From: NBA: defensive distillation for backdoor removal via neural behavior alignment
Attack methods | BadNets | TrojanNN | Blend | CLA | SIG | Refool |
---|---|---|---|---|---|---|
Dataset | CIFAR-10 | CIFAR-10 | CIFAR-10 | CIFAR-10 | CIFAR-10 | GTSRB |
Poisoning rate | 0.1 | 0.05 | 0.1 | 0.08 | 0.08 | 0.08 |
Trigger size | Local pattern | Local pattern | Global pattern | Local pattern | Global pattern | Global pattern |
Target label | 0 | 0 | 0 | 0 | 0 | 0 |