notesum.ai
Published at November 25DeDe: Detecting Backdoor Samples for SSL Encoders via Decoders
cs.CR
Released Date: November 25, 2024
Authors: Sizai Hou1, Songze Li2, Duanyi Yao1
Aff.: 1Hong Kong University of Science and Technology, Clear Water Bay, Kowloon, Hong Kong; 2Southeast University, Nanjing, China

| BadEncoder | CTRL | DRUPE | CLIP Backdoor | BadCLIP | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| TPR | FPR | AUC | TPR | FPR | AUC | TPR | FPR | AUC | TPR | FPR | AUC | TPR | FPR | AUC | |
| DECREE | 46.4∗ | 70.6∗ | 0.362∗ | - | - | - | 44.7 | 70.6 | 0.344 | 30.1∗ | 54.8∗ | 0.348∗ | - | - | - |
| ASSET | 84.9 | 4.0 | 0.978 | 89.6 | 30.2 | 0.799 | 94.7 | 27.6 | 0.858 | 30.0 | 0.0 | 0.555 | 99.8 | 49.4 | 0.773 |
| DEDE | 93.1 | 6.9 | 0.981 | 87.2 | 12.8 | 0.912 | 97.6 | 2.4 | 0.997 | 100.0 | 0.0 | 1.0 | 85.0 | 14.9 | 0.925 |
| DEDE OOD | 97.2 | 2.83 | 0.993 | 88.1 | 13.3 | 0.911 | 92.1 | 7.9 | 0.976 | 100.0 | 0.0 | 1.0 | 72.1 | 27.9 | 0.798 |