From: NBA: defensive distillation for backdoor removal via neural behavior alignment
\({\mathcal {L}}_{RNB}\) | \({\mathcal {L}}_{LNB}\) | \({\mathcal {L}}_{PNB}\) | ASR | BA |
---|---|---|---|---|
\(\checkmark\) | Â | Â | 3.41 | 83.38 |
 | \(\checkmark\) |  | 3.08 | 82.99 |
 |  | \(\checkmark\) | 3.40 | 79.37 |
\(\checkmark\) | \(\checkmark\) | Â | 3.86 | 83.86 |
\(\checkmark\) | Â | \(\checkmark\) | 4.32 | 82.09 |
 | \(\checkmark\) | \(\checkmark\) | 4.62 | 82.82 |
\(\checkmark\) | \(\checkmark\) | \(\checkmark\) | 2.55 | 83.91 |