← Search

Rui Ning

7 accepted papers

2026

DF-LoGiT: Data-Free Logic-Gated Backdoor Attacks in Vision Transformers

ICML 2026poster

The widespread adoption of Vision Transformers (ViTs) elevates supply-chain risk on third-party model hubs, where an adversary can implant backdoors into released checkpoints. Existing ViT backdoor attacks largely rely on poisoned-data training, while prior data-free attempts typically require synth…

Cited by 0SourceScholar
2026

Deep Incomplete Multi-View Clustering via Hierarchical Imputation and Alignment

AAAI 2026technical

Incomplete multi-view clustering (IMVC) aims to discover shared cluster structures from multi-view data with partial observations. The core challenges lie in accurately imputing missing views without introducing bias, while maintaining semantic consistency across views and compactness within cluster

Cited by 0SourcePDFScholar
2025

DictPFL: Efficient and Private Federated Learning on Encrypted Gradients

NeurIPS 2025poster

Federated Learning (FL) enables collaborative model training across institutions without sharing raw data. However, gradient sharing still risks privacy leakage, such as gradient inversion attacks. Homomorphic Encryption (HE) can secure aggregation but often incurs prohibitive computational and comm…

Cited by 0SourcecodeScholar
2024

SEER: Backdoor Detection for Vision-Language Models through Searching Target Text and Image Trigger Jointly

AAAI 2024technical

This paper proposes SEER, a novel backdoor detection algorithm for vision-language models, addressing the gap in the literature on multi-modal backdoor detection. While backdoor detection in single-modal models has been well studied, the investigation of such defenses in multi-modal models remains l…

2022

Hibernated Backdoor: A Mutual Information Empowered Backdoor Attack to Deep Neural Networks

AAAI 2022technical

We report a new neural backdoor attack, named Hibernated Backdoor, which is stealthy, aggressive and devastating. The backdoor is planted in a hibernated mode to avoid being detected. Once deployed and fine-tuned on end-devices, the hibernated backdoor turns into the active state that can be exploit…

Cited by 14SourcePDFScholar
2022

Most and Least Retrievable Images in Visual-Language Query Systems

ECCV 2022poster

"This is the first work to introduce the Most Retrievable Image(MRI) and Least Retrievable Image(LRI) concepts in modern text-to-image retrieval systems. An MRI is associated with and thus can be retrieved by many unrelated texts, while an LRI is disassociated from and thus not retrievable by relate…

2021

CLEAR: Clean-Up Sample-Targeted Backdoor in Neural Networks

ICCV 2021poster

The data poisoning attack has raised serious security concerns on the safety of deep neural networks since it can lead to neural backdoor that misclassifies certain inputs crafted by an attacker. In particular, the sample-targeted backdoor attack is a new challenge. It targets at one or a few specif…

Cited by 14PDFScholar