From: DLP: towards active defense against backdoor attacks with decoupled learning process
Stage | SL | AU | ASSFT | |||
---|---|---|---|---|---|---|
Attack | CA | ASR | CA | ASR | CA | ASR |
BadNets | 75.54 | 99.96 | 61.16 | 0.08 | 93.08 | 0.24 |
TrojanNN | 77.87 | 99.78 | 65.11 | 0 | 92.19 | 0.31 |
Blended | 71.81 | 99.99 | 45.93 | 0.02 | 91.93 | 0 |
LCA | 74.36 | 99.86 | 70.99 | 0.04 | 92.04 | 0.21 |
SIG | 69.04 | 100 | 52.04 | 0 | 92.98 | 0 |