Paper
in
Workshop: Security and Safety in Machine Learning Systems
Subnet Replacement: Deployment-stage backdoor attack against deep neural networks in gray-box setting
Xiangyu QI
Abstract: