{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2020:X47RAPIJ5IASMCL32D5MKIVITD","short_pith_number":"pith:X47RAPIJ","schema_version":"1.0","canonical_sha256":"bf3f103d09ea0126097bd0fac522a898e1a892b3d1110a1d789525b4d8477e73","source":{"kind":"arxiv","id":"2011.02167","version":2},"attestation_state":"computed","paper":{"title":"BaFFLe: Backdoor detection via Feedback-based Federated Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Ghassan Karame, Giorgia Azzurra Marson, Helen M\\\"ollering, Sebastien Andreina","submitted_at":"2020-11-04T07:44:51Z","abstract_excerpt":"Recent studies have shown that federated learning (FL) is vulnerable to poisoning attacks that inject a backdoor into the global model. These attacks are effective even when performed by a single client, and undetectable by most existing defensive techniques. In this paper, we propose Backdoor detection via Feedback-based Federated Learning (BAFFLE), a novel defense to secure FL against backdoor attacks. The core idea behind BAFFLE is to leverage data of multiple clients not only for training but also for uncovering model poisoning. We exploit the availability of diverse datasets at the variou"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2011.02167","kind":"arxiv","version":2},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.CR","submitted_at":"2020-11-04T07:44:51Z","cross_cats_sorted":["cs.LG"],"title_canon_sha256":"2c21e417a99e04be704fc430010a51f396d024b7a81fa0183cf0cb306e04bb3a","abstract_canon_sha256":"7dab602b8b3e8e7c780683e20deb788ce4cee4261a605297ccf513a27a343481"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T02:32:47.225788Z","signature_b64":"+hVoyva5xIAfy/Tmv3m3/NTC6XVEa0/+/DhOzy3Ux3qFOyuyuSRmEXr0CIQtNpU3FpnDhv0V0bgim08XR4PzAQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"bf3f103d09ea0126097bd0fac522a898e1a892b3d1110a1d789525b4d8477e73","last_reissued_at":"2026-07-05T02:32:47.225362Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T02:32:47.225362Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"BaFFLe: Backdoor detection via Feedback-based Federated Learning","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.LG"],"primary_cat":"cs.CR","authors_text":"Ghassan Karame, Giorgia Azzurra Marson, Helen M\\\"ollering, Sebastien Andreina","submitted_at":"2020-11-04T07:44:51Z","abstract_excerpt":"Recent studies have shown that federated learning (FL) is vulnerable to poisoning attacks that inject a backdoor into the global model. These attacks are effective even when performed by a single client, and undetectable by most existing defensive techniques. In this paper, we propose Backdoor detection via Feedback-based Federated Learning (BAFFLE), a novel defense to secure FL against backdoor attacks. The core idea behind BAFFLE is to leverage data of multiple clients not only for training but also for uncovering model poisoning. We exploit the availability of diverse datasets at the variou"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2011.02167","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2011.02167/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2011.02167","created_at":"2026-07-05T02:32:47.225420+00:00"},{"alias_kind":"arxiv_version","alias_value":"2011.02167v2","created_at":"2026-07-05T02:32:47.225420+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2011.02167","created_at":"2026-07-05T02:32:47.225420+00:00"},{"alias_kind":"pith_short_12","alias_value":"X47RAPIJ5IAS","created_at":"2026-07-05T02:32:47.225420+00:00"},{"alias_kind":"pith_short_16","alias_value":"X47RAPIJ5IASMCL3","created_at":"2026-07-05T02:32:47.225420+00:00"},{"alias_kind":"pith_short_8","alias_value":"X47RAPIJ","created_at":"2026-07-05T02:32:47.225420+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD","json":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD.json","graph_json":"https://pith.science/api/pith-number/X47RAPIJ5IASMCL32D5MKIVITD/graph.json","events_json":"https://pith.science/api/pith-number/X47RAPIJ5IASMCL32D5MKIVITD/events.json","paper":"https://pith.science/paper/X47RAPIJ"},"agent_actions":{"view_html":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD","download_json":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD.json","view_paper":"https://pith.science/paper/X47RAPIJ","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2011.02167&json=true","fetch_graph":"https://pith.science/api/pith-number/X47RAPIJ5IASMCL32D5MKIVITD/graph.json","fetch_events":"https://pith.science/api/pith-number/X47RAPIJ5IASMCL32D5MKIVITD/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD/action/timestamp_anchor","attest_storage":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD/action/storage_attestation","attest_author":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD/action/author_attestation","sign_citation":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD/action/citation_signature","submit_replication":"https://pith.science/pith/X47RAPIJ5IASMCL32D5MKIVITD/action/replication_record"}},"created_at":"2026-07-05T02:32:47.225420+00:00","updated_at":"2026-07-05T02:32:47.225420+00:00"}