From: NBA: defensive distillation for backdoor removal via neural behavior alignment
\({\mathcal {L}}_{LDL}\)
\({\mathcal {L}}_{UDL}\)
ASR
BA
\(\checkmark\)
2.55
83.91
0.53
77.24
1.52
81.14