2024
Rethinking CNN’s Generalization to Backdoor Attack from Frequency Domain
ICLR 2024poster
Convolutional neural network (CNN) is easily affected by backdoor injections, whose models perform normally on clean samples but produce specific outputs on poisoned ones. Most of the existing studies have focused on the effect of trigger feature changes of poisoned samples on model generalization…