Paper
in
Workshop: Security and Safety in Machine Learning Systems

Subnet Replacement: Deployment-stage backdoor attack against deep neural networks in gray-box setting

Xiangyu QI

Abstract: