Skip to content

yxwang-10/HoneypotNet

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

1 Commit
 
 

Repository files navigation

HoneypotNet: Backdoor Attacks Against Model Extraction

The source code for our AAAI2025 paper "HoneypotNet: Backdoor Attacks Against Model Extraction". Instead of passively defending, we propose an "attack as defense" strategy. HoneypotNet replaces the classification layer of a victim model with a "honeypot" layer, fine-tuned to inject a backdoor into any substitute model trained on its outputs. This backdoor, triggered by a specific, imperceptible perturbation, allows the model owner to control the substitute model's predictions.

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published