{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2020:KNX4ENTM57QP4WU6IWRHLTNTBI","short_pith_number":"pith:KNX4ENTM","schema_version":"1.0","canonical_sha256":"536fc2366cefe0fe5a9e45a275cdb30a1d3796699f9955e231ebc393fb19f23f","source":{"kind":"arxiv","id":"2011.01767","version":2},"attestation_state":"computed","paper":{"title":"Mitigating Backdoor Attacks in Federated Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Chen Wu, Prasenjit Mitra, Sencun Zhu, Xian Yang","submitted_at":"2020-10-28T18:39:28Z","abstract_excerpt":"Malicious clients can attack federated learning systems using malicious data, including backdoor samples, during the training phase. The compromised global model will perform well on the validation dataset designed for the task, but a small subset of data with backdoor patterns may trigger the model to make a wrong prediction. There has been an arms race between attackers who tried to conceal attacks and defenders who tried to detect attacks during the aggregation stage of training on the server-side. In this work, we propose a new and effective method to mitigate backdoor attacks after the tr"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2011.01767","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2020-10-28T18:39:28Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"e0d95cae98381d761e53dc1b5b26a90254c10f42d1111169764306e7bfae8f97","abstract_canon_sha256":"543c299cb5b8ad1895350191d9688c32a970b47c9d33122fd23f078c98da9751"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T02:07:05.303125Z","signature_b64":"sA2qlk0kxT3Z7yn17iq/JuAvzWdkZIJkSObqpbykhCsOUFoDodsC0Hod3Xy57WzDsN1JtCAhPD8cNa52a6SfAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"536fc2366cefe0fe5a9e45a275cdb30a1d3796699f9955e231ebc393fb19f23f","last_reissued_at":"2026-07-05T02:07:05.302657Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T02:07:05.302657Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Mitigating Backdoor Attacks in Federated Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Chen Wu, Prasenjit Mitra, Sencun Zhu, Xian Yang","submitted_at":"2020-10-28T18:39:28Z","abstract_excerpt":"Malicious clients can attack federated learning systems using malicious data, including backdoor samples, during the training phase. The compromised global model will perform well on the validation dataset designed for the task, but a small subset of data with backdoor patterns may trigger the model to make a wrong prediction. There has been an arms race between attackers who tried to conceal attacks and defenders who tried to detect attacks during the aggregation stage of training on the server-side. In this work, we propose a new and effective method to mitigate backdoor attacks after the tr"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2011.01767","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2011.01767/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2011.01767","created_at":"2026-07-05T02:07:05.302716+00:00"},{"alias_kind":"arxiv_version","alias_value":"2011.01767v2","created_at":"2026-07-05T02:07:05.302716+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2011.01767","created_at":"2026-07-05T02:07:05.302716+00:00"},{"alias_kind":"pith_short_12","alias_value":"KNX4ENTM57QP","created_at":"2026-07-05T02:07:05.302716+00:00"},{"alias_kind":"pith_short_16","alias_value":"KNX4ENTM57QP4WU6","created_at":"2026-07-05T02:07:05.302716+00:00"},{"alias_kind":"pith_short_8","alias_value":"KNX4ENTM","created_at":"2026-07-05T02:07:05.302716+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":3,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2407.15389","citing_title":"Poisoning with A Pill: Circumventing Detection in Federated Learning","ref_index":51,"is_internal_anchor":false},{"citing_arxiv_id":"2411.03926","citing_title":"Act in Collusion: Distributed Multi-Target Backdoor Attacks in Federated Learning","ref_index":51,"is_internal_anchor":false},{"citing_arxiv_id":"2509.08089","citing_title":"Hammer and Anvil: Toward a Theory of Backdoors in Federated Learning","ref_index":14,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI","json":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI.json","graph_json":"https://pith.science/api/pith-number/KNX4ENTM57QP4WU6IWRHLTNTBI/graph.json","events_json":"https://pith.science/api/pith-number/KNX4ENTM57QP4WU6IWRHLTNTBI/events.json","paper":"https://pith.science/paper/KNX4ENTM"},"agent_actions":{"view_html":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI","download_json":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI.json","view_paper":"https://pith.science/paper/KNX4ENTM","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2011.01767&json=true","fetch_graph":"https://pith.science/api/pith-number/KNX4ENTM57QP4WU6IWRHLTNTBI/graph.json","fetch_events":"https://pith.science/api/pith-number/KNX4ENTM57QP4WU6IWRHLTNTBI/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI/action/timestamp_anchor","attest_storage":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI/action/storage_attestation","attest_author":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI/action/author_attestation","sign_citation":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI/action/citation_signature","submit_replication":"https://pith.science/pith/KNX4ENTM57QP4WU6IWRHLTNTBI/action/replication_record"}},"created_at":"2026-07-05T02:07:05.302716+00:00","updated_at":"2026-07-05T02:07:05.302716+00:00"}