← Search

Chunsheng Xin

6 accepted papers

2026

DF-LoGiT: Data-Free Logic-Gated Backdoor Attacks in Vision Transformers

ICML 2026poster

The widespread adoption of Vision Transformers (ViTs) elevates supply-chain risk on third-party model hubs, where an adversary can implant backdoors into released checkpoints. Existing ViT backdoor attacks largely rely on poisoned-data training, while prior data-free attempts typically require synth…

Cited by 0SourceScholar
2024

SEER: Backdoor Detection for Vision-Language Models through Searching Target Text and Image Trigger Jointly

AAAI 2024technical

This paper proposes SEER, a novel backdoor detection algorithm for vision-language models, addressing the gap in the literature on multi-modal backdoor detection. While backdoor detection in single-modal models has been well studied, the investigation of such defenses in multi-modal models remains l…

2024

United We Stand: Accelerating Privacy-Preserving Neural Inference by Conjunctive Optimization with Interleaved Nexus

AAAI 2024technical

Privacy-preserving Machine Learning as a Service (MLaaS) enables the powerful cloud server to run its well-trained neural model upon the input from resource-limited client, with both of server's model parameters and client's input data protected. While computation efficiency is critical for the prac…

Cited by 2SourcePDFScholar
2022

Hibernated Backdoor: A Mutual Information Empowered Backdoor Attack to Deep Neural Networks

AAAI 2022technical

We report a new neural backdoor attack, named Hibernated Backdoor, which is stealthy, aggressive and devastating. The backdoor is planted in a hibernated mode to avoid being detected. Once deployed and fine-tuned on end-devices, the hibernated backdoor turns into the active state that can be exploit…

Cited by 14SourcePDFScholar
2022

Most and Least Retrievable Images in Visual-Language Query Systems

ECCV 2022poster

"This is the first work to introduce the Most Retrievable Image(MRI) and Least Retrievable Image(LRI) concepts in modern text-to-image retrieval systems. An MRI is associated with and thus can be retrieved by many unrelated texts, while an LRI is disassociated from and thus not retrievable by relate…

2021

CLEAR: Clean-Up Sample-Targeted Backdoor in Neural Networks

ICCV 2021poster

The data poisoning attack has raised serious security concerns on the safety of deep neural networks since it can lead to neural backdoor that misclassifies certain inputs crafted by an attacker. In particular, the sample-targeted backdoor attack is a new challenge. It targets at one or a few specif…

Cited by 14PDFScholar