBY/action/replication_record"}},"created_at":"2026-07-05T03:45:06.316171+00:00","updated_at":"2026-07-05T03:45:06.316171+00:00"}