Backdoor scanning for deep neural networks through k-arm optimization G Shen, Y Liu, G Tao, S An, Q Xu, S Cheng, S Ma, X Zhang International Conference on Machine Learning, 9525-9536, 2021 | 102 | 2021 |
Better trigger inversion optimization in backdoor scanning G Tao, G Shen, Y Liu, S An, Q Xu, S Ma, P Li, X Zhang Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern …, 2022 | 63 | 2022 |
Piccolo: Exposing complex backdoors in nlp transformer models Y Liu, G Shen, G Tao, S An, S Ma, X Zhang 2022 IEEE Symposium on Security and Privacy (SP), 2025-2042, 2022 | 53 | 2022 |
An invisible black-box backdoor attack through frequency domain T Wang, Y Yao, F Xu, S An, H Tong, T Wang European Conference on Computer Vision, 396-413, 2022 | 50 | 2022 |
Model orthogonalization: Class distance hardening in neural networks for better security G Tao, Y Liu, G Shen, Q Xu, S An, Z Zhang, X Zhang 2022 IEEE Symposium on Security and Privacy (SP), 1372-1389, 2022 | 45 | 2022 |
Mirror: Model inversion for deep learning network with high fidelity S An, G Tao, Q Xu, Y Liu, G Shen, Y Yao, J Xu, X Zhang Proceedings of the 29th Network and Distributed System Security Symposium, 2022 | 34 | 2022 |
Backdoor attack through frequency domain T Wang, Y Yao, F Xu, S An, H Tong, T Wang arXiv preprint arXiv:2111.10991, 2021 | 34 | 2021 |
Flip: A provable defense framework for backdoor mitigation in federated learning K Zhang, G Tao, Q Xu, S Cheng, S An, Y Liu, S Feng, G Shen, PY Chen, ... arXiv preprint arXiv:2210.12873, 2022 | 32 | 2022 |
Constrained optimization with dynamic bound-scaling for effective nlp backdoor defense G Shen, Y Liu, G Tao, Q Xu, Z Zhang, S An, S Ma, X Zhang International Conference on Machine Learning, 19879-19892, 2022 | 28 | 2022 |
Augmented example-based synthesis using relational perturbation properties S An, R Singh, S Misailovic, R Samanta Proceedings of the ACM on Programming Languages 4 (POPL), 1-24, 2019 | 15 | 2019 |
Backdoor vulnerabilities in normally trained deep learning models G Tao, Z Wang, S Cheng, S Ma, S An, Y Liu, G Shen, Z Zhang, Y Mao, ... arXiv preprint arXiv:2211.15929, 2022 | 12 | 2022 |
An event-based formal framework for dynamic software update S An, X Ma, C Cao, P Yu, C Xu 2015 IEEE International Conference on Software Quality, Reliability and …, 2015 | 9 | 2015 |
Beagle: Forensics of deep learning backdoor attack for better defense S Cheng, G Tao, Y Liu, S An, X Xu, S Feng, G Shen, K Zhang, Q Xu, S Ma, ... arXiv preprint arXiv:2301.06241, 2023 | 8 | 2023 |
Medic: Remove model backdoors via importance driven cloning Q Xu, G Tao, J Honorio, Y Liu, S An, G Shen, S Cheng, X Zhang Proceedings of the IEEE/CVF Conference on Computer Vision and Pattern …, 2023 | 7 | 2023 |
Hard-label black-box universal adversarial patch attack G Tao, S An, S Cheng, G Shen, X Zhang 32nd USENIX Security Symposium (USENIX Security 23), 697-714, 2023 | 5 | 2023 |
Elijah: Eliminating backdoors injected in diffusion models via distribution shift S An, SY Chou, K Zhang, Q Xu, G Tao, G Shen, S Cheng, S Ma, PY Chen, ... Proceedings of the AAAI Conference on Artificial Intelligence 38 (10), 10847 …, 2024 | 4 | 2024 |
Deck: Model hardening for defending pervasive backdoors G Tao, Y Liu, S Cheng, S An, Z Zhang, Q Xu, G Shen, X Zhang arXiv preprint arXiv:2206.09272, 2022 | 4 | 2022 |
Django: Detecting trojans in object detection models via gaussian focus calibration G Shen, S Cheng, G Tao, K Zhang, Y Liu, S An, S Ma, X Zhang Advances in Neural Information Processing Systems 36, 2024 | 2 | 2024 |
Rapid Optimization for Jailbreaking LLMs via Subconscious Exploitation and Echopraxia G Shen, S Cheng, K Zhang, G Tao, S An, L Yan, Z Zhang, S Ma, X Zhang arXiv preprint arXiv:2402.05467, 2024 | 2 | 2024 |
Remove model backdoors via importance driven cloning Q Xu, G Tao, J Honorio, Y Liu, S An, G Shen, S Cheng, X Zhang IEEE Conference on Computer Vision and Pattern Recognition, 2023 | 2 | 2023 |