Jul 2026
Lilith: Backdoor Generalization under Training-Inference Trigger Shift
This work forms this problem as backdoor generalization under training--inference trigger shift and introduces Lilith, a black-box anchor-to-family framework that achieves high family-wise attack success with limited utility degradation and a small trigger generalization gap.
Zhou Feng, Jia-Hao Chen, Chun-Yi Zhou et al.
· arXiv.org · 0 citations