Jiale Zhang

Papers in Database (5)

defense arXiv Jan 10, 2025 · Jan 2025

Fine-tuning is Not Fine: Mitigating Backdoor Attacks in GNNs with Limited Clean Data

Jiale Zhang, Bosen Rao, Chengcheng Zhu et al. · Yangzhou University · Zhejiang University +1 more

Defends GNNs against backdoor attacks via attention-transfer distillation using only 3% clean data to drop ASR below 5%

Model Poisoning graph
PDF
attack arXiv Aug 11, 2025 · Aug 2025

IPBA: Imperceptible Perturbation Backdoor Attack in Federated Self-Supervised Learning

Jiayao Wang, Yang Song, Zhendong Zhao et al. · Yangzhou University · Chinese Academy of Sciences +2 more

Imperceptible backdoor attack on federated self-supervised learning using Sliced-Wasserstein distance for stealthy trigger optimization

Model Poisoning visionfederated-learning
PDF
defense arXiv Aug 5, 2025 · Aug 2025

BDFirewall: Towards Effective and Expeditiously Black-Box Backdoor Defense in MLaaS

Ye Li, Chengcheng Zhu, Yanchao Zhao et al. · Nanjing University of Aeronautics and Astronautics · Nanjing University +1 more

Defends against backdoor attacks in black-box MLaaS by progressively purging HVT, SVT, and LVT triggers at inference time

Model Poisoning vision
PDF
attack arXiv Mar 3, 2026 · 4w ago

DSBA: Dynamic Stealthy Backdoor Attack with Collaborative Optimization in Self-Supervised Learning

Jiayao Wang, Mohammad Maruf Hasan, Yiping Zhang et al. · Yangzhou University · Chaohu University +1 more

Proposes a stealthy backdoor attack on SSL encoders via collaborative optimization of dynamic trigger generation and feature space manipulation

Model Poisoning vision
PDF
attack arXiv Mar 1, 2026 · 5w ago

BadRSSD: Backdoor Attacks on Regularized Self-Supervised Diffusion Models

Jiayao Wang, Yiping Zhang, Mohammad Maruf Hasan et al. · Yangzhou University · Chaohu University +1 more

Backdoor attack on self-supervised diffusion models hijacks PCA-space representations to steer generation toward attacker-specified targets on trigger activation

Model Poisoning visiongenerative
PDF