Researchers have developed a new method called BadVSFM to exploit vulnerabilities in prompt-driven video segmentation foundation models, such as SAM2. Traditional backdoor attacks were found to be ineffective against these models, achieving success rates below 5%. BadVSFM employs a two-stage approach to successfully implant triggers, leading to controllable backdoor effects with minimal degradation of clean performance. Existing defenses have proven largely ineffective against this new attack. AI
影响 New backdoor attack method highlights practical security risks in prompt-driven video segmentation models, potentially impacting their deployment in sensitive applications.
排序理由 Academic paper detailing a new attack method against existing AI models.
AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →