AIIC AI Intelligence Centre

SOURCE-LINKED INTELLIGENCE

Beyond Small Patches: Black-Box Detection and Purification of Diverse Backdoor Triggers

arXiv · AI, language, vision and robotics · article · Sep 2, 2026 · UTC

Deep neural networks (DNNs) are increasingly deployed in real-world vision systems, yet their predictions can be covertly manipulated by backdoor attacks, in which malicious triggers cause targeted misclassification while preserving high clean accuracy. Existing defenses often rely on model internals, training data, or clean validation samples, making them difficult to deploy when only black-box access to a trained model is available. We propose TRIM (Trigger Removal by Identifying Manipulated Regions), a deployment-oriented black-box defense that detects and selectively removes backdoor trigg

Read original source ↗ Open in workspace

recordType
paper
region
Global

Evidence & attribution

First collected: 2026-09-21T05:11:56.580Z. This is not the publication date.