CIFAR-10 Leaderboard


Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet93.611.2393.2493.591.2093.2093.540.9193.2493.451.2693.0390.291.2790.0889.600.7189.3789.971.3789.57N/AN/AN/A81.441.9979.6971.594.9068.8290.511.1890.0711.630.0013.0284.591.5284.3190.172.7988.7890.112.2389.3693.461.1893.00
PreActResNet-18Blended93.8056.1139.3793.7852.6042.0993.7054.6740.3893.7155.2339.7691.0726.8357.1685.3524.1849.5789.5941.4148.77N/AN/AN/A67.9612.0640.8278.510.0081.2291.3132.6054.1211.670.0013.0383.125.3262.7691.8863.1130.8288.893.0971.1093.6557.4137.92
PreActResNet-18LC93.6271.2628.0793.5871.3827.9392.7220.6873.9693.6655.5742.5692.051.2891.4487.8533.9943.1389.995.2485.72N/AN/AN/A78.8315.7660.3672.1884.6512.7293.2028.0167.6411.930.0013.2785.027.8777.4691.8476.5322.6989.1811.9177.1193.5971.3128.04
PreActResNet-18SIG93.7341.2742.3493.6438.9944.1293.5337.7143.0793.7537.6045.4989.3415.9642.9284.722.7141.9789.6240.0935.27N/AN/AN/A62.3713.5222.7974.780.0721.5492.5141.8139.6114.910.0015.5383.9274.9211.3692.2960.3325.0787.4813.7045.6893.5940.9341.98
PreActResNet-18LF93.5512.7281.1693.279.6383.0793.4212.4881.0093.5710.5182.4189.684.5783.6288.525.6379.5889.9413.2676.52N/AN/AN/A54.828.0753.4674.199.5070.1393.3412.6880.9710.930.0011.4982.441.8181.2991.4113.1777.6790.403.5784.8393.4812.4781.21
PreActResNet-18SSBA93.891.6290.6493.861.4190.8493.721.6090.2893.831.4390.7693.891.6290.6490.210.9986.6989.972.3386.16N/AN/AN/A81.006.2276.5973.424.4267.3991.421.2489.0210.220.5210.7982.560.9979.0090.434.7285.8489.231.6684.6893.741.8090.14
PreActResNet-18WaNet92.180.7891.4293.490.7492.9291.881.0691.0093.440.7692.9390.710.9489.8187.530.5688.9190.071.6988.13N/AN/AN/A67.905.0461.2787.832.6386.6689.841.1087.1879.204.1675.5980.731.9280.2991.191.0989.8191.730.8290.8791.841.0790.69
PreActResNet-18InputAware91.9447.3245.5393.0556.6139.2292.0326.1351.1993.0558.9437.4391.9447.3245.5386.4714.8363.8989.9330.9258.30N/AN/AN/A76.1431.1944.8082.2213.1869.5190.3922.0259.7453.2265.1219.5682.6110.6856.0989.7338.9649.7690.269.8959.5489.2133.5352.99
PreActResNet-18BPP91.4721.6269.3793.3030.2963.7393.2013.5375.4693.2333.0361.3991.4721.6269.3788.236.2979.1189.292.9285.04N/AN/AN/A58.351.5055.8079.217.6170.9890.251.8982.1182.3419.6363.8088.696.9380.2088.4918.3667.9388.4732.6258.8990.972.7282.06
PreActResNet-18TrojanNN94.0798.141.8393.8598.191.7992.7096.503.3693.8396.323.6093.7499.110.8989.4588.208.8389.7684.1314.56N/AN/AN/A31.8620.6223.8876.155.8371.1993.4796.633.2728.0925.2622.5488.1260.3734.6691.9198.041.9387.9013.4170.4693.9497.942.01
VGG19_BNBadNet92.150.9691.8490.151.3689.8790.500.7090.4188.751.7088.2189.330.8689.2692.010.5492.1086.761.4986.24N/AN/AN/A23.5018.6618.6155.8013.3151.05N/AN/AN/A12.540.0013.9784.690.8084.2891.841.3191.0388.421.2687.8292.171.0391.82
VGG19_BNBlended92.3448.5345.5790.6517.5966.3890.6529.6858.4089.0130.3955.6292.3448.5345.5788.7131.3354.9386.9216.4065.18N/AN/AN/A25.870.0226.4454.4613.4345.76N/AN/AN/A91.0652.9341.1091.7523.6261.5991.4558.2336.1986.8328.4757.1092.2349.7644.39
VGG19_BNLC92.4033.6161.6990.1621.4671.4090.5617.1373.6489.3138.7856.0792.3933.6061.7090.1722.4270.6086.964.8181.92N/AN/AN/A57.6918.1144.4055.9962.6824.0989.005.4982.4710.810.0012.0360.813.6358.0789.064.1083.9690.3627.6162.5192.0036.1759.56
VGG19_BNSIG92.2032.4348.0690.5617.3354.6890.3721.3853.3388.3344.8938.4992.2032.4348.0687.099.8353.6486.8111.5451.06N/AN/AN/A70.4217.3636.1156.1453.3430.6690.9550.4430.829.5999.180.1059.270.0024.2890.1333.8944.7789.5426.5746.3692.1135.0945.28
VGG19_BNLF92.280.8092.2390.291.2390.1289.480.9089.5189.211.2789.0090.380.8090.4692.160.3692.4287.071.4686.84N/AN/AN/A55.276.1652.9452.738.9849.1291.371.0891.0910.030.0011.1491.200.6391.3890.531.7090.0889.180.4689.6492.160.8692.06
VGG19_BNSSBA92.131.4788.9290.631.9786.7090.781.6387.6988.752.8184.9090.241.3186.9991.601.0888.9086.832.1283.37N/AN/AN/A28.2226.5922.7052.2114.0447.2791.641.5188.8084.852.8384.9291.731.6289.0890.571.3088.1185.894.1180.0491.861.8888.60
VGG19_BNWaNet90.162.5787.1091.871.1990.2491.811.2789.6391.411.0089.9290.162.5787.1088.171.2687.0187.141.8884.61N/AN/AN/A64.855.9160.0654.838.8550.6786.652.7580.2191.721.2689.6162.084.9561.1088.153.0284.6089.960.9787.5788.943.1085.31
VGG19_BNInputAware89.2748.3738.1091.3965.2629.5991.4560.7232.9991.0270.9724.8091.106.7955.0486.7943.4141.3686.6126.7854.48N/AN/AN/A10.000.0011.1155.4727.4939.7787.8537.4047.3890.5976.5618.3267.108.3452.7888.0074.7120.9188.7310.6630.4389.2372.1024.11
VGG19_BNBPP90.692.2884.6091.781.7985.6091.921.5786.1692.012.1285.3190.692.2884.6089.281.7482.1187.271.7683.98N/AN/AN/A58.1615.6952.4954.1113.4046.0489.431.7985.229.880.0010.9472.870.1869.9689.192.5183.1190.774.3683.2088.752.5182.22
VGG19_BNTrojanNN92.3098.921.0690.1998.401.5790.4695.493.9788.2572.9221.5692.3098.921.0686.6237.1241.2086.9889.789.32N/AN/AN/A10.000.0011.1153.9914.1739.4191.6586.8111.9010.000.0011.1180.9194.233.9090.5799.580.4188.8417.3349.6392.2299.090.89
ViT_b_16BadNet96.720.3396.5896.610.3496.5494.410.3494.7626.2312.0222.6496.720.3396.5696.720.3396.5696.710.3896.57N/AN/AN/A98.000.2797.90N/AN/AN/A96.720.3396.5696.150.4396.1110.000.0011.11N/AN/AN/A27.3110.7824.07N/AN/AN/A
ViT_b_16Blended96.6977.0921.9496.7876.6822.3294.5755.9038.0026.9216.9620.7796.6378.3820.7690.9664.8931.9796.6054.5343.40N/AN/AN/A98.1377.6121.57N/AN/AN/A96.6977.0921.9496.2882.4116.8010.000.0011.11N/AN/AN/A27.4519.0320.59N/AN/AN/A
ViT_b_16LC96.5613.4783.9796.4013.5684.0394.7535.4452.9128.5114.3424.9196.3512.4284.9096.5513.1084.3396.621.1095.79N/AN/AN/A98.0335.4361.97N/AN/AN/A96.5613.4783.9712.213.2911.1310.000.0011.1196.269.8887.2026.0714.1922.9195.9914.5681.78
ViT_b_16SIG96.618.6780.4796.678.3880.0694.673.2274.2326.2712.0423.6496.618.6780.4796.618.6780.4796.636.9980.58N/AN/AN/A98.0810.6479.4327.854.0225.0596.618.6780.4795.818.4277.4610.000.0011.1196.3810.5978.0027.027.5127.6295.8713.2276.18
ViT_b_16LF96.480.3496.4096.500.3296.4494.980.2295.1924.206.7023.1196.410.3796.2996.380.3196.3396.910.2296.86N/AN/AN/A97.940.1497.9122.528.2320.7996.480.3496.4088.362.6687.5410.000.0011.1196.270.4096.1727.8310.2826.0695.790.8195.64
ViT_b_16SSBA96.681.4894.1896.581.1494.2893.851.1191.3027.8811.8725.4696.681.4894.1896.631.3194.2196.540.6694.38N/AN/AN/A98.000.4396.89N/AN/AN/A96.681.4894.1896.281.3993.9710.000.0011.1196.401.5893.9826.6710.0025.2095.882.1193.13
ViT_b_16WaNet91.900.6991.4293.770.6693.2792.960.7792.4477.143.0475.7493.910.5693.5191.710.5691.7496.600.4396.19N/AN/AN/A98.010.1997.5423.254.6322.5591.900.6991.4193.030.6392.4110.000.0011.1391.560.7591.1685.721.8184.8490.680.9090.34
ViT_b_16InputAware91.6529.2363.7294.4739.7756.3794.0920.0265.0276.9522.6948.5394.578.5380.5890.8354.2740.7796.6052.2247.13N/AN/AN/A98.0165.0834.56N/AN/AN/A90.8254.2840.7780.5857.2737.23N/AN/AN/A90.4758.8236.9982.105.8166.4889.1968.9826.94
ViT_b_16BPP91.4635.2658.0693.9637.2458.1993.9629.7064.0878.278.9858.8391.4635.2658.0690.8435.1957.8396.6917.2178.54N/AN/AN/A97.7243.2754.90N/AN/AN/A91.4635.2658.0693.7120.3673.51N/AN/AN/AN/AN/AN/A79.113.7967.20N/AN/AN/A
ViT_b_16TrojanNN96.7689.1310.8296.6684.9814.9694.5354.2427.3025.2210.2122.4396.5369.4330.2896.7587.3112.6696.6590.489.41N/AN/AN/A98.0796.203.78N/AN/AN/A96.7689.1310.8219.0427.9813.4410.000.0011.1196.5489.2810.6928.1213.6122.4496.1793.966.02
ConvNext_tinyBadNet92.300.8091.9789.681.1689.1488.871.0388.3787.611.5787.1692.300.8091.9792.300.8091.9791.521.0091.20N/AN/AN/A92.830.6992.6069.274.5767.1292.300.8091.9789.611.0688.7960.056.5358.4492.161.3191.3389.991.1489.5292.140.9691.66
ConvNext_tinyBlended92.1763.9933.1289.7126.6359.8889.6719.5965.6285.9919.5958.8692.1764.0033.1184.2728.9254.4491.4631.7658.68N/AN/AN/A92.7857.1838.8168.505.7961.2492.1764.0033.1191.6359.5136.1164.111.7247.1691.9761.0835.3189.2636.5651.9692.1261.9134.91
ConvNext_tinyLC92.104.3688.1889.972.8887.4389.021.6687.4787.072.1384.4889.742.1087.7188.671.0287.7491.491.7489.89N/AN/AN/A93.062.4190.3974.814.0071.9292.114.3688.1891.584.2987.6355.9911.0150.6391.693.4188.7789.514.2685.7791.844.5888.04
ConvNext_tinySIG92.5123.3862.6689.396.4070.6488.8210.8265.8285.8622.2958.5692.5023.3962.6685.9210.3964.1191.3712.5166.70N/AN/AN/A92.8422.6159.9376.0830.4946.8392.5023.3962.6691.6923.9359.8958.770.3930.9391.8018.1065.2789.697.7067.6692.1822.5663.19
ConvNext_tinyLF92.300.7692.0989.621.3789.2188.831.1288.7684.832.8683.8992.310.7692.1090.700.5890.8091.281.0490.99N/AN/AN/A92.950.6992.6671.236.0868.7992.310.7692.1090.440.6790.2263.583.3862.3491.670.7991.4490.000.6090.0292.230.8191.98
ConvNext_tinySSBA92.401.0690.0189.671.2387.3488.781.1786.4287.241.1884.7692.401.0690.0090.240.8087.5391.671.0289.32N/AN/AN/A92.841.3390.3770.795.5365.5892.401.0690.0091.810.9189.4125.441.6926.1992.171.0989.7190.440.7887.6992.231.0789.77
ConvNext_tinyWaNet88.040.9586.1788.721.4587.1088.511.0787.4088.471.4187.1988.060.9586.1788.100.8786.3991.691.1289.70N/AN/AN/A92.911.0291.1471.254.6168.9588.060.9586.1788.991.5887.1223.469.1123.3687.111.1984.4088.301.0687.0888.020.9286.03
ConvNext_tinyInputAware87.5715.4768.4489.8619.2065.4888.7217.1766.4289.3418.9665.5387.5435.7353.5082.305.3269.0891.9121.8066.28N/AN/AN/A93.0029.4161.5071.227.3264.8787.5435.7353.5089.7142.0949.3961.846.8953.8086.6639.4849.9387.969.4866.4887.3835.3954.17
ConvNext_tinyBPP87.662.5683.9388.591.8183.9187.881.8782.6188.512.8682.7888.621.9384.2887.662.5683.9391.761.5988.66N/AN/AN/A92.851.5789.5473.995.0670.2887.662.5683.9388.602.0684.1117.475.1318.3187.012.3883.2487.921.6182.8487.452.6683.40
ConvNext_tinyTrojanNN92.2995.324.4889.4269.3127.4189.1349.2043.9987.2943.9844.6189.5667.8628.6785.2764.6228.9991.4591.388.16N/AN/AN/A92.8397.812.1767.994.8760.8292.2995.324.4891.2893.546.0363.7810.2447.9991.9895.814.0290.4439.0653.4992.2895.664.16

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet93.7650.0648.1493.494.9489.8393.675.0189.6093.307.6787.3192.830.6292.6791.320.7691.3189.512.2988.72N/AN/AN/A68.4071.7822.1473.600.1080.0191.254.2687.9610.790.9111.3682.041.9480.9791.9050.8947.2287.927.5183.4193.6050.8147.38
PreActResNet-18Blended93.6893.306.3793.4690.688.7993.3093.286.3993.4891.977.6090.6460.7133.9289.9053.5436.1990.1475.2322.02N/AN/AN/A61.8926.5138.2271.180.0171.2491.3782.2015.619.880.0011.2783.7749.6040.3792.2393.875.5788.3940.4244.3293.3493.266.36
PreActResNet-18LC93.7193.596.3993.5594.885.1092.8353.9139.2493.2491.888.0393.2792.747.2288.7981.3815.2789.5662.5035.29N/AN/AN/A49.306.5242.2070.9499.860.1393.6256.7841.8112.085.2411.8184.0616.8268.6491.221.0389.3179.861.4968.1293.7692.487.49
PreActResNet-18SIG93.8082.4314.9093.5181.7715.5393.6984.5912.1893.6581.6415.4393.8082.4314.9090.1114.9750.5389.6665.2925.72N/AN/AN/A70.5285.826.6477.3572.3725.2890.2969.8621.2710.180.0011.2882.2380.329.3890.1183.5312.8886.4563.4119.0293.6183.1414.36
PreActResNet-18LF93.8575.0923.5793.6269.6428.3393.3174.1624.0293.3771.5626.6493.8575.0923.5785.004.4376.6689.2163.4832.44N/AN/AN/A82.8877.6918.5688.953.6386.4892.9781.2117.8811.170.0011.1680.3811.8173.8191.0883.8115.1389.7870.5426.4793.4576.5822.20
PreActResNet-18SSBA93.4135.6759.9993.3627.9766.4693.3716.9976.3093.2830.9163.7393.4135.6660.0085.041.6678.9489.909.7280.02N/AN/AN/A74.0445.2642.5480.127.0075.2290.041.5686.0016.4824.6215.1281.091.3176.2691.5520.8872.0289.586.1982.7793.0138.1057.11
PreActResNet-18WaNet91.271.1291.2493.990.7692.8392.341.1191.4993.670.8992.6791.271.1291.2491.271.1291.2489.482.5786.66N/AN/AN/A42.4875.2819.7764.900.0072.5990.084.1288.2981.975.6877.5984.082.9883.2290.771.4190.3792.380.7891.1790.541.2690.48
PreActResNet-18InputAware90.6656.0641.2793.2275.6423.9391.9373.2125.8393.3679.5420.0790.6656.0741.2788.619.0274.3089.8262.3433.44N/AN/AN/A66.8462.1622.9677.503.8071.3689.9222.2669.4363.0950.9329.8283.1778.9918.4288.906.6678.8688.5414.7269.7688.453.1778.91
PreActResNet-18BPP91.3780.0618.3093.3394.844.8793.3181.3917.3293.1496.093.7193.5193.705.8983.570.8680.7489.5536.0354.59N/AN/AN/A75.5668.1220.8680.078.1770.4588.3511.4475.0083.9780.6913.7484.3956.6636.0889.4716.1872.4291.316.8281.4291.0362.7833.81
PreActResNet-18TrojanNN93.7299.880.1293.3599.740.2692.6398.781.2192.9699.870.1393.2999.920.0885.1344.5830.1189.8499.030.87N/AN/AN/A31.580.0025.7779.7512.2570.4293.4599.010.9911.050.0012.0387.6199.120.8892.6399.900.1088.616.4474.7393.4399.890.11
VGG19_BNBadNet91.9755.1342.5890.1712.5480.9890.157.4384.7687.5537.4857.0491.9755.1342.5889.322.5287.8687.332.0286.33N/AN/AN/AN/AN/AN/A58.070.0064.33N/AN/AN/A10.641.2211.1091.471.1790.8689.6747.9448.6889.294.3085.3391.7457.2040.60
VGG19_BNBlended92.0290.278.9890.4967.6228.2990.3677.8119.8788.4568.5126.5092.0290.278.9888.6265.2126.6386.9169.8125.70N/AN/AN/AN/AN/AN/A53.4030.8942.65N/AN/AN/A12.500.0012.6187.1989.509.5990.0992.466.6688.3437.5644.4392.0190.388.83
VGG19_BNLC92.1492.287.6790.1179.2019.9890.2450.0441.6388.2895.864.0790.1285.0014.5391.5087.2212.5487.5055.1440.76N/AN/AN/A42.834.1830.5955.1199.880.1290.4216.2873.9022.965.3623.2288.9779.3914.2890.513.3786.2286.6773.7624.2392.0295.524.46
VGG19_BNSIG92.2685.6411.6990.4871.1222.0690.7576.5617.4388.3177.5616.9090.4586.9910.1386.200.8468.4087.3058.9724.26N/AN/AN/A57.8923.6818.5054.3180.4816.1691.5496.023.3016.2710.3316.6263.9723.4611.2990.6963.7626.8689.7967.8619.3392.1587.0610.37
VGG19_BNLF91.681.1991.4689.801.3689.6190.211.1889.9288.331.1788.6191.681.1991.4690.000.1891.4986.351.9385.91N/AN/AN/A10.0699.880.0759.7813.6055.6990.261.5690.0810.980.0012.2084.282.3785.1990.381.6690.0988.682.6287.9691.631.1691.43
VGG19_BNSSBA92.087.7083.4490.073.1784.3289.981.8286.1988.745.9380.6790.362.0686.0691.881.1088.2486.695.1681.17N/AN/AN/A66.9415.5054.3161.444.5556.7389.697.7080.2010.470.0011.6388.540.3688.0091.344.0185.8886.023.3881.0092.119.2082.27
VGG19_BNWaNet88.683.5582.6491.341.3989.7791.311.3989.1690.781.1988.8088.683.5582.6484.250.8384.0686.333.4382.98N/AN/AN/A71.789.6764.4356.5712.8151.0687.082.5378.919.100.0010.1365.141.9363.4386.644.2477.4488.921.2687.2587.955.0680.30
VGG19_BNInputAware88.5780.4616.5691.0880.1717.5691.3867.0928.0991.1488.0410.4391.5383.4915.0388.865.2976.7986.8049.3041.70N/AN/AN/A63.3714.4348.7062.1513.1852.6385.907.1174.3211.981.4111.5284.459.9671.3187.1930.5356.5789.560.9945.4388.793.7274.70
VGG19_BNBPP88.068.2979.6091.8011.1280.2991.694.6685.3791.2510.3780.5191.656.9883.6684.101.6277.5886.387.5274.96N/AN/AN/A35.1327.0626.8662.8715.9852.7484.610.3783.5789.8727.9365.7259.925.7751.2687.925.2481.2489.911.3486.2684.230.8878.97
VGG19_BNTrojanNN91.8299.920.0790.2698.681.2689.9598.691.2388.7099.120.8691.8299.920.0785.5056.7134.7387.4599.490.47N/AN/AN/A38.470.0023.9154.2899.860.1288.2845.2343.8991.5999.610.3891.4298.870.6890.1298.981.0189.961.6065.5791.7599.940.06
ViT_b_16BadNet96.4947.0051.5396.6231.2967.0495.4614.4882.0624.3710.0121.9296.5327.0271.1795.5638.0160.1696.620.7296.40N/AN/AN/A97.7939.8859.11N/AN/AN/A96.4947.0151.5391.2317.5278.1710.000.0011.11N/AN/AN/A26.5913.6021.29N/AN/AN/A
ViT_b_16Blended96.4992.906.8696.5892.866.8994.8582.1916.1728.2411.0023.9996.3693.306.4896.4992.916.8496.7291.787.89N/AN/AN/A97.9296.633.27N/AN/AN/A96.4992.916.8495.6192.397.2910.000.0011.11N/AN/AN/A26.1520.3020.10N/AN/AN/A
ViT_b_16LC96.7964.3735.3896.6266.6233.1694.8979.3214.4626.279.6423.5496.6866.4133.3796.7863.2236.5196.6540.6058.62N/AN/AN/A97.9483.0116.98N/AN/AN/A96.7964.3735.3890.2661.2937.9210.000.0011.1196.5861.4738.2627.999.9426.1496.0377.3721.32
ViT_b_16SIG96.6744.8751.2496.5446.1350.1694.7039.5648.7325.4010.8922.6096.6744.8751.2496.6444.6151.4896.7936.3658.02N/AN/AN/A97.8847.6848.7155.3072.2112.2696.6744.8751.2496.2343.0951.8710.00100.000.0096.4849.7346.6327.3511.0625.3996.0952.5144.12
ViT_b_16LF96.500.3296.4696.360.3896.2895.190.4095.2425.958.1024.0496.370.3396.3496.500.3296.4696.640.3496.57N/AN/AN/A97.780.1897.7922.721.4623.9096.500.3296.4696.090.3096.0110.00100.000.0096.170.4196.1027.8211.4825.2095.131.3694.90
ViT_b_16SSBA96.5217.6479.0696.358.6287.5293.041.3488.2623.087.9921.1896.5217.6479.0696.308.9387.3696.586.8089.44N/AN/AN/A98.1112.6885.14N/AN/AN/A96.5217.6379.0824.380.5727.7110.000.0011.1196.3218.9777.7626.6312.3124.4495.5518.1978.83
ViT_b_16WaNet91.801.6790.3593.870.6793.3393.600.5393.2879.364.9078.1091.801.6790.3591.801.6790.3596.710.6995.99N/AN/AN/A97.780.3197.3357.923.9455.8891.801.6790.3593.541.6792.2110.000.0011.1191.511.8389.8384.221.2183.5390.261.9088.79
ViT_b_16InputAware92.0155.9742.1394.7857.4442.0493.5028.6853.2375.0710.9958.1794.5053.5745.7991.1256.4142.3496.5947.5751.64N/AN/AN/A97.8256.9342.52N/AN/AN/A91.1256.4242.3393.4157.6241.81N/AN/AN/A90.2056.9841.4183.025.9270.0088.5068.8230.08
ViT_b_16BPP91.9580.5618.3494.1985.8813.5393.1072.6820.9379.258.0064.8894.2583.7715.5191.5177.3921.2096.6684.3114.83N/AN/AN/A97.7791.508.17N/AN/AN/A91.9580.5618.3492.0688.5010.97N/AN/AN/AN/AN/AN/A82.063.4973.70N/AN/AN/A
ViT_b_16TrojanNN96.7897.972.0396.5496.113.8993.8182.0410.9025.6218.1021.6996.5196.513.4996.5296.843.1696.6497.112.89N/AN/AN/A97.9599.970.03N/AN/AN/A96.7797.972.0320.3341.1611.8110.000.0011.1196.4697.642.3626.1615.0419.7296.0199.520.48
ConvNext_tinyBadNet91.9723.0471.1489.612.8187.5289.031.2988.0286.083.6483.9356.123.6856.5884.021.0885.3091.531.2490.73N/AN/AN/A92.6919.9175.1869.486.4866.9591.9723.0671.1384.4215.6273.0261.838.7760.1791.6314.1178.8990.126.6484.5991.7319.6474.09
ConvNext_tinyBlended92.2590.019.2689.9858.5335.7988.9338.9251.2186.8139.3849.6792.2590.019.2684.6571.2724.1391.3087.8411.30N/AN/AN/A92.9592.187.2476.354.8368.6292.2590.019.2691.4091.527.7858.987.4645.2091.9890.538.8188.898.0765.6292.1285.1713.68
ConvNext_tinyLC92.3144.4352.4789.6612.5278.5388.698.1680.9986.9810.5878.6078.582.5476.4884.700.5484.6791.0321.2471.64N/AN/AN/A92.9742.2253.3271.0710.0266.2992.3144.4252.4890.2027.9265.5225.3420.7121.9391.7751.6845.8990.378.6281.2792.1445.4851.58
ConvNext_tinySIG92.1066.0930.4889.8128.9356.4789.0615.2060.5987.218.3862.3089.9540.0048.9083.7446.4741.5991.8347.3843.10N/AN/AN/A92.8451.4440.5274.0876.0920.1192.1166.0930.4890.6759.5735.1260.2231.4222.3991.7368.4128.1488.6551.3837.4092.1062.5633.24
ConvNext_tinyLF92.080.7991.8689.650.9089.5088.671.0688.4986.261.5385.5892.080.7991.8688.110.5288.8791.431.0191.12N/AN/AN/A92.860.8192.5870.525.2968.2392.080.7991.8691.700.7691.4858.3314.8454.6691.031.3190.6289.930.8090.0191.790.9691.52
ConvNext_tinySSBA92.186.4784.8689.611.4786.6189.071.3486.4285.802.1383.9776.082.2673.7885.122.0281.4791.574.1186.78N/AN/AN/A92.5311.4480.8673.624.3969.3092.186.4784.8691.793.6887.0159.6510.0750.8391.776.7184.1390.321.4486.9292.165.5685.46
ConvNext_tinyWaNet87.541.1885.2589.041.1287.7888.351.1087.0988.811.3187.4787.541.1885.2585.520.4685.0491.482.5388.66N/AN/AN/A92.833.7488.8769.194.8766.0787.541.1885.2583.334.4877.8559.845.9058.2285.380.7184.1488.001.2986.2887.140.8685.23
ConvNext_tinyInputAware87.6441.7750.8889.2850.7344.2788.8241.4045.6289.2147.5146.3289.190.6853.6281.7412.2666.3091.4557.9637.49N/AN/AN/A92.7856.1139.8172.587.3565.5387.8874.4024.2689.5876.0122.3163.739.5253.9987.3576.1422.4788.368.9065.3387.7574.2324.36
ConvNext_tinyBPP87.093.1382.2689.103.1284.8787.662.0883.6488.714.2983.7188.914.2984.2986.021.3882.8990.8616.3970.91N/AN/AN/A92.5926.6664.5177.473.9473.8787.093.1382.2689.3111.5079.1653.448.1749.4087.231.8883.6188.961.4885.4886.913.1682.02
ConvNext_tinyTrojanNN92.3999.930.0689.6293.605.9689.2671.6825.6885.6491.138.1689.5691.877.8984.2382.7115.3791.5599.430.54N/AN/AN/A93.0199.910.0972.4012.1658.7092.3999.930.0690.7899.190.7957.859.2350.0691.8699.960.0488.7196.563.3892.2899.960.03

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet93.1474.7324.2493.0710.3684.5892.9820.1875.8792.528.3385.9691.640.8891.6884.670.2985.3088.8827.1868.14N/AN/AN/A72.8153.2041.3178.092.9976.5189.463.5187.1011.660.8612.9381.782.2180.7991.8545.8651.7287.633.6285.4692.1979.5719.37
PreActResNet-18Blended93.7694.884.7993.5391.967.5693.4894.145.4193.3492.077.4190.9865.9129.2486.9237.0140.6889.7786.0912.67N/AN/AN/A66.260.1734.9170.188.0455.6092.2590.888.4110.990.0011.6779.9247.9434.2191.2789.549.0189.7030.3651.5493.0195.384.27
PreActResNet-18LC93.8093.736.2493.6095.474.5192.3440.3353.2893.2082.3317.4293.2898.701.2987.0653.2823.4489.9462.7835.68N/AN/AN/A54.372.7045.8866.8799.980.0293.6189.8610.0910.890.0012.0981.0944.6847.7791.874.5188.1990.0148.3645.2493.7390.769.22
PreActResNet-18SIG93.8283.4014.2993.5988.1710.1393.4888.0710.0893.4183.2014.2293.8283.4014.2991.8223.6350.4790.0074.8118.61N/AN/AN/A64.330.0020.5175.0167.8229.8793.7482.3615.0211.570.0011.7382.8761.6612.8491.9978.7116.8190.6636.5238.6993.4582.5014.89
PreActResNet-18LF93.5686.4612.8893.3582.5416.3693.2586.5812.6093.3484.4314.6493.5686.4612.8788.116.3678.7889.4976.2221.40N/AN/AN/A60.0455.0730.7679.137.4775.3891.2081.2616.529.360.0010.0879.7724.2765.3390.3986.2412.7490.4170.5626.0993.3286.7612.54
PreActResNet-18SSBA93.4373.4424.8993.2461.3235.9893.3452.7643.5393.3367.0330.8390.451.2285.7791.682.1987.5289.6127.9264.11N/AN/AN/A83.1156.3337.6978.521.1374.2190.995.2783.8212.4127.6911.4782.422.4776.3091.9373.9724.0090.063.4381.2793.3766.9230.58
PreActResNet-18WaNet90.6512.6379.9493.610.6892.7292.070.9391.1093.610.7892.6790.6512.6679.9284.960.5986.3789.534.8784.87N/AN/AN/A65.4353.4337.9879.744.6078.4688.572.9185.9682.122.8678.6783.912.7283.5987.6712.7676.5991.512.2389.9490.4314.3478.30
PreActResNet-18InputAware91.7479.1819.8993.1477.6821.5992.2053.6943.8993.0785.1314.3791.7479.1919.8885.887.5475.4189.4460.5636.07N/AN/AN/A72.2669.3124.8969.6614.3662.6791.2423.1967.3167.6959.0830.1282.6955.8138.9788.705.3479.1488.543.9778.1990.1882.7416.44
PreActResNet-18BPP90.8187.2311.8893.3564.9632.5392.9771.7319.8093.169.4080.9293.218.9877.3989.415.7266.6889.1316.7474.51N/AN/AN/A55.6111.7849.7086.306.9175.9788.910.9985.5872.5281.8413.1287.8158.4838.5889.658.3273.4290.692.7783.9889.2831.9658.10
PreActResNet-18TrojanNN93.5899.970.0393.4099.920.0892.6099.360.6492.7899.730.2793.1999.940.0686.3994.793.9289.7299.530.44N/AN/AN/A24.73100.000.0074.4999.990.0192.7494.894.8912.350.0013.3188.4498.971.0392.6510.4274.4887.8411.4359.1993.4499.980.02
VGG19_BNBadNet91.5179.8719.1289.2830.1665.1989.3229.4466.2787.5449.5046.8390.0137.3458.0988.411.7487.1786.589.0180.99N/AN/AN/AN/AN/AN/A54.8111.1250.42N/AN/AN/A87.8873.6624.8290.601.8690.1090.4271.0227.3385.879.6476.7391.5679.8119.16
VGG19_BNBlended91.8394.195.2189.9974.3722.8189.9483.7414.7289.3287.6710.7788.3248.0442.1086.9449.8339.0987.1785.1012.60N/AN/AN/AN/AN/AN/A55.090.0031.27N/AN/AN/A14.554.7613.8391.2297.102.3389.8393.965.1089.5879.4116.8491.8694.674.79
VGG19_BNLC92.4188.4411.4690.6377.0022.4290.1764.5934.2889.5176.5123.1090.2268.0130.9289.3631.4859.8687.0988.9410.40N/AN/AN/A49.3863.5723.2952.82100.000.0089.9222.6169.4686.5950.7643.8876.2899.900.0287.121.0983.5089.5765.4632.9792.0789.4810.42
VGG19_BNSIG92.1192.796.4790.5976.1818.0790.3777.3416.3389.0991.837.0890.3483.7813.3488.143.1064.0787.2279.3414.54N/AN/AN/A63.3656.5820.1355.920.0012.3691.4896.403.1182.7386.185.3382.3691.425.8991.2180.9814.0986.4538.5637.3092.0993.335.92
VGG19_BNLF91.171.5491.0089.691.2089.4889.680.9789.5488.741.4488.7189.820.9189.8191.000.4091.5886.021.9085.72N/AN/AN/A70.420.2672.0856.8310.2152.6889.481.5089.229.950.0111.0382.410.9481.4389.872.9789.3089.631.8389.1791.211.5891.09
VGG19_BNSSBA91.9038.0856.6789.874.4484.1190.178.9980.8288.628.7178.3391.9038.0856.6790.331.4986.6186.9010.6176.34N/AN/AN/A59.2334.5740.7858.4512.2051.7487.8132.2160.3310.920.4610.8488.008.3981.5990.1021.7770.8189.5413.9476.4691.9241.3353.62
VGG19_BNWaNet90.1223.4769.6291.642.3388.9291.422.0189.1291.023.3787.3890.1223.4769.6288.091.2087.8186.565.1981.39N/AN/AN/A14.3196.550.4555.8015.2250.8688.761.6484.2310.000.0011.1387.222.4486.3587.4331.1661.6489.772.2687.1775.8455.7639.70
VGG19_BNInputAware89.0267.3028.3891.7565.2930.5191.6168.0428.1991.3364.1031.4388.2740.5149.4088.332.4078.6187.0138.2352.52N/AN/AN/A10.000.0011.1153.6616.1744.5787.183.8678.3890.6780.9316.7391.5967.9428.9286.792.9176.0889.310.1656.9087.954.3175.96
VGG19_BNBPP89.2047.7147.0091.8238.3955.9091.7650.4445.2791.2856.4439.7092.0266.3130.8982.061.5271.3186.434.6481.93N/AN/AN/A10.00100.000.0056.817.6751.0486.891.2183.6710.020.0011.1383.1514.8174.0687.076.4676.5389.8113.8951.8688.302.3283.04
VGG19_BNTrojanNN91.9799.920.0890.3998.731.1890.3299.460.4988.98100.000.0091.9799.920.0889.1882.9014.9187.5799.680.31N/AN/AN/A18.540.0015.4055.6899.870.1390.7576.5819.9611.410.0012.1088.2699.880.1291.2723.6956.8788.7299.660.3391.7899.940.06
ViT_b_16BadNet96.5072.7326.5096.4159.8239.1095.5136.8360.3023.1312.9420.3296.140.4495.9395.1867.9430.9396.5629.7168.29N/AN/AN/A10.00100.000.00N/AN/AN/A96.5072.7326.5018.8324.8312.2410.000.0011.11N/AN/AN/A26.7213.0922.02N/AN/AN/A
ViT_b_16Blended96.5496.343.5496.5195.264.5994.3478.2316.1025.1416.0919.5296.4196.283.5890.5689.499.6896.6094.585.26N/AN/AN/A97.9698.741.2255.268.2449.0196.5496.343.5496.3696.223.6610.000.0011.11N/AN/AN/A26.1022.6018.27N/AN/AN/A
ViT_b_16LC96.6568.0331.4696.4665.6133.8094.1275.1215.9124.519.4722.7096.4366.2133.2196.5867.0732.4096.5163.3136.53N/AN/AN/A98.1689.7210.28N/AN/AN/A96.6568.0331.4618.6429.0711.7010.000.0011.1196.5461.7137.5026.2313.1423.4395.9561.7431.99
ViT_b_16SIG96.7456.5940.8396.6657.5239.9394.1120.6651.0625.0710.7422.3196.7456.5940.8396.7255.3442.0196.4559.9837.37N/AN/AN/A97.9450.1247.9059.8397.721.5696.7456.5940.8315.708.0212.3710.00100.000.0096.6156.1141.1627.809.7325.7795.8668.5929.23
ViT_b_16LF96.180.4896.0996.200.3796.1395.170.5095.1425.046.6623.1196.180.4896.0996.300.4296.2496.320.5996.23N/AN/AN/A97.840.1697.8122.474.8822.0096.180.4896.0995.550.5395.4810.00100.000.0096.140.5296.0127.5611.4725.5094.921.4294.74
ViT_b_16SSBA96.5563.7934.9696.4444.5753.1694.640.5490.1726.2810.2224.2696.5950.5247.5496.4943.0054.6496.5236.1661.90N/AN/AN/A97.6254.3944.73N/AN/AN/A96.5563.7934.9627.018.5725.0710.000.0011.1196.3662.2336.4327.529.8126.1995.5159.4439.14
ViT_b_16WaNet92.130.7591.5194.070.5893.5593.870.4893.3177.634.5476.2792.130.7591.5192.130.7591.5196.320.8395.60N/AN/AN/A97.760.8696.5458.226.4455.3692.130.7591.5192.171.7089.6310.000.0011.1291.910.9891.4086.541.6485.2191.340.7391.08
ViT_b_16InputAware90.8861.2137.2494.5665.9633.5693.8062.8135.1776.8711.3464.7694.4861.7437.5490.9882.0617.4496.5753.6445.26N/AN/AN/A97.8260.4239.02N/AN/AN/A90.9983.8315.7453.9339.6432.18N/AN/AN/A90.5585.2814.3076.6318.0059.3788.6191.448.22
ViT_b_16BPP91.6378.0420.4194.0189.2610.2993.7486.3113.0075.534.5866.5691.6378.0420.4191.1977.0121.3896.6693.816.01N/AN/AN/A97.9095.534.40N/AN/AN/A91.6378.0420.4145.7443.9020.23N/AN/AN/AN/AN/AN/A81.496.4971.62N/AN/AN/A
ViT_b_16TrojanNN96.5999.230.7796.5398.401.5994.8095.034.6325.6120.8219.9196.6598.631.3696.5899.020.9796.5197.932.07N/AN/AN/A97.9599.970.03N/AN/AN/A96.5999.230.7795.3795.404.5710.000.0011.1196.5399.240.7627.0014.2821.4295.8799.930.07
ConvNext_tinyBadNet91.8567.4730.4289.485.9684.2689.574.4385.5085.837.4780.1091.8567.4930.4085.911.5986.3191.0940.6055.82N/AN/AN/A92.6086.8312.3668.395.2465.7191.8567.4930.4085.8344.1850.9962.489.5061.3690.1169.7327.5988.5116.1775.0691.7264.5433.04
ConvNext_tinyBlended92.2194.874.7889.5063.5331.9089.0538.5349.8884.5254.4937.9389.6076.1721.6286.8975.2821.4191.3592.377.17N/AN/AN/A92.8296.942.9274.534.6766.7392.2194.874.7889.8693.615.7862.137.3246.5891.7594.515.0788.9587.2111.4292.2494.375.26
ConvNext_tinyLC92.2571.2327.9189.1819.0372.6289.1018.7172.1185.6510.4177.2890.0821.8071.7185.930.6486.2091.7943.4952.23N/AN/AN/A92.8958.1639.0667.3175.1320.7792.2571.2027.9491.8165.2633.4058.5518.3049.5691.5779.8019.7190.1215.2770.1892.1372.7226.54
ConvNext_tinySIG92.1177.4620.7889.7025.8657.5888.1621.4054.1487.2525.9952.0169.390.4133.6683.6942.7644.5991.3867.2227.87N/AN/AN/A92.9172.5024.0372.2691.477.4692.1077.4320.8091.6577.1120.5862.4868.2914.1291.7483.3715.4990.1672.9723.4291.9273.6223.98
ConvNext_tinyLF91.800.7291.6189.091.0188.9989.830.7289.7185.732.6484.8689.500.9789.3888.040.4688.7291.171.0490.89N/AN/AN/A92.660.8692.3869.175.7766.4691.800.7291.6185.991.3285.5264.328.4462.6391.350.5791.2989.650.6789.8091.730.8191.51
ConvNext_tinySSBA91.8438.4856.1289.463.8384.5289.011.3485.9486.096.8779.3191.8438.4856.1288.8318.1372.7791.5611.0980.90N/AN/AN/A92.5159.2738.0275.036.2370.4591.8438.4856.1291.1422.4370.0339.749.2737.0291.6038.2656.1389.5813.7175.7191.6335.8858.33
ConvNext_tinyWaNet88.704.1784.6088.721.3287.4488.441.1587.1488.631.2887.6888.670.9887.6684.161.6182.1990.814.5786.15N/AN/AN/A92.827.6884.9270.974.6966.8788.714.1784.6089.257.9883.4357.8010.5254.0187.843.8584.2188.271.6886.6788.514.2584.44
ConvNext_tinyInputAware88.1862.3435.3489.6546.1948.8288.9727.9660.9189.5847.0648.3789.5666.0631.6681.697.0068.1191.3548.0848.01N/AN/AN/A92.9450.8845.3672.476.3467.4887.9674.3623.6287.4873.4824.6459.7111.2352.0687.3874.0023.6489.056.0177.0687.9672.6625.09
ConvNext_tinyBPP86.0023.6767.0489.0813.7077.5888.335.3082.1188.9414.2476.6788.9210.3179.6384.273.1281.1191.2713.6377.74N/AN/AN/A92.9430.2864.4779.034.1475.9086.0023.6767.0489.2716.7675.3021.2219.5219.6985.0618.2369.9188.582.7684.1286.0423.3867.14
ConvNext_tinyTrojanNN92.3099.930.0789.4991.847.3388.8677.5418.6085.4391.117.6689.8395.794.0684.4618.8059.3191.7299.840.14N/AN/AN/A92.9099.980.0274.1716.9359.9192.3099.930.0789.3898.381.5662.1350.0331.2391.5899.940.0689.7948.0737.1492.0699.960.04

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet92.6488.7410.7891.224.4988.2292.4717.4777.9091.034.7387.9389.891.1789.7087.240.3487.3490.2775.6123.58N/AN/AN/A84.080.0090.5087.682.1187.0191.3224.4971.0611.170.0012.4181.462.3781.4391.040.9891.2789.210.8188.9992.4890.579.04
PreActResNet-18Blended93.6799.610.3993.2598.781.2193.4698.871.1193.1099.060.9393.6699.610.3988.0011.9858.5091.5498.931.03N/AN/AN/A65.780.0048.4875.0099.990.0190.1979.5815.5616.480.0015.8783.0386.0812.2192.0698.990.9285.9236.3334.1493.4999.580.42
PreActResNet-18LC93.5399.800.2092.9999.980.0292.2660.3035.7991.9899.260.7492.88100.000.0086.1620.8447.7289.3594.735.20N/AN/AN/A46.920.0140.4485.1199.960.0493.3681.6918.1417.190.7818.1383.5419.3670.2391.200.2689.1287.843.7881.4193.3799.910.09
PreActResNet-18SIG93.6497.092.9092.8496.423.4693.2799.790.2092.4996.982.9393.6597.092.9086.640.2149.6190.2493.326.31N/AN/AN/A46.140.0042.3074.8695.584.2293.1897.192.7712.514.1711.5082.8884.4210.7992.431.5759.0786.123.5057.2493.4097.232.76
PreActResNet-18LF93.3598.031.8693.2193.626.0293.1498.371.5392.9894.235.3093.3598.031.8686.322.6682.7989.0295.144.29N/AN/AN/A66.5498.021.2783.9815.6773.1192.8195.863.8616.5572.484.6477.6073.4324.4791.6583.7115.2285.7450.7834.3893.2198.081.83
PreActResNet-18SSBA93.2794.914.8293.0887.4611.6993.0587.1412.0992.4988.6310.5891.040.8087.9387.530.6681.6388.4792.646.63N/AN/AN/A81.600.0979.7672.1911.3465.4291.5544.9049.6816.423.7418.4879.7764.0028.9692.2912.1478.7189.432.3083.3393.0394.884.81
PreActResNet-18WaNet91.7685.5013.4993.4731.3264.0392.1426.1063.5093.3150.4046.4691.7685.5013.4987.210.5787.6991.9688.7210.88N/AN/AN/A69.4995.203.7972.229.9369.4190.1625.7266.6061.6582.1111.7876.585.0076.2391.3631.9862.8691.136.1185.2791.691.3790.22
PreActResNet-18InputAware91.5290.208.9193.1289.349.9991.8952.7444.4993.0797.122.6891.5190.208.9191.542.2286.4092.0792.207.36N/AN/AN/A58.1492.584.8476.236.1271.9990.712.0085.4474.5798.241.6377.9615.0259.0790.591.5185.0991.689.1677.4190.811.7185.17
PreActResNet-18BPP91.4799.340.6293.373.4686.6093.2687.1211.6393.093.5387.2991.4799.340.6284.030.6978.0089.6497.961.90N/AN/AN/A82.8999.930.0781.7199.980.0189.131.4383.2383.0895.021.1288.0494.515.2189.147.6077.6791.355.7277.3390.7589.319.68
PreActResNet-18TrojanNN93.7999.990.0192.9044.2247.9992.3383.6013.3292.684.2482.8292.5995.064.1489.0212.6864.0889.4099.930.07N/AN/AN/A18.64100.000.0072.34100.000.0092.7299.900.1013.300.0014.0088.1493.666.3192.054.1280.9089.427.4971.7193.6281.6317.26
VGG19_BNBadNet91.1993.925.7688.9352.9944.2389.3933.8261.2986.7371.4825.8988.9845.4450.1384.515.0181.7785.7588.4910.37N/AN/AN/AN/AN/AN/A61.152.6161.89N/AN/AN/A74.2461.5032.5781.613.0780.6989.4380.7418.1888.6433.8861.5190.8093.745.90
VGG19_BNBlended92.2499.430.5189.7596.183.4690.2789.399.7388.7189.968.9988.3415.4948.2089.3840.9645.6787.1897.821.92N/AN/AN/AN/AN/AN/A52.7299.990.01N/AN/AN/A91.7298.571.3072.8985.2611.8890.3198.261.4389.4161.7430.8892.0899.360.59
VGG19_BNLC91.7098.731.2789.7990.778.7389.7686.5413.0488.2299.820.1889.6719.1037.9887.5927.1359.9386.7098.981.02N/AN/AN/A10.000.0011.1155.75100.000.0089.6114.1677.8211.480.0012.6956.7927.1744.9989.000.5885.8683.5830.9345.2891.5199.300.70
VGG19_BNSIG91.9197.232.7090.1444.2839.2290.2277.9818.6388.9597.762.0989.7594.605.2183.750.4364.9486.3097.112.57N/AN/AN/A10.00100.000.0054.1699.360.6390.3498.721.2210.710.0011.7063.280.0225.8990.3626.1647.4087.744.8064.1191.8997.372.57
VGG19_BNLF88.276.2987.5488.951.3988.6189.101.1089.0387.601.4487.4688.276.2987.5488.640.1890.3984.254.8883.67N/AN/AN/A29.100.5132.1455.3213.1350.7985.948.0185.0483.322.7183.7289.772.8988.9785.189.2684.1083.965.4182.9187.677.1986.83
VGG19_BNSSBA91.5390.398.8889.8153.1142.0889.6954.6840.8887.9455.6439.0791.5390.398.8888.600.8485.3985.9374.0722.44N/AN/AN/A58.5719.2149.4848.4397.052.1490.0483.4115.1490.6858.2638.4355.8221.6948.2890.4678.2719.6788.158.1677.1691.2790.968.31
VGG19_BNWaNet87.4294.325.3091.8315.8675.8591.7411.2779.8491.346.8882.7787.4294.325.3084.280.4083.4586.0352.4741.75N/AN/AN/A10.00100.000.0056.7219.8252.2488.482.9384.1290.2897.232.6272.182.6769.4987.1971.3726.0390.111.9681.5824.4192.675.60
VGG19_BNInputAware90.0189.749.0991.0731.3661.1191.0942.0152.6690.6539.6855.0689.2293.346.1888.200.8882.4987.7971.5924.83N/AN/AN/A59.6683.819.7261.1843.3843.5987.113.5878.9891.5794.285.5190.1977.0119.6188.323.2680.0089.3327.3942.1988.712.4481.32
VGG19_BNBPP89.3098.301.6091.782.1286.9491.902.9986.2991.572.0784.7291.542.0486.8082.550.5470.8786.5072.5424.26N/AN/AN/A14.34100.000.0059.8217.0553.2388.443.1883.9791.6395.274.3710.000.0011.1188.875.2982.3690.460.3175.2088.4187.0211.76
VGG19_BNTrojanNN92.2699.990.0189.5585.1212.5089.9193.675.5888.4998.501.2188.977.3169.7986.530.3860.5886.7499.970.02N/AN/AN/A10.00100.000.0047.80100.000.0090.6592.436.8310.00100.000.0064.8120.2324.2689.728.5157.1989.240.0027.5792.2399.990.01
ViT_b_16BadNet95.5891.088.6295.8076.3223.0195.1843.5753.7826.8910.3624.3495.8877.1622.1795.5891.088.6296.3179.3320.23N/AN/AN/A10.000.0011.11N/AN/AN/A95.5891.088.6294.5288.0011.6810.000.0011.11N/AN/AN/A27.6113.7021.34N/AN/AN/A
ViT_b_16Blended96.6599.320.6696.5198.701.2693.8431.4826.9425.0515.7921.5996.3799.200.7793.3897.662.2196.7499.180.80N/AN/AN/A97.7499.810.19N/AN/AN/A96.6599.320.6695.6899.220.7410.000.0011.11N/AN/AN/A25.9727.5017.28N/AN/AN/A
ViT_b_16LC96.4879.6020.3796.2875.6924.2794.5385.0212.5328.407.7826.1896.2378.7421.2396.4879.6020.3796.4687.3812.62N/AN/AN/A97.8094.975.03N/AN/AN/A96.4879.6020.3795.9970.0729.8310.00100.000.0096.1378.0421.9326.4112.6023.5696.0090.289.59
ViT_b_16SIG96.2487.0712.5496.1487.5312.1093.6170.5020.8326.798.8724.2495.8987.3912.2996.2883.1916.2696.5081.6717.66N/AN/AN/A97.9381.5918.08N/AN/AN/A96.2487.0712.5495.7377.4621.6410.000.0011.1196.0388.8410.8626.437.7125.2295.6091.578.13
ViT_b_16LF95.331.2395.1796.010.3995.9694.010.4094.2323.948.0822.5195.850.4895.7294.180.6794.2495.970.9095.89N/AN/AN/A10.00100.000.0015.5879.036.5395.331.2395.1780.562.4679.0610.000.0011.1194.951.5494.6628.179.7425.8293.282.9192.99
ViT_b_16SSBA96.4695.484.3996.4588.8110.8694.832.0087.8024.696.5823.4996.3490.069.5896.3589.0710.7096.3391.967.91N/AN/AN/A97.6495.584.3725.2732.8919.5696.4595.484.3921.2610.6222.6410.000.0011.1196.2695.594.3127.7514.3924.9295.2795.624.21
ViT_b_16WaNet91.5347.7449.4494.131.5492.5394.360.4093.9778.603.2877.7991.5347.7449.4482.448.8875.8395.6118.2479.13N/AN/AN/A97.3932.6765.64N/AN/AN/A91.5347.7449.4491.2065.4132.7410.000.0011.1291.0049.8847.5085.321.9983.8690.4330.7964.13
ViT_b_16InputAware90.5286.7412.6894.6394.535.3194.2565.8733.2877.673.2871.7794.4794.645.2289.7494.845.0096.4080.6918.77N/AN/AN/A97.7385.9113.87N/AN/AN/A91.5996.013.8351.7394.015.17N/AN/AN/A91.2495.134.6784.011.8879.8888.7596.673.21
ViT_b_16BPP91.3499.010.9694.0999.210.7793.6898.771.1176.6110.2360.9294.2999.370.6391.3499.010.9696.6099.520.47N/AN/AN/A97.9499.690.31N/AN/AN/A91.3499.010.9670.6398.261.13N/AN/AN/AN/AN/AN/A83.1953.0939.02N/AN/AN/A
ViT_b_16TrojanNN96.4699.870.1396.3099.230.7794.3892.084.5025.5113.4121.3896.4199.820.1896.4799.780.2296.5299.810.19N/AN/AN/A97.96100.000.0055.1099.980.0296.4599.870.1313.310.0014.3210.000.0011.1196.2199.980.0227.1014.0021.3995.89100.000.00
ConvNext_tinyBadNet91.2892.786.7389.2820.9172.3389.234.3285.0984.5334.6858.9391.2892.776.7489.4418.4175.0089.8491.617.77N/AN/AN/A89.3781.5317.3172.766.7170.3791.2892.776.7476.811.6075.4739.254.2139.4690.8492.227.2188.5538.5156.8290.6092.447.00
ConvNext_tinyBlended92.2599.440.5289.3181.6316.7488.4562.8632.7286.4681.7016.2289.3391.298.0286.9991.877.5491.7498.311.53N/AN/AN/A93.2699.560.4174.0321.3854.1292.2599.440.5290.2498.581.3110.000.0011.1191.8397.782.1188.6795.473.9792.0999.200.77
ConvNext_tinyLC91.9790.839.0689.5138.5857.6488.6721.4071.2484.8419.0469.1989.2335.1660.4283.550.5383.7491.2474.3724.27N/AN/AN/A92.6182.1617.3168.98100.000.0091.9890.829.0791.6082.4017.3454.8118.7247.7091.6989.8410.0289.4251.1644.4091.6888.0011.87
ConvNext_tinySIG91.8896.013.7889.4170.1325.6288.9854.7634.1985.1844.9341.5078.632.3755.6890.7388.6710.3691.6795.584.11N/AN/AN/A92.5694.614.9171.5999.630.3691.8896.013.7889.7988.8410.0357.8774.1212.1991.6996.363.4288.7494.335.1891.8294.864.84
ConvNext_tinyLF90.212.0789.8988.921.0488.8288.670.9688.5885.433.4084.4990.212.0689.8989.520.5090.2389.282.4688.93N/AN/AN/A91.222.1790.7267.7610.0464.8990.212.0689.8989.471.9789.2856.5112.7055.8989.862.4789.4489.631.0389.6690.292.0789.87
ConvNext_tinySSBA91.6694.465.1089.4826.0465.5988.582.7484.0285.9157.7438.1791.6694.465.1084.8730.2859.6190.9584.9313.86N/AN/AN/A92.4596.173.5772.2713.6466.8691.6694.465.1090.1483.2015.8232.295.7728.8691.1192.636.7789.632.6980.4890.8893.525.92
ConvNext_tinyWaNet87.1056.7239.0788.842.8986.2088.770.9587.5388.435.8883.1887.0956.7039.0979.267.9873.2690.1939.4755.11N/AN/AN/A92.0053.3843.6577.812.8574.9787.0956.7039.0986.9376.2121.8117.9925.9816.9586.2860.0935.7888.217.7180.5986.8256.1239.56
ConvNext_tinyInputAware88.3292.087.5489.3088.0211.5488.7055.5441.6189.1583.2715.8989.2291.837.9080.773.4972.4491.3971.6825.91N/AN/AN/A92.5276.4921.4070.5413.5662.3287.6991.018.3688.8995.204.7017.423.5218.4085.6296.203.5488.4588.4710.9787.3092.526.93
ConvNext_tinyBPP87.3499.480.4788.8798.531.4287.9097.592.3288.6398.241.6788.8299.160.7880.790.7179.3691.3197.662.21N/AN/AN/A92.8999.500.4974.597.2869.9187.3499.480.4788.8598.181.7748.3417.8044.7186.0199.690.2888.9222.2754.1987.0299.310.62
ConvNext_tinyTrojanNN92.3399.990.0189.3597.372.4489.2387.3011.1185.7191.567.8489.4597.981.9984.0338.8347.4691.5299.980.02N/AN/AN/A92.88100.000.0067.76100.000.0092.3399.990.0191.5599.960.0432.2813.4125.7291.6499.990.0189.828.5769.2892.1599.990.01

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet91.3295.034.6789.961.4889.3991.3157.1341.6289.872.1488.7189.051.2789.1684.170.7384.0488.8086.2313.28N/AN/AN/A83.320.0089.0289.651.2889.1790.0777.5621.4429.414.6827.2882.635.4180.8789.691.8389.5489.161.2989.2491.1094.774.91
PreActResNet-18Blended93.4799.920.0892.7896.113.5793.1799.260.7392.1797.692.1493.4799.920.0886.582.1961.1788.5299.720.28N/AN/AN/A77.300.7364.5269.9199.980.0291.3299.740.2314.777.7010.9283.3379.4916.5192.4352.1137.5487.0050.5333.2193.3399.890.11
PreActResNet-18LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18LF93.1999.280.7192.3778.4419.4292.9098.971.0292.3747.8347.4991.621.4187.4885.150.6082.7288.9298.091.72N/AN/AN/A81.720.2184.8150.9899.700.0892.8499.180.8011.2377.142.7976.4893.206.2391.8285.9812.7784.3644.9648.0093.0699.230.76
PreActResNet-18SSBA92.8897.861.9992.1474.7923.3192.5483.5015.3691.9177.4020.8690.990.5887.0486.540.3979.8790.0096.233.53N/AN/AN/A80.790.0084.6663.5099.510.3991.3868.1329.1616.1838.5412.3482.1680.0318.1692.3110.8178.5387.673.9774.2392.8097.612.21
PreActResNet-18WaNet91.2589.739.7693.4817.1078.2991.461.0969.7393.1722.9872.6991.807.5385.0985.730.4386.5091.9396.803.06N/AN/AN/A83.190.0085.8680.906.6177.6181.9178.4217.6861.7082.069.3077.567.9174.4690.0886.6412.5489.495.2186.6090.971.2489.00
PreActResNet-18InputAware90.6798.261.6693.121.7290.5391.740.0444.5493.181.6891.1292.610.7690.8790.361.6486.9991.4888.6210.61N/AN/AN/A63.1990.165.7778.608.5475.2890.302.1785.5181.8794.165.6874.7194.634.4689.862.2385.2089.1727.0856.7389.711.7986.77
PreActResNet-18BPP90.6999.780.2193.252.5487.0092.7018.3972.2092.812.4686.2292.682.8485.1881.780.2475.3789.2999.730.26N/AN/AN/A78.5513.7764.9368.65100.000.0090.402.1883.9783.1190.877.4087.0299.170.7890.562.3983.8490.996.2482.3490.2033.1059.48
PreActResNet-18TrojanNN93.42100.000.0092.425.9977.3492.4771.0722.9791.883.7381.5991.768.2278.0086.870.2076.2489.7599.970.03N/AN/AN/A11.07100.000.0066.23100.000.0092.98100.000.0012.030.0012.9788.7199.470.5392.172.5083.3790.372.9179.1093.3340.7254.96
VGG19_BNBadNet90.4294.435.2488.1927.5967.2788.425.8682.9486.485.4781.0989.2111.3180.3788.390.4889.2184.8193.835.49N/AN/AN/A68.8179.9616.4356.3520.9551.49N/AN/AN/A10.410.0011.5684.2847.3246.7987.567.2883.9786.012.2885.1690.1594.715.02
VGG19_BNBlended91.9199.500.4890.0886.8211.9089.5186.8312.1288.6083.8613.9790.0783.3314.7889.194.7769.9286.2199.170.70N/AN/AN/A10.000.0011.1146.9799.970.03N/AN/AN/A10.00100.000.0091.1597.811.7190.9922.6255.5687.5869.9022.0091.6299.420.56
VGG19_BNLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNSIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNLF83.2813.8381.9387.671.8287.5988.801.2988.7083.721.1484.2086.641.3686.6084.330.0888.0980.2610.8679.08N/AN/AN/A62.370.0069.0059.778.1555.9681.9914.6180.4614.002.1713.5160.119.7660.1179.3618.8877.3687.681.4787.6983.2513.9281.87
VGG19_BNSSBA90.8595.114.4489.2670.2227.0889.1065.7630.8088.3356.6438.1990.8595.114.4489.811.3485.2685.5490.618.16N/AN/AN/A10.000.0011.1151.2198.810.8185.8298.561.3378.2754.4037.5380.3168.8323.0189.6285.4013.1387.5622.2658.9290.7594.744.76
VGG19_BNWaNet84.5896.493.0091.355.7284.1691.073.9183.2190.7310.3380.4591.206.8883.8378.040.0381.9885.0580.7816.98N/AN/AN/A32.8099.990.0056.8736.8449.0088.461.7582.4710.1299.710.1289.2314.7278.3186.1073.6121.4789.761.6184.8518.1498.920.75
VGG19_BNInputAware88.6694.585.1091.5613.0879.6891.403.2382.6391.0014.1178.1089.7097.022.7286.560.7183.7886.5383.2215.16N/AN/AN/A10.00100.000.0054.6036.4443.1187.542.6683.2891.6698.471.4189.8481.5917.0388.923.8483.5188.2969.5625.0989.472.0184.91
VGG19_BNBPP89.3299.790.1891.391.9187.2991.452.7986.0091.092.4986.5791.501.9287.3883.630.0385.4686.6293.225.89N/AN/AN/A10.00100.000.0054.0799.960.0387.370.8083.9411.450.0011.4980.1099.900.1088.411.3485.5088.691.7284.2789.1799.810.16
VGG19_BNTrojanNN91.57100.000.0089.607.1767.8989.8863.4227.9387.292.3072.6189.287.7676.8689.390.0034.3187.0799.970.03N/AN/AN/A10.00100.000.0046.60100.000.0090.5699.700.2910.000.0011.1188.5299.370.0489.577.3374.3988.638.2345.8691.37100.000.00
ViT_b_16BadNet94.7893.776.0295.1975.5123.6494.7752.3345.7826.349.6623.8395.3069.4029.3494.7893.776.0295.2786.3013.26N/AN/AN/A10.000.0011.11N/AN/AN/A94.7893.776.0218.4566.8910.1810.000.0011.11N/AN/AN/A26.3914.1021.47N/AN/AN/A
ViT_b_16Blended96.5499.680.3196.2899.370.6193.5271.7716.9726.2310.6223.3096.0199.590.4096.4099.610.3896.4599.530.46N/AN/AN/A97.9599.940.0655.9998.740.9896.5499.680.3196.2099.670.3110.00100.000.00N/AN/AN/A27.0919.3120.93N/AN/AN/A
ViT_b_16LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16LF93.363.3793.0095.670.5895.6794.430.4894.5125.5311.6122.5195.340.5195.3491.130.8491.6994.252.5193.96N/AN/AN/A69.3932.8266.0413.0290.923.7393.363.3793.0016.0067.379.0710.000.0011.1193.233.2892.8927.717.4226.3190.895.2890.43
ViT_b_16SSBA96.1797.812.1395.9993.576.2495.2225.4969.2425.547.9223.8196.1393.806.0196.0694.015.8096.2896.603.27N/AN/AN/A97.7998.311.64N/AN/AN/A96.1797.812.1322.7541.1817.1310.000.0011.1195.9798.101.8230.615.9629.7494.6797.632.27
ViT_b_16WaNet89.1280.9517.5993.956.7787.2694.000.4292.7380.235.5978.9194.208.6585.5889.1280.9517.5994.8152.6845.82N/AN/AN/A11.6799.990.01N/AN/AN/A89.1280.9517.5985.2171.8223.4510.000.0011.1388.8579.0519.3183.021.3181.4587.4677.3220.64
ViT_b_16InputAware91.6592.307.0694.3882.5416.3393.9519.8176.3779.025.4371.9691.5579.3419.5091.1675.7623.1895.8764.4034.58N/AN/AN/A21.2899.300.7015.9799.520.1391.5579.3419.5093.8497.632.29N/AN/AN/A90.9479.0319.6481.932.2878.2989.9080.7418.07
ViT_b_16BPP91.3899.370.5893.8399.460.5193.0899.270.6380.629.2465.5391.3899.370.5891.3899.370.5896.6399.800.19N/AN/AN/A97.8699.900.10N/AN/AN/A91.3899.370.5893.4899.000.96N/AN/AN/AN/AN/AN/A80.5643.2441.78N/AN/AN/A
ViT_b_16TrojanNN96.4699.980.0296.2499.730.2794.0494.782.7623.8510.0922.0296.1399.910.0996.3599.960.0496.4899.990.01N/AN/AN/A97.85100.000.00N/AN/AN/A96.4699.980.0219.5499.770.0710.000.0011.1196.1299.990.0125.8313.0120.4895.53100.000.00
ConvNext_tinyBadNet90.4994.335.3188.8413.9678.0289.047.4382.9386.5437.3357.0688.4224.9668.0886.7525.7467.3289.0794.834.70N/AN/AN/A90.9293.576.0077.864.4275.9590.4894.345.3086.004.2884.0659.325.8660.4689.5592.636.7788.1056.3840.7989.9694.205.40
ConvNext_tinyBlended92.3199.800.1989.1486.6412.2288.9783.6215.2685.4772.6421.5489.3591.717.7385.1982.6915.3691.7099.390.56N/AN/AN/A93.0499.880.1065.9799.770.1592.3199.800.1991.7399.710.2763.8287.129.7791.7699.080.8689.0079.7717.1292.0299.630.33
ConvNext_tinyLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinySIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinyLF87.944.2887.2888.711.0688.7188.920.8389.0684.952.8084.1787.944.2887.2888.491.5488.5187.245.1986.37N/AN/AN/A88.943.8788.6271.247.4369.1487.944.2887.2869.2611.6467.2723.6014.6224.9686.395.4485.6688.441.2188.3787.604.5886.89
ConvNext_tinySSBA91.5997.632.1789.1433.8359.3489.0013.5375.6687.4538.6953.7391.5997.632.1785.9482.4816.4190.8995.534.11N/AN/AN/A92.0699.200.7356.7074.9023.4491.5997.632.1779.9067.1827.2125.2717.3920.8191.5397.212.4987.6535.4255.1990.9696.832.88
ConvNext_tinyWaNet86.5675.6822.3589.148.1080.6088.031.4885.7788.4811.6177.5388.305.0083.4479.444.7276.4689.7068.6529.02N/AN/AN/A91.3580.3418.4278.556.8075.6986.5675.6822.3586.3988.2910.7453.7610.2252.8486.2975.7422.1688.3328.0163.4086.5871.5426.06
ConvNext_tinyInputAware87.7093.086.5389.4990.149.4889.1752.4444.9289.3295.823.9487.2997.622.2181.926.3771.4290.9988.6110.50N/AN/AN/A91.9892.297.1976.9622.3264.6787.2997.622.2158.0098.960.9251.6444.6833.6387.0396.213.5388.8285.7213.4487.1797.622.22
ConvNext_tinyBPP86.7999.480.5088.2899.490.4987.5997.722.2187.9799.560.4488.4499.440.5385.445.7279.0291.1599.410.57N/AN/AN/A92.6299.840.1469.9012.6264.9486.7999.480.5072.1099.320.4454.1214.6249.4886.1899.490.5088.1127.1046.2086.5999.530.44
ConvNext_tinyTrojanNN92.0499.990.0189.3198.021.8987.9771.9822.1186.0696.183.2089.1399.640.3482.9328.8953.4291.00100.000.00N/AN/AN/A93.2099.990.0164.06100.000.0092.0499.990.0190.0799.980.0224.0813.2718.6191.5999.990.0189.9770.3921.3191.7699.990.01