Search papers, labs, and topics across Lattice.
University of Wisconsin鈥揗adison, University of Wisconsin Madison
1
0
3
7
Provably undetectable backdoors can be injected into pre-trained image classifiers, even with white-box access, by exploiting sparse perturbations and Gaussian dithering.