yjkim721 / STRIP-ViTALinks
This work corroborates a run-time Trojan detection method exploiting STRong Intentional Perturbation of inputs, is a multi-domain Trojan detection defence across Vision, Text and Audio domains---thus termed as STRIP-ViTA. Specifically, STRIP-ViTA is the first confirmed Trojan detection method that is demonstratively independent of both the task …
☆10Updated 4 years ago
Alternatives and similar repositories for STRIP-ViTA
Users that are interested in STRIP-ViTA are comparing it to the libraries listed below
Sorting:
- ☆19Updated 4 years ago
- Codes for reproducing the results of the paper "Bridging Mode Connectivity in Loss Landscapes and Adversarial Robustness" published at IC…☆27Updated 5 years ago
- ☆25Updated 2 years ago
- RAB: Provable Robustness Against Backdoor Attacks☆39Updated last year
- Pytorch implementation of NPAttack☆12Updated 5 years ago
- [NeurIPS'22] Trap and Replace: Defending Backdoor Attacks by Trapping Them into an Easy-to-Replace Subnetwork. Haotao Wang, Junyuan Hong,…☆15Updated last year
- The official pytorch implementation of ACM MM 19 paper "MetaAdvDet: Towards Robust Detection of Evolving Adversarial Attacks"☆11Updated 4 years ago
- Codes for the ICLR 2022 paper: Trigger Hunting with a Topological Prior for Trojan Detection☆11Updated last year
- [CVPR 2022] "Quarantine: Sparsity Can Uncover the Trojan Attack Trigger for Free" by Tianlong Chen*, Zhenyu Zhang*, Yihua Zhang*, Shiyu C…☆26Updated 2 years ago
- Official Repository for the CVPR 2020 paper "Universal Litmus Patterns: Revealing Backdoor Attacks in CNNs"☆43Updated last year
- A repository for the query-efficient black-box attack, SignHunter☆23Updated 5 years ago
- [NeurIPS 2022] "Randomized Channel Shuffling: Minimal-Overhead Backdoor Attack Detection without Clean Datasets" by Ruisi Cai*, Zhenyu Zh…☆20Updated 2 years ago
- Code for identifying natural backdoors in existing image datasets.☆15Updated 3 years ago
- Code for paper "Poisoned classifiers are not only backdoored, they are fundamentally broken"☆26Updated 3 years ago
- This is the code for semi-supervised robust training (SRT).☆18Updated 2 years ago
- Code for "Neuron Shapley: Discovering the Responsible Neurons"☆26Updated last year
- ☆11Updated 3 years ago
- The code is for our NeurIPS 2019 paper: https://arxiv.org/abs/1910.04749☆34Updated 5 years ago
- ☆19Updated 3 years ago
- Attacks using out-of-distribution adversarial examples☆11Updated 5 years ago
- Defending Against Backdoor Attacks Using Robust Covariance Estimation☆21Updated 4 years ago
- ☆11Updated 3 years ago
- ☆19Updated 3 years ago
- The implementatin of our ICLR 2021 work: Targeted Attack against Deep Neural Networks via Flipping Limited Weight Bits☆18Updated 4 years ago
- ☆15Updated 2 years ago
- [EMNLP 2022] Distillation-Resistant Watermarking (DRW) for Model Protection in NLP☆13Updated 2 years ago
- ☆24Updated 2 years ago
- This is an implementation demo of the IJCAI 2022 paper [Eliminating Backdoor Triggers for Deep Neural Networks Using Attention Relation …☆21Updated 9 months ago
- Pytorch implementation of Adversarially Robust Distillation (ARD)☆59Updated 6 years ago
- ReColorAdv and other attacks from the NeurIPS 2019 paper "Functional Adversarial Attacks"☆37Updated 3 years ago