Research Article

DeepDefense: A Steganalysis-Based Backdoor Detecting and Mitigating Protocol in Deep Neural Networks for AI Security

Table 1

The correlation between the intensity of different color bands and those of corresponding triggers.

AttackTypesRed vs. greenRed vs. blueBlue vs. green

BadNets [21]Intensity0.95120.89500.9737
Trigger0.17810.19700.2710

Blend Attack [22]Intensity0.95960.91210.9744
Trigger0.66720.55450.8046

SSBA [14]Intensity0.95420.90050.9695
Trigger0.64240.59600.6798