2026
TokenSwap: Backdoor Attack on the Compositional Understanding of Large Vision-Language Models
ICML 2026poster
Large vision-language models (LVLMs) excel at vision-language tasks but remain vulnerable to backdoor attacks. Most existing backdoor attacks on LVLMs force the model to generate predefined target patterns. However, these fixed-pattern attacks are easy to detect, as the model tends to memorize frequ…