Michael Backes

Active 1988–2026

464
Papers
20,474
Citations
72
h-index
271
i10-index

Citations

Citations per year for Michael Backes1971: 1 citations1997: 1 citations1998: 1 citations2000: 1 citations2001: 2 citations2002: 13 citations2003: 75 citations2004: 162 citations2005: 165 citations2006: 212 citations2007: 136 citations2008: 181 citations2009: 193 citations2010: 209 citations2011: 237 citations2012: 225 citations2013: 236 citations2014: 262 citations2015: 334 citations2016: 369 citations2017: 520 citations2018: 685 citations2019: 906 citations2020: 1,006 citations2021: 1,244 citations2022: 1,039 citations2023: 1,178 citations2024: 1,693 citations2025: 1,639 citations2026: 616 citations2027: 1 citations1972–1996: no citations, so these years are not shown1999: no citations, so this year is not shown

Citation sources

Countries

World map of the countries and regions citing this authorUnited States: 2,832 citing papers, 20.3% of this breakdownChina: 2,134 citing papers, 15.3% of this breakdownGermany: 1,215 citing papers, 8.7% of this breakdownUnited Kingdom: 798 citing papers, 5.7% of this breakdownAustralia: 531 citing papers, 3.8% of this breakdownFrance: 485 citing papers, 3.5% of this breakdownItaly: 463 citing papers, 3.3% of this breakdownSwitzerland: 409 citing papers, 2.9% of this breakdownCanada: 395 citing papers, 2.8% of this breakdownJapan: 335 citing papers, 2.4% of this breakdownIndia: 280 citing papers, 2% of this breakdownNetherlands: 270 citing papers, 2% of this breakdown
0%20.3%Other 27.3%

Fields

  • Computer Science82.9%
  • Social Sciences5.4%
  • Medicine2.3%
  • Engineering2.2%
  • Physics and Astronomy2%
  • Decision Sciences1%
  • Other4.2%

Topics

  • Advanced Malware Detection Techniques9.4%
  • Adversarial Robustness in Machine Learning6.8%
  • Cryptography and Data Security5.7%
  • Privacy-Preserving Technologies in Data5.3%
  • Security and Verification in Computing4.4%
  • Network Security and Intrusion Detection3.8%
  • Other64.6%

Coauthors

All papers

Open in search
  1. "Do Anything Now": Characterizing and Evaluating In-The-Wild Jailbreak Prompts on Large Language Models

    Authors: , , , , - on ACM SIGSAC Conference on Computer and Communications Security, CCS 2024 cited by 436

  2. TrustLLM: Trustworthiness in Large Language Models

    Authors: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , Jian Pei, Jian Liu, Jianfeng Gao, Jiawei Han, Jieyu Zhao, Jiliang Tang, Jindong Wang, John C. Mitchell, Kai Shu, Kaidi Xu, Kai-Wei Chang, Lifang He, Lifu Huang, Michael Backes, Neil Zhenqiang Gong, Philip S. Yu, Pin-Yu Chen, Quanquan Gu, Ran Xu, Rex Ying, Shuiwang Ji, Suman Jana, Tianlong Chen, Tianming Liu, Tianyi Zhou, William Wang, Xiang Li, Xiangliang Zhang, Xiao Wang, Xing Xie, Xun Chen, Xuyu Wang, Yan Liu, Yanfang Ye, Yinzhi Cao, Yue Zhao - arXiv (Cornell University), CoRR 2024 cited by 410

  3. Swarm Learning for decentralized and confidential clinical machine learning

    Authors: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , Elena De Domenico, Christian Siever, Michael Kraut, Milind Y. Desai, Bruno Monnet, Maria Saridaki, Charles Siegel, Anna Drews, Melanie Nuesch-Germano, Heidi Theis, Jan Heyckendorf, Stefan Schreiber, Sarah Kim-Hellmuth, COVID-19 Aachen Study (COVAS), Paul Balfanz, Thomas Eggermann, Peter Boor, Ralf Hausmann, Hannah Kuhn, Susanne Isfort, Julia Stingl, Günther Schmalzing, Christiane Kühl, Rainer Röhrig, Gernot Marx, Stefan Uhlig, Edgar Dahl, Dirk Müller‐Wieland, Michael Dreher, Nikolaus Marx, Jacob Nattermann, Dirk Skowasch, Ingo Kurth, Andreas Keller, Robert Bals, Peter Nürnberg, Olaf Rieß, Philip Rosenstiel, Mihai G. Netea, Fabian J. Theis, Sach Mukherjee, Michael Backes, Anna C. Aschenbrenner, Thomas Ulas, Deutsche COVID-19 Omics Initiative (DeCOI), Angel Angelov, Alexander Bartholomäus, Anke Becker, Daniela Bezdan, Conny Blumert, Ezio Bonifacio, Peer Bork, Boyke Bunk, Helmut Blum, Thomas Clavel, Maria Colomé‐Tatché, Markus Cornberg, Inti Alberto De La Rosa Velázquez, Andreas Diefenbach, Alexander Dilthey, Nicole Fischer, Konrad U. Förstner, Sören Franzenburg, Julia-Stefanie Frick, Gisela Gabernet, Julien Gagneur, Tina Ganzenmueller, Marie Gauder, Janina Geißert, Alexander Goesmann and 81 more - Nature 2021 cited by 880

  4. ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models

    Authors: , , , , - Security and Communication Networks, Secur. Commun. Networks 2021 cited by 260

  5. When Machine Unlearning Jeopardizes Privacy

    Authors: , , , , , - SIGSAC Conference on Computer and Communications Security, CCS 2021 cited by 159

  6. In ChatGPT We Trust? Measuring and Characterizing the Reliability of ChatGPT

    Authors: , , , - arXiv (Cornell University), CoRR 2023 cited by 118

  7. Dynamic Backdoor Attacks Against Machine Learning Models

    Authors: , , , , - IEEE 7th European Symposium on Security and Privacy (EuroS&P), EuroS&P 2022 cited by 214

  8. JailbreakRadar: Comprehensive Assessment of Jailbreak Attacks Against LLMs

    Authors: , , , , , - Meeting of the Association for Computational Linguistics (Volume 1: Long Papers), ACL (1) 2025 cited by 92

  9. Adversarial Examples for Malware Detection

    Authors: , , , , - Lecture notes in computer science, ESORICS (2) 2017 cited by 553

  10. Membership Inference Attacks by Exploiting Loss Trajectory

    Authors: , , , - SIGSAC Conference on Computer and Communications Security, CCS 2022 cited by 85

  11. Composite Backdoor Attacks Against Large Language Models

    Authors: , , , , - Findings of the Association for Computational Linguistics: NAACL 2024, NAACL-HLT (Findings) 2024 cited by 60

  12. On the (Statistical) Detection of Adversarial Examples

    Authors: , , , , - arXiv (Cornell University), CoRR 2017 cited by 457

  13. Fairwalk: Towards Fair Graph Embedding

    Authors: , , , - Twenty-Eighth International Joint Conference on Artificial Intelligence, IJCAI 2019 cited by 157

  14. Reliable Third-Party Library Detection in Android and its Security Applications

    Authors: , , - SIGSAC Conference on Computer and Communications Security, CCS 2016 cited by 313

  15. MGTBench: Benchmarking Machine-Generated Text Detection

    Authors: , , , , - on ACM SIGSAC Conference on Computer and Communications Security, CCS 2024 cited by 71

  16. On the Trustworthiness of Generative Foundation Models: Guideline, Assessment, and Perspective

    Authors: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , Swabha Swayamdipta, Taiwei Shi, Weijia Shi, Xiang Li, Yiwei Li, Yuexing Hao, Zhihao Jia, Zhize Li, Xiuying Chen, Zhengzhong Tu, Xiyang Hu, Tianyi Zhou, Jieyu Zhao, Lichao Sun, Furong Huang, Or Cohen Sasson, Prasanna Sattigeri, Anka Reuel, Max Lamparth, Yue Zhao, Nouha Dziri, Yu Su, Huan Sun, Heng Ji, Chaowei Xiao, Mohit Bansal, Nitesh V. Chawla, Jian Pei, Jianfeng Gao, Michael Backes, Philip S. Yu, Neil Zhenqiang Gong, Pin‐Yu Chen, Bo Li, Song, Dawn, Xiangliang Zhang - ArXiv.org, CoRR 2025 cited by 52

  17. Breaking Agents: Compromising Autonomous LLM Agents Through Malfunction Amplification

    Authors: , , , , , , - Conference on Empirical Methods in Natural Language Processing, EMNLP 2025 cited by 51

  18. Node-Level Membership Inference Attacks Against Graph Neural Networks

    Authors: , , , , , - arXiv (Cornell University), CoRR 2021 cited by 82

  19. You Get Where You're Looking for: The Impact of Information Sources on Code Security

    Authors: , , , , , - IEEE Symposium on Security and Privacy (SP) 2016 cited by 252

  20. Watermarking Diffusion Model

    Authors: , , , , - arXiv (Cornell University), CoRR 2023 cited by 44

  21. Keep me Updated: An Empirical Study of Third-Party Library Updatability on Android

    Authors: , , , , - SIGSAC Conference on Computer and Communications Security, CCS 2017 cited by 163

  22. Membership Inference Attacks Against Text-to-image Generation Models

    Authors: , , , , - arXiv (Cornell University), CoRR 2022 cited by 55

  23. Voice Jailbreak Attacks Against GPT-4o

    Authors: , , , - arXiv (Cornell University), CoRR 2024 cited by 38

  24. Is FIDO2 the Kingslayer of User Authentication? A Comparative Usability Study of FIDO2 Passwordless Authentication

    Authors: , , , , - IEEE Symposium on Security and Privacy (SP) 2020 cited by 96