כתבה
arXiv cs.LG ·
Breaking the Stealth-Potency Trade-off in Clean-Image Backdoors with Generative Trigger Optimization
תקציר מקורי באנגליתarXiv:2511.07210v3 Announce Type: replace-cross Abstract: Clean-image backdoor attacks, which use only label manipulation in training datasets to compromise deep neural networks, pose a significant threat to security-critical applications. A critical flaw in existing methods is that the poison rate required for a successful attack induces a proportional, and thus noticeable, drop in Clean Accuracy (CA), undermining their stealthiness. This paper presents a new paradigm for clean-image attacks that minimizes this accuracy degradation by optimizing the trigger itself. We introduce Generative Clean-Image Backdoors (GCB), a framework that uses a conditional InfoGAN to identify naturally occurring image features that can serve as potent and stealthy triggers. By ensuring these triggers are easi
קרא במקור המקורי
arxiv.org
פתח כתבה מקורית