YiZeng623 / frequency-backdoorLinks
ICCV 2021, We find most existing triggers of backdoor attacks in deep learning contain severe artifacts in the frequency domain. This Repo. explores how we can use these artifacts to develop stronger backdoor defenses and attacks.
☆46Updated 3 years ago
Alternatives and similar repositories for frequency-backdoor
Users that are interested in frequency-backdoor are comparing it to the libraries listed below
Sorting:
- [ICLR2023] Distilling Cognitive Backdoor Patterns within an Image☆36Updated 2 months ago
- Code Repository for the Paper ---Revisiting the Assumption of Latent Separability for Backdoor Defenses (ICLR 2023)☆47Updated 2 years ago
- Official Implementation of ICLR 2022 paper, ``Adversarial Unlearning of Backdoors via Implicit Hypergradient''☆53Updated 3 years ago
- Codes for NeurIPS 2021 paper "Adversarial Neuron Pruning Purifies Backdoored Deep Models"☆62Updated 2 years ago
- [ICLR'21] Dataset Inference for Ownership Resolution in Machine Learning☆32Updated 3 years ago
- A minimal PyTorch implementation of Label-Consistent Backdoor Attacks☆29Updated 4 years ago
- Source code for ECCV 2022 Poster: Data-free Backdoor Removal based on Channel Lipschitzness☆34Updated 3 years ago
- ☆13Updated 4 years ago
- Backdoor Safety Tuning (NeurIPS 2023 & 2024 Spotlight)☆27Updated last year
- ☆21Updated 3 years ago
- Github repo for One-shot Neural Backdoor Erasing via Adversarial Weight Masking (NeurIPS 2022)☆15Updated 3 years ago
- ☆27Updated 2 years ago
- ☆27Updated 3 years ago
- ☆54Updated 4 years ago
- ☆19Updated 3 years ago
- Anti-Backdoor learning (NeurIPS 2021)☆84Updated 2 years ago
- Input-aware Dynamic Backdoor Attack (NeurIPS 2020)☆36Updated last year
- ☆69Updated last year
- Boosting the Transferability of Adversarial Attacks with Reverse Adversarial Perturbation (NeurIPS 2022)☆33Updated 3 years ago
- Code for "Label-Consistent Backdoor Attacks"☆57Updated 5 years ago
- ☆32Updated 3 years ago
- The official implementation of USENIX Security'23 paper "Meta-Sift" -- Ten minutes or less to find a 1000-size or larger clean subset on …☆20Updated 2 years ago
- ☆45Updated 2 years ago
- ☆84Updated 4 years ago
- [CVPR 2023] The official implementation of our CVPR 2023 paper "Detecting Backdoors During the Inference Stage Based on Corruption Robust…☆24Updated 2 years ago
- ☆28Updated last year
- ☆25Updated 3 years ago
- Code for the paper "Autoregressive Perturbations for Data Poisoning" (NeurIPS 2022)☆20Updated last year
- This is the implementation for CVPR 2022 Oral paper "Better Trigger Inversion Optimization in Backdoor Scanning."☆24Updated 3 years ago
- ☆18Updated 4 years ago