DETECTION OF AN ADVERSARIAL BACKDOOR ATTACK ON A TRAINED MODEL AT INFERENCE TIME

Patent №

US 11,601,468

Granted

2023-03-07

Filed 2019

Owner

INTERNATIONAL BUSINESS MACHINES CORPORATION

AI components

4

ml · kr · planning · hardware

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

16451110

Systems, computer-implemented methods, and computer program products that can facilitate detection of an adversarial backdoor attack on a trained model at inference time are provided. According to an embodiment, a system can comprise a memory that stores computer executable components and a processor that executes the computer executable components stored in the memory. The computer executable components can comprise a log component that records predictions and corresponding activation values generated by a trained model based on inference requests. The computer executable components can further comprise an analysis component that employs a model at an inference time to detect a backdoor trigger request based on the predictions and the corresponding activation values. In some embodiments, the log component records the predictions and the corresponding activation values from one or more layers of the trained model.

AI classification

Machine learning1.00
Planning1.00
Knowledge representation1.00
AI hardware0.98
Vision0.11
Speech0.11
Natural language0.00
Evolutionary computation0.00

Ownership

INTERNATIONAL BUSINESS MACHINES CORPORATION

assignment · 495760362

Assignors

BARACALDO ANGEL, NATHALIE, ZHOU, YI, CHEN, BRYANT, ANWAR, ALI, LUDWIG, HEIKO H.

On an employer assignment, the assignors are typically the inventors.

From the same owner

© 2026 NYSGPT2525 LLC