{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2021:N4B47O63ZWANYP54VRGVCBDYQ7","short_pith_number":"pith:N4B47O63","schema_version":"1.0","canonical_sha256":"6f03cfbbdbcd80dc3fbcac4d51047887d6eb5a1753b4f7451a88dfee9e1bc1cc","source":{"kind":"arxiv","id":"2110.11571","version":3},"attestation_state":"computed","paper":{"title":"Anti-Backdoor Learning: Training Clean Models on Poisoned Data","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.LG","authors_text":"Bo Li, Lingjuan Lyu, Nodens Koren, Xingjun Ma, Xixiang Lyu, Yige Li","submitted_at":"2021-10-22T03:30:48Z","abstract_excerpt":"Backdoor attack has emerged as a major security threat to deep neural networks (DNNs). While existing defense methods have demonstrated promising results on detecting or erasing backdoors, it is still not clear whether robust training methods can be devised to prevent the backdoor triggers being injected into the trained model in the first place. In this paper, we introduce the concept of \\emph{anti-backdoor learning}, aiming to train \\emph{clean} models given backdoor-poisoned data. We frame the overall learning process as a dual-task of learning the \\emph{clean} and the \\emph{backdoor} porti"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2110.11571","kind":"arxiv","version":3},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.LG","submitted_at":"2021-10-22T03:30:48Z","cross_cats_sorted":["cs.AI"],"title_canon_sha256":"40d3953f73a5a1e57bdcbd725a0edbb3ddf3fcbec958567d03bf5de6e4b7a4dc","abstract_canon_sha256":"24cd6be2a32e66b4f263f399f1c93130820282d213c9f3bb2cc0cd762d7a3893"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T03:36:40.596246Z","signature_b64":"DPxUKTmakORsHO2WsZN01hgDGC+QYe/a66CvqMIosDiUJNTqlD18GZx6HKeHZmqX7Pokf4XbzlvdPwpyH/zmAg==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"6f03cfbbdbcd80dc3fbcac4d51047887d6eb5a1753b4f7451a88dfee9e1bc1cc","last_reissued_at":"2026-07-05T03:36:40.595719Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T03:36:40.595719Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Anti-Backdoor Learning: Training Clean Models on Poisoned Data","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.AI"],"primary_cat":"cs.LG","authors_text":"Bo Li, Lingjuan Lyu, Nodens Koren, Xingjun Ma, Xixiang Lyu, Yige Li","submitted_at":"2021-10-22T03:30:48Z","abstract_excerpt":"Backdoor attack has emerged as a major security threat to deep neural networks (DNNs). While existing defense methods have demonstrated promising results on detecting or erasing backdoors, it is still not clear whether robust training methods can be devised to prevent the backdoor triggers being injected into the trained model in the first place. In this paper, we introduce the concept of \\emph{anti-backdoor learning}, aiming to train \\emph{clean} models given backdoor-poisoned data. We frame the overall learning process as a dual-task of learning the \\emph{clean} and the \\emph{backdoor} porti"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2110.11571","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2110.11571/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2110.11571","created_at":"2026-07-05T03:36:40.595785+00:00"},{"alias_kind":"arxiv_version","alias_value":"2110.11571v3","created_at":"2026-07-05T03:36:40.595785+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2110.11571","created_at":"2026-07-05T03:36:40.595785+00:00"},{"alias_kind":"pith_short_12","alias_value":"N4B47O63ZWAN","created_at":"2026-07-05T03:36:40.595785+00:00"},{"alias_kind":"pith_short_16","alias_value":"N4B47O63ZWANYP54","created_at":"2026-07-05T03:36:40.595785+00:00"},{"alias_kind":"pith_short_8","alias_value":"N4B47O63","created_at":"2026-07-05T03:36:40.595785+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7","json":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7.json","graph_json":"https://pith.science/api/pith-number/N4B47O63ZWANYP54VRGVCBDYQ7/graph.json","events_json":"https://pith.science/api/pith-number/N4B47O63ZWANYP54VRGVCBDYQ7/events.json","paper":"https://pith.science/paper/N4B47O63"},"agent_actions":{"view_html":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7","download_json":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7.json","view_paper":"https://pith.science/paper/N4B47O63","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2110.11571&json=true","fetch_graph":"https://pith.science/api/pith-number/N4B47O63ZWANYP54VRGVCBDYQ7/graph.json","fetch_events":"https://pith.science/api/pith-number/N4B47O63ZWANYP54VRGVCBDYQ7/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7/action/timestamp_anchor","attest_storage":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7/action/storage_attestation","attest_author":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7/action/author_attestation","sign_citation":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7/action/citation_signature","submit_replication":"https://pith.science/pith/N4B47O63ZWANYP54VRGVCBDYQ7/action/replication_record"}},"created_at":"2026-07-05T03:36:40.595785+00:00","updated_at":"2026-07-05T03:36:40.595785+00:00"}