notesum.ai
Published at December 5Can Targeted Clean-Label Poisoning Attacks Generalize?
cs.CV
cs.CR
cs.LG
Released Date: December 5, 2024
Authors: Zhizhen Chen1, Subrat Kishore Dutta2, Zhengyu Zhao1, Chenhao Lin1, Chao Shen1, Xiao Zhang3
Aff.: 1Xi'an Jiaotong University; 2Saarland University; 3CISPA Helmholtz Center for Information Security

| Dataset | Victim Model | Overall Accuracy (%) | Attack Success Rate (%) | ||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| w/o | FC | Cosine | ED | Ours | w/o | FC | Cosine | ED | Ours | ||
| Multi-View Car | ConvNet | ||||||||||
| VGG11 | |||||||||||
| ResNet-18 | |||||||||||
| MobileNet-V2 | |||||||||||
| CUB-200-2011 | ConvNet | ||||||||||
| VGG11 | |||||||||||
| ResNet-18 | |||||||||||
| MobileNet-V2 | |||||||||||