Search papers, labs, and topics across Lattice.
Shanghai Jiaotong University
2
0
5
9
Poisoned training data leaves a unique fingerprint in the spectral entropy of LLM gradients, enabling backdoor detection even at extreme poison ratios where clustering-based defenses fail.
Pinpoint exactly which client leaked your federated model with a black-box watermark that's robust to fine-tuning, pruning, and quantization.