CIFAR-100 Leaderboard


Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet70.800.2070.4470.440.1770.2868.880.1468.5770.660.1770.3170.800.2070.4369.440.1068.7661.220.2060.60N/AN/AN/A58.680.3857.3161.940.3861.6668.500.1668.2457.360.4256.4849.010.0548.6368.360.1468.2364.050.1963.7370.450.3070.00
PreActResNet-18Blended70.7552.7524.2770.1447.0826.0269.0842.7525.6470.4048.1525.8570.7552.7624.2767.1540.9326.1260.4723.6430.09N/AN/AN/A61.0046.0021.2660.860.1046.1664.1929.4227.3657.2923.0824.8449.8825.1420.8166.1144.4624.1662.3422.6423.8870.2453.2223.97
PreActResNet-18LC70.824.8959.5170.324.9058.6163.932.5255.5670.583.6559.9870.824.8959.5268.843.1158.8761.420.6058.19N/AN/AN/A55.061.5848.5160.8091.877.1867.503.1257.4056.374.7141.5934.391.9823.4166.230.3262.0065.205.2454.8770.336.7256.59
PreActResNet-18SIG70.7911.1927.0369.9310.1926.8368.696.4924.8670.1410.0726.6867.5312.0324.5167.553.8724.0660.7414.5817.28N/AN/AN/A60.1532.0514.5161.5457.5326.5568.878.3923.3157.385.0322.2549.0551.667.1568.158.2927.4164.143.8523.6270.089.6626.43
PreActResNet-18LF70.820.8465.7070.220.5965.5769.010.5264.1570.280.6165.8370.820.8465.6968.680.3063.5360.471.2254.31N/AN/AN/A61.921.0455.2061.770.4658.9260.271.2253.2556.290.4449.8732.510.5532.2266.710.5762.3563.380.1058.4569.890.6265.64
PreActResNet-18SSBA70.310.4063.3169.840.3063.1568.800.2261.6270.070.3263.0770.310.4063.3165.500.0856.9960.620.6653.27N/AN/AN/A60.640.5152.9060.720.1855.9468.630.2560.6755.860.8347.9148.420.0338.6268.320.2060.8262.800.3654.2470.190.4063.56
PreActResNet-18WaNet65.020.7163.3469.690.2867.2765.350.1863.3669.460.3767.2965.020.7163.3460.390.3959.0260.980.5856.84N/AN/AN/A56.400.6850.2561.560.2158.6663.320.8060.7253.461.8751.0050.170.0249.7763.200.4961.5465.090.3363.0964.030.8562.00
PreActResNet-18InputAware64.1873.1118.4969.9572.4420.3467.1468.0620.5269.6374.1419.1366.840.1462.9663.1152.8123.4660.5524.9134.72N/AN/AN/A61.7124.3832.9460.510.2156.2059.6135.1229.3753.7950.2121.9349.9051.8315.7458.8937.6727.6966.4636.8031.5158.3939.6128.00
PreActResNet-18BPP64.1733.0241.1669.4829.0045.9967.9710.0149.7969.4226.6546.8569.2126.6146.9862.3616.4644.8660.480.2953.96N/AN/AN/A62.080.5555.2559.310.1251.6062.8421.6346.0155.2531.9435.0750.070.1141.3063.8120.0246.2565.940.3554.0760.503.9850.52
PreActResNet-18TrojanNN71.1392.555.5170.2790.366.6163.4268.9212.4170.3692.075.4870.2991.515.9366.4084.859.3660.9582.419.67N/AN/AN/A37.0920.1414.9560.950.4154.5469.6383.6010.5556.1759.809.3849.3396.632.1067.1571.4014.4563.035.7634.0069.9792.725.19
VGG19_BNBadNet65.520.3364.7863.570.1462.7664.930.2564.2663.610.1662.8360.670.2760.0264.850.1163.9851.990.3050.77N/AN/AN/A43.150.2642.0542.330.3241.91N/AN/AN/A65.260.3264.529.660.959.0362.310.2862.0560.880.2960.3364.030.2863.19
VGG19_BNBlended65.7638.0326.6162.7731.8027.3265.2730.0028.3364.7036.6926.3165.7638.0326.6159.6013.5526.0652.332.6331.70N/AN/AN/A34.3723.3512.5538.590.0032.80N/AN/AN/A65.4237.5626.7636.980.0014.5161.6440.5821.6459.5619.8828.6264.8141.1824.25
VGG19_BNLC65.6718.2339.5763.9815.2339.9564.9619.6538.1964.1916.1439.6662.2415.3838.1065.6815.2040.7853.541.3443.95N/AN/AN/A36.537.4120.4443.2788.097.6459.992.9850.7165.7816.6040.0016.800.0114.6463.2610.4142.5160.6130.5928.8562.4513.0638.39
VGG19_BNSIG65.2711.5720.2063.3812.8620.0964.6413.3919.8664.3410.3521.7562.337.4820.1265.3111.4320.4352.696.9015.58N/AN/AN/A41.446.8716.4441.6461.2012.0659.1914.5410.221.170.001.1727.170.245.7163.316.9524.6459.9210.2017.2363.758.5921.16
VGG19_BNLF65.450.2165.2962.990.1662.9164.620.1564.4464.130.2163.9765.450.2165.2964.870.1364.7152.120.1751.87N/AN/AN/A37.410.7137.2638.480.6738.0962.750.2562.7065.340.1965.1633.920.1933.5762.380.1962.4760.260.1660.0162.850.1962.87
VGG19_BNSSBA65.510.5658.7064.560.2757.6965.500.1258.5265.140.4758.5665.510.5658.7065.040.2158.6451.800.3746.24N/AN/AN/A28.490.2626.2943.690.3240.1861.570.6256.9765.450.4958.9327.860.0524.1363.200.6956.5260.450.0252.1562.630.8355.53
VGG19_BNWaNet59.390.3456.1265.070.2362.0165.410.2762.5464.690.2961.9559.390.3456.1259.390.3456.1252.620.4548.94N/AN/AN/A22.820.1021.5740.390.7238.1548.661.0042.641.00100.000.0026.252.3126.1757.910.3154.3062.160.5359.4959.020.3055.94
VGG19_BNInputAware58.6870.8111.1363.8856.4919.5364.2455.9920.3763.6560.3417.6563.7763.0517.1758.9134.1724.6451.831.0235.33N/AN/AN/A43.9416.9621.4642.170.0632.0858.4949.7819.9962.5757.7219.2231.550.0019.8755.2465.3912.6761.4752.9916.7458.2951.2619.67
VGG19_BNBPP60.460.1353.8065.680.0657.3265.280.1557.0164.960.0755.9860.460.1353.8060.470.1153.7951.470.3648.11N/AN/AN/A31.203.0326.3543.580.4940.7458.440.1552.541.000.001.0125.980.0923.7256.810.0950.9161.450.0353.7159.600.0952.89
VGG19_BNTrojanNN65.9793.693.1963.8692.073.7065.4087.994.7764.7592.063.7362.4683.246.3660.4791.914.3752.3652.9313.73N/AN/AN/A9.720.565.7743.8797.661.5760.4748.1220.7265.8894.522.7731.0386.491.6263.1890.134.2858.8688.172.0063.9993.912.99
ViT_b_16BadNet84.660.0884.5384.000.0883.8673.060.2473.116.770.006.7583.920.0383.9084.610.0584.5384.550.0584.42N/AN/AN/A87.9015.2776.78N/AN/AN/A84.650.0884.5383.760.0483.661.000.001.01N/AN/AN/A7.344.217.06N/AN/AN/A
ViT_b_16Blended84.4763.6527.3384.2359.7529.1473.426.7432.787.540.006.3184.4663.6427.3383.8361.6429.0684.4357.0232.08N/AN/AN/A88.0176.9619.2447.240.2238.7184.4663.6427.3384.3663.4527.221.000.001.01N/AN/AN/A7.493.326.17N/AN/AN/A
ViT_b_16LC84.5147.4449.7684.1152.3545.2474.0782.2210.045.810.006.0483.9853.6044.0984.5147.4449.7684.664.2579.88N/AN/AN/A87.9141.5954.82N/AN/AN/A84.5147.4449.7683.9450.2247.321.000.001.0183.6850.6946.557.722.567.6883.0752.5244.89
ViT_b_16SIG84.553.3256.7984.243.6455.2873.751.4841.146.570.006.5184.553.3256.7984.322.9656.3184.433.8759.22N/AN/AN/A88.213.8059.11N/AN/AN/A84.553.3256.7984.383.3856.341.000.001.0184.043.3655.137.513.147.0783.563.5252.95
ViT_b_16LF84.630.0784.5484.010.0483.9272.110.2071.905.450.005.5184.630.0784.5484.590.0684.4984.470.0684.37N/AN/AN/A87.760.0987.70N/AN/AN/A84.630.0784.5481.160.0981.061.000.001.0184.200.0584.137.604.057.3883.620.1483.54
ViT_b_16SSBA84.280.8278.4083.960.7277.9274.150.2965.036.840.006.8384.280.8278.4084.230.7878.2384.500.4778.33N/AN/AN/A87.900.5482.7147.590.1442.5084.280.8278.4084.050.7777.851.000.001.0184.080.5478.107.574.757.1583.130.7076.75
ViT_b_16WaNet71.902.8667.1178.040.2775.5076.370.0773.9256.620.1553.7471.902.8667.1171.371.7367.1183.930.4981.15N/AN/AN/A88.180.2585.8011.352.9911.0771.902.8667.112.890.002.781.000.001.0071.402.9366.6366.900.7563.0617.6635.9814.30
ViT_b_16InputAware75.0733.0149.8180.2235.2353.3475.687.3558.5953.200.4141.1980.1322.9160.5576.2947.4441.2184.2850.5444.79N/AN/AN/A88.0953.1843.4044.230.2327.5676.2947.4441.2141.8845.8523.90N/AN/AN/A75.4448.8239.8466.683.0451.3374.5852.8936.36
ViT_b_16BPP71.5753.0932.9477.9263.9628.8975.7146.9038.9357.450.8939.1178.0164.2428.9471.5753.0932.9484.0018.3565.59N/AN/AN/A87.7829.3560.82N/AN/AN/A71.5753.0932.9468.5152.8630.65N/AN/AN/AN/AN/AN/A61.9623.7037.78N/AN/AN/A
ViT_b_16TrojanNN84.4188.1311.4983.8385.2914.0173.8968.1310.806.430.005.9983.8488.5211.1284.4988.0511.5784.3375.4923.23N/AN/AN/A87.8896.803.11N/AN/AN/A84.4088.1311.4984.4487.9111.701.000.001.0184.1087.9711.657.912.617.1483.4390.129.55
ConvNext_tinyBadNet73.270.1372.5269.220.1968.7065.720.2665.0565.850.5565.2368.990.1868.4973.270.1372.5271.300.1271.13N/AN/AN/A75.400.0974.9248.930.2848.44N/AN/AN/A55.340.3754.6915.650.0215.4872.720.1472.1370.290.1769.6172.980.1772.41
ConvNext_tinyBlended73.1846.6735.1168.9125.7541.9864.402.9040.5664.5631.9535.7131.461.3520.0569.4044.2733.1171.6818.5140.61N/AN/AN/A75.3258.3926.5749.560.1441.72N/AN/AN/A65.6339.8934.515.110.214.7572.6143.2336.2570.1941.1835.4172.9443.1736.79
ConvNext_tinyLC73.441.7169.6769.460.9166.1067.051.2563.7264.641.4361.0036.490.4033.9871.280.1969.9571.390.3168.66N/AN/AN/A75.490.8771.5949.673.5146.3873.441.7169.6850.044.2746.0315.552.8514.1672.341.4668.3169.830.5966.5173.131.3469.66
ConvNext_tinySIG73.2515.4135.2568.496.6633.0966.982.4433.1764.793.1732.4348.051.5417.2573.2815.3235.2671.513.7435.01N/AN/AN/A75.4813.7236.9748.6324.2322.5973.2715.4135.2460.967.5630.5322.831.185.8272.6814.0933.0870.4311.8429.0972.8910.1938.52
ConvNext_tinyLF73.390.1373.2369.340.1769.1667.530.2067.3264.280.1664.0869.230.1169.0872.760.1172.5971.120.1370.99N/AN/AN/A75.020.1074.8949.320.4649.0473.390.1373.2360.850.3260.571.760.001.7872.460.1472.2969.550.1169.4073.260.1673.11
ConvNext_tinySSBA73.480.4868.2869.310.3063.7566.530.2861.7864.330.2060.1269.060.3163.3769.810.4463.9271.450.2565.52N/AN/AN/A75.210.6269.5349.230.1044.7973.470.4868.2957.890.4252.196.390.985.6572.770.4267.5669.570.4164.4073.120.6267.55
ConvNext_tinyWaNet62.292.8757.4466.240.4863.0663.190.3059.6365.930.5361.8365.420.2662.1156.152.5352.1071.550.4066.89N/AN/AN/A75.050.5470.5251.080.3349.1562.292.8757.4549.220.7445.8322.120.2222.7360.863.7155.9563.830.6559.9462.142.8757.60
ConvNext_tinyInputAware63.7731.8839.3168.3519.5445.7266.544.5245.4768.1924.0043.6167.700.0345.3761.228.2844.4971.6018.6846.55N/AN/AN/A75.5223.7348.4649.270.2841.7865.9426.1942.7453.6016.1734.7422.350.0619.3465.0922.0143.4766.910.1250.7565.0627.1141.87
ConvNext_tinyBPP62.395.1856.6366.731.1861.3463.980.3658.6766.161.2160.9466.320.0960.2362.395.1856.6371.250.2765.83N/AN/AN/A75.030.6569.7552.300.1449.2762.395.1856.6349.771.2845.2922.690.2721.4461.574.3755.9064.370.8559.9661.825.4655.84
ConvNext_tinyTrojanNN73.5394.864.5368.9376.7217.6166.8841.3028.7265.2341.4433.7255.110.1536.6367.5042.5532.7571.4286.449.09N/AN/AN/A75.3794.734.1651.350.1036.4673.5294.864.5351.2776.4314.8021.590.0716.8772.7294.914.5170.2576.7217.2172.9094.245.01

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet69.7722.2158.2069.2310.6963.8368.002.5365.2969.2811.4163.2669.7722.2158.2165.150.2964.0961.191.4260.23N/AN/AN/A52.210.6250.2262.210.2361.8062.9017.3155.5556.8921.0347.3848.820.0848.2065.434.7063.6964.700.9763.2969.6421.8558.32
PreActResNet-18Blended70.9585.729.0770.1281.5511.0469.1471.9814.3670.5282.2510.8470.9585.729.0764.0270.1514.2460.6674.0813.19N/AN/AN/A60.840.9430.0161.561.1943.2964.3078.8011.0756.6848.0916.2949.5266.6012.9968.1178.7710.8565.0777.0310.5470.5387.877.93
PreActResNet-18LC70.4868.9423.4970.2171.2421.8163.5019.2442.7070.1466.1224.7570.1671.5121.3566.4061.1126.1361.366.6252.85N/AN/AN/A61.9924.2141.2360.8180.7216.3464.4613.4550.6756.8882.969.8132.4689.684.3962.070.0358.5863.929.8748.7770.3058.9629.33
PreActResNet-18SIG70.7646.0317.1870.1034.4119.0269.1644.4115.5069.9439.0417.6870.7646.0217.1965.3019.0622.1160.1325.5712.94N/AN/AN/A63.075.6924.3760.8083.5312.9668.7949.8215.3857.2216.709.2749.0668.935.6366.7830.4117.4162.8837.0515.2970.4848.2416.76
PreActResNet-18LF70.7817.0856.5870.228.3960.6868.575.3559.0470.308.3760.6665.752.9457.9565.582.9057.6560.0318.6044.22N/AN/AN/A63.807.7754.1260.710.4058.9870.6611.9258.7457.2813.1245.1331.610.3230.4468.2715.4155.0664.835.4154.5970.7115.1457.17
PreActResNet-18SSBA70.4115.5354.5869.909.7656.8968.804.4057.0170.1212.0356.1465.780.1059.4666.122.2156.1660.905.5350.93N/AN/AN/A60.641.0052.3060.900.1555.6668.5720.3549.5855.9311.2242.4848.791.7738.5967.3919.4049.3364.190.7856.1970.3114.6554.69
PreActResNet-18WaNet64.5910.3959.3769.196.2664.2065.593.3861.4069.177.7163.3467.704.3563.5859.960.3359.1160.592.4255.96N/AN/AN/A52.603.6043.1461.110.2458.4161.3636.6143.9954.0738.1738.8348.380.1348.2959.397.6856.3466.318.2660.7362.0811.0957.55
PreActResNet-18InputAware64.7473.5920.6269.8564.7228.1266.4418.1844.3969.5566.6326.4564.7373.5920.6259.6521.2443.3860.9062.2320.67N/AN/AN/A61.8052.8125.6062.410.2659.6761.322.5750.1555.5768.0419.2550.2174.8114.1860.632.1548.4364.9933.1238.7861.323.6348.78
PreActResNet-18BPP63.8197.901.6069.7296.223.0968.9094.624.3169.6195.174.0669.4094.674.4363.930.0111.6359.2010.7046.24N/AN/AN/A60.0416.7943.0861.280.3053.6961.590.3055.8754.4194.853.0646.5866.5716.2761.860.9135.1364.710.1456.0561.970.0112.05
PreActResNet-18TrojanNN70.6498.681.1370.3798.221.4263.0677.3911.7270.3898.611.1970.2798.101.5666.3295.662.6060.9697.271.78N/AN/AN/A30.3799.970.0360.590.5155.5669.2195.813.1857.1694.062.6748.8198.551.0968.5891.815.8966.340.0642.9070.0098.441.33
VGG19_BNBadNet65.5110.0858.6863.581.4160.8965.061.7361.6563.862.7660.5361.683.8757.9960.683.2356.4751.480.9949.83N/AN/AN/AN/AN/AN/A44.072.9943.38N/AN/AN/A65.3610.3158.6222.500.0022.4661.207.6156.8760.730.8558.0263.9310.1956.85
VGG19_BNBlended65.8780.069.8163.7472.4513.0065.3275.2211.2764.2075.6910.7362.0066.0314.6165.1477.9610.7153.2854.1315.77N/AN/AN/AN/AN/AN/A44.223.9034.34N/AN/AN/A65.7778.5710.4427.9384.912.0362.3882.966.7461.0167.4312.5865.3580.759.30
VGG19_BNLC65.7479.788.7563.4988.524.8565.2776.469.5962.9877.839.6061.620.2856.1064.0069.3110.1152.8573.955.80N/AN/AN/A40.090.0029.9443.6892.253.9154.570.9646.7065.7276.969.5819.030.0011.1861.6613.4734.4559.9182.036.2263.0283.256.44
VGG19_BNSIG65.4929.9317.4763.3627.0217.2165.1433.3215.7763.0933.0716.5561.0028.8312.5364.1919.3717.6151.7837.0010.35N/AN/AN/A43.090.0516.2541.4078.245.9959.6547.426.4365.5530.2217.5136.1042.484.5763.8526.2418.4160.5323.9917.1261.7121.0315.35
VGG19_BNLF65.110.4464.9862.580.2062.4764.170.1764.0163.590.1563.4362.130.1361.9764.510.0664.4352.500.4752.22N/AN/AN/A36.683.2436.1439.390.2839.1057.030.6356.7965.110.5164.9725.080.2224.8263.160.2763.0758.870.1258.7162.580.3562.64
VGG19_BNSSBA64.964.0155.6362.851.1055.2264.160.8156.4462.912.0554.1564.964.0155.6458.790.7552.0751.952.1945.81N/AN/AN/A40.594.5231.6042.200.9439.1860.592.8154.1164.754.4055.4126.211.2822.5362.445.4351.9858.870.1849.5361.903.2053.57
VGG19_BNWaNet62.220.4157.8065.990.3061.1966.060.3861.3064.570.3661.1362.220.4157.7957.310.0955.3252.301.6448.16N/AN/AN/A43.531.9039.5138.831.7236.7860.580.4655.4663.180.2958.6424.540.0024.5560.940.1657.0262.840.4158.0461.980.3957.36
VGG19_BNInputAware58.3095.772.7464.6475.6715.9164.4769.6319.1964.1480.0013.2264.2876.3815.5456.056.0243.3252.6135.5925.55N/AN/AN/A45.3642.5616.7140.9617.7731.3159.569.6143.711.00100.000.0027.230.0014.6558.8010.4139.4661.4149.8127.1659.760.9540.87
VGG19_BNBPP60.160.2554.4564.800.0559.5665.300.0760.2264.300.0559.2160.160.2554.4560.010.0953.2049.841.3743.19N/AN/AN/A45.426.1231.0940.096.3436.3059.280.1254.741.100.031.0929.1924.4614.4259.510.1054.1161.780.1756.4759.330.2553.78
VGG19_BNTrojanNN65.9698.940.6063.9398.590.7064.8996.641.6763.5398.320.9361.240.0548.2764.6197.900.9651.9196.031.40N/AN/AN/A12.5799.940.0542.6598.960.7360.0147.4519.3066.1699.140.4823.2399.480.1062.802.8534.8761.3795.190.8761.4398.510.79
ViT_b_16BadNet84.1427.5762.7884.0011.8874.8373.760.1471.755.890.005.8483.010.0982.8284.2826.2363.9383.687.7178.13N/AN/AN/A30.150.0029.0944.880.6442.0884.1427.5662.7883.2529.9560.161.000.001.01N/AN/AN/A7.082.886.93N/AN/AN/A
ViT_b_16Blended84.4789.618.7183.9681.5114.4673.526.2328.285.650.005.1683.8787.0210.5281.4987.969.6884.3987.1110.66N/AN/AN/A88.2395.813.73N/AN/AN/A84.4689.618.7184.3790.837.691.000.001.01N/AN/AN/A7.562.916.27N/AN/AN/A
ViT_b_16LC84.5844.9050.0783.9741.0252.8474.0172.9412.105.740.005.7983.8545.7849.2184.5743.9850.8083.8942.0353.08N/AN/AN/A87.9979.0820.60N/AN/AN/A84.5844.9050.0783.5243.2850.681.000.001.0184.0942.7851.767.392.537.4183.5149.4945.77
ViT_b_16SIG84.3418.5247.3283.5722.5544.2572.815.1135.665.590.005.5184.3418.5247.3284.0718.1247.4084.0414.4450.76N/AN/AN/A87.8124.7048.88N/AN/AN/A84.3418.5247.3283.6220.0746.431.000.001.0183.6217.9546.247.372.587.0683.5522.0842.70
ViT_b_16LF84.320.1484.2283.850.0883.7573.790.0973.645.490.005.5583.470.0783.3584.200.0784.1184.370.1784.30N/AN/AN/A88.130.0788.05N/AN/AN/A84.320.1484.2283.920.2383.811.000.001.0183.930.1883.816.952.916.7983.200.0983.12
ViT_b_16SSBA84.4824.0761.9184.0412.7169.2973.010.4262.395.960.005.8683.9313.7168.3284.4824.0761.9184.677.6474.52N/AN/AN/A88.0420.5868.0246.790.2641.5984.4824.0761.9183.8425.2460.411.000.001.0184.2324.9561.067.494.077.1683.2524.0460.42
ViT_b_16WaNet72.524.6467.0878.090.4275.2075.350.0972.1753.910.0852.1772.524.6467.0872.633.0767.3383.982.8280.28N/AN/AN/A87.891.6384.2246.940.2746.0072.524.6467.082.4110.492.421.000.001.0172.104.4766.9367.150.2963.3271.194.4865.65
ViT_b_16InputAware74.5254.9239.5579.4451.4544.4076.6813.6258.8356.914.6846.1779.3255.1041.4074.3373.7324.6483.9348.7946.92N/AN/AN/A87.9152.6943.79N/AN/AN/A74.3373.7424.6375.8675.6122.87N/AN/AN/A73.8477.9720.7367.988.5160.7473.0781.4617.49
ViT_b_16BPP73.0374.4020.0977.9182.5614.8275.0578.1717.2857.010.7846.4977.8083.6513.8873.0374.4020.0983.8084.2313.79N/AN/AN/A87.3289.319.65N/AN/AN/A73.0374.4020.092.590.002.60N/AN/AN/AN/AN/AN/A65.6548.3434.71N/AN/AN/A
ViT_b_16TrojanNN84.9296.613.3384.3994.954.9173.7790.103.966.570.006.5183.9996.103.8184.9596.523.4284.3095.834.09N/AN/AN/A88.1099.900.0947.6299.620.2684.9296.613.3384.6196.933.031.000.001.0184.4696.373.577.852.687.0283.3897.012.93
ConvNext_tinyBadNet73.288.6967.6969.010.4467.8764.390.4363.3064.900.3763.4755.272.0853.9368.080.4667.2371.640.4970.97N/AN/AN/AN/AN/AN/A51.530.3150.65N/AN/AN/A52.554.4950.384.370.894.1872.345.9368.3669.820.6968.2472.678.1767.70
ConvNext_tinyBlended73.0786.0010.8469.0567.4822.1956.0026.2327.5863.6365.3621.3643.091.6028.0571.5785.1911.1971.2880.7712.93N/AN/AN/AN/AN/AN/A48.100.6040.91N/AN/AN/A51.4012.9731.955.728.954.7072.4185.7011.0668.6177.4914.9372.8883.8012.49
ConvNext_tinyLC73.3910.4362.9669.164.8363.0653.865.5947.1265.137.7058.7642.310.5941.2467.640.1466.2571.812.2866.03N/AN/AN/A75.319.1063.5649.2724.4739.3773.3910.4362.962.5598.770.6317.024.8214.5972.517.8763.5869.773.7564.0872.8411.9761.64
ConvNext_tinySIG73.1843.2828.4669.1634.6726.4566.5618.2623.7364.6516.6124.2840.881.3911.8171.2641.1228.4771.7233.9326.24N/AN/AN/A75.5839.5527.4649.1694.294.7073.1743.2928.4561.7344.8020.2423.2653.703.9572.4045.2926.2070.0926.8127.2172.8229.9033.48
ConvNext_tinyLF72.830.2072.7068.660.1168.4768.290.1868.1163.180.1763.0368.470.1568.3068.380.1268.2171.580.2071.39N/AN/AN/A74.920.1074.7949.620.2649.2972.840.2072.7151.490.5451.141.000.001.0171.930.1671.7870.390.1470.2472.750.1472.64
ConvNext_tinySSBA73.4111.9462.4769.052.6062.0367.420.6261.8163.578.6154.8047.162.0541.9970.187.1661.8171.027.0462.06N/AN/AN/A75.1122.3957.3649.550.1745.9173.4211.9262.4755.5913.6546.7610.230.608.6872.7911.4961.7670.098.7060.6573.2311.2162.27
ConvNext_tinyWaNet64.7017.9655.3066.952.4062.5464.680.6360.1566.944.9860.9665.561.2461.2862.7315.4455.3970.842.4065.54N/AN/AN/A75.233.6168.8651.400.2849.6064.7017.9855.3058.4718.7350.2922.080.2322.6463.6720.8053.2265.132.0060.3864.1718.2654.84
ConvNext_tinyInputAware64.1357.3229.1168.3070.7222.0566.1450.1428.1367.9764.4826.1266.680.0433.0958.8114.5140.2471.7252.6830.14N/AN/AN/A75.4161.5328.4150.060.3642.6764.6855.3029.2750.0770.6815.3122.160.1919.0164.1858.7226.9166.9814.0947.0463.4544.8734.42
ConvNext_tinyBPP62.5731.4746.3466.6716.0456.5663.634.1957.7565.9126.2351.6264.702.2158.7256.501.3750.0970.088.5857.54N/AN/AN/A74.4716.0257.8751.470.2748.9262.5731.4746.3449.5642.2733.1220.970.0819.7762.2931.0846.2264.770.7758.9562.1432.0645.68
ConvNext_tinyTrojanNN73.4699.540.4268.9291.347.2365.5262.6120.9164.2285.2511.2218.751.2515.9067.9862.9222.3971.5998.781.06N/AN/AN/A75.5699.550.3548.790.3338.1273.4699.540.4249.4594.724.0521.205.4113.3372.2499.260.6970.5198.001.7872.9899.270.66

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet70.2541.5146.4969.7414.1461.9168.975.5964.1569.8111.0163.1668.600.0868.4764.060.5262.8160.2616.1253.35N/AN/AN/A60.320.0060.1560.880.2860.5165.2027.2351.1256.4524.7844.9149.970.6249.6266.4816.1158.1964.901.1362.7370.1141.9346.00
PreActResNet-18Blended70.4890.676.4269.8387.918.0868.4077.0712.2470.1988.247.9266.6080.4711.1165.2680.0310.8460.8081.219.83N/AN/AN/A47.090.0016.7761.2688.709.0466.5087.447.9156.9178.0910.0149.1077.329.2866.7586.967.7464.6169.3714.2570.2189.946.96
PreActResNet-18LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18LF70.3645.5538.5269.9329.6247.9768.9018.2450.1369.7329.3548.0670.3545.5238.5565.308.6252.8060.2930.4540.58N/AN/AN/A58.3545.2331.3861.550.2559.4466.9833.2242.7156.5832.1535.7233.402.5831.2267.7540.8839.7664.6714.8648.5969.8241.7640.40
PreActResNet-18SSBA70.1844.0538.3069.8236.0342.3968.2916.5649.9969.9037.4041.8366.010.0659.2465.043.3955.1060.3718.4145.44N/AN/AN/A55.060.0146.9461.580.3257.0163.0315.9647.7256.9739.7030.1048.5628.6432.5366.5734.1040.5463.140.8649.5869.7542.9638.65
PreActResNet-18WaNet63.3749.1635.0869.4255.4833.1865.2545.8034.9269.3448.4737.4163.3649.1535.0957.680.3756.2760.733.9255.64N/AN/AN/A60.037.9651.0460.250.3258.4960.4721.7247.3856.3182.5611.0849.620.0849.6062.6126.8747.4564.7836.7643.6562.690.4261.24
PreActResNet-18InputAware64.8273.7220.3669.9775.3820.5466.7615.6645.4269.6079.0417.6069.290.2362.6458.692.6244.8560.1963.5420.14N/AN/AN/A59.4952.5124.1860.270.3357.7659.9714.6542.8855.0185.009.5749.7381.8112.1561.094.0047.9965.2418.6047.4154.6742.4330.32
PreActResNet-18BPP63.8966.9321.2969.5769.7421.6368.4287.829.0469.1919.2451.0169.4171.6820.2763.730.0435.6960.184.1052.01N/AN/AN/A55.247.3347.1160.920.1153.3462.680.1754.3253.8284.779.3849.3073.1115.5262.440.0748.9765.400.9555.8062.860.2749.88
PreActResNet-18TrojanNN70.7899.810.1870.1099.420.5762.9477.3810.5870.8999.570.4270.2699.620.3765.9499.450.4560.8898.481.13N/AN/AN/A6.64100.000.0061.7899.600.3870.0399.180.7856.4197.471.5648.4098.881.0367.4130.3932.8965.7427.6328.9670.6499.690.29
VGG19_BNBadNet65.2870.5721.3562.0948.3631.6864.9354.8629.2360.5755.9526.9361.9643.4134.4659.5435.7434.6851.535.2347.86N/AN/AN/AN/AN/AN/A41.940.6841.33N/AN/AN/A1.180.001.2029.674.5329.4861.6571.2020.0160.4054.0426.3161.1667.4922.06
VGG19_BNBlended65.2287.846.2362.4677.769.4764.1680.629.0561.3482.287.9165.2287.846.2360.6576.857.4951.1671.239.89N/AN/AN/AN/AN/AN/A41.8388.776.18N/AN/AN/A64.8886.706.7034.1694.861.3761.7674.7010.2460.2278.257.7062.8088.335.24
VGG19_BNLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNSIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNLF64.610.7464.4363.240.1763.0764.550.1064.4061.130.2060.9664.600.7464.4263.820.0863.7151.690.9051.40N/AN/AN/A38.032.5937.9637.576.8037.0256.390.9856.101.250.001.2634.222.3033.64N/AN/AN/A60.060.1659.8361.600.9461.48
VGG19_BNSSBA65.4715.0150.3362.603.0152.5964.914.2554.5261.514.0751.4360.330.1053.1160.772.0251.9851.754.2143.44N/AN/AN/A40.6410.3828.0243.970.3740.5359.979.8848.6265.2515.4250.0826.850.0023.6861.5316.8345.5359.221.2048.0162.8415.1647.44
VGG19_BNWaNet59.700.4553.6164.920.3361.5365.440.2961.8064.430.3061.1759.700.4553.6256.060.0351.7651.481.6947.08N/AN/AN/A39.321.9534.8542.261.1640.0657.530.6950.091.00100.000.0027.491.3228.1057.330.3651.4161.930.2358.2058.780.4252.57
VGG19_BNInputAware59.1152.6027.2064.2876.9015.8164.1853.2627.0664.2067.7321.0163.303.4949.1658.510.2142.9752.3954.4317.40N/AN/AN/A40.8129.3319.3544.090.8336.3455.910.5843.8363.0381.8312.1334.8137.309.0554.570.3641.0260.2814.6738.9657.260.2444.93
VGG19_BNBPP58.890.1254.0665.140.1160.6464.880.1860.0064.040.1359.6458.890.1254.0658.890.1254.0650.982.0446.87N/AN/AN/A39.885.6334.7641.650.5038.7058.260.0853.761.650.001.6525.116.1722.5556.840.0351.4762.040.1757.6757.570.0552.18
VGG19_BNTrojanNN65.1899.030.4762.7297.381.3164.7297.990.9860.9398.181.0062.4994.352.6464.9498.750.6252.2498.510.51N/AN/AN/A13.6099.730.0742.2999.900.0962.1274.6011.4364.5398.680.8534.7499.760.1162.9726.7127.6960.180.003.8063.6098.730.66
ViT_b_16BadNet84.3949.5144.1483.6924.0565.1274.951.7770.446.090.006.1383.3322.3465.9784.3348.4045.2083.9927.7864.12N/AN/AN/A1.000.001.01N/AN/AN/A84.3949.5144.1484.0649.9043.841.000.001.01N/AN/AN/A7.274.196.93N/AN/AN/A
ViT_b_16Blended84.4994.005.1183.8890.647.7073.711.8525.568.730.007.3383.5791.297.1881.1992.456.1684.4291.966.80N/AN/AN/A88.0297.542.18N/AN/AN/A84.4994.005.1184.3593.125.781.000.001.01N/AN/AN/A7.643.186.27N/AN/AN/A
ViT_b_16LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16LF84.250.1684.1483.490.0983.3773.430.1473.257.050.007.1283.380.0683.2883.820.0983.7583.920.2483.82N/AN/AN/A1.000.001.01N/AN/AN/A84.250.1684.141.4674.280.821.000.001.0183.920.2883.807.364.467.0783.140.1083.06
ViT_b_16SSBA84.4961.4332.5683.9642.6746.8173.010.1462.474.940.005.0483.8943.9645.6384.4961.4332.5683.8737.7552.89N/AN/AN/A83.590.0079.29N/AN/AN/A84.4961.4332.5684.1060.7932.951.000.001.0183.9660.7832.747.623.387.2983.3160.8932.31
ViT_b_16WaNet72.9350.9639.3878.334.2773.1177.180.1073.7255.670.1654.0272.9350.9639.3872.2519.0558.7383.865.0678.97N/AN/AN/A87.503.8682.48N/AN/AN/A72.9350.9639.3820.9214.8918.691.000.001.0171.6253.6637.4165.601.0362.072.1998.820.31
ViT_b_16InputAware74.9253.4941.7279.4337.5855.1176.110.7862.4655.081.4546.4779.3538.0454.7275.3965.9631.8683.9556.6239.43N/AN/AN/A87.6957.6939.4645.4998.031.2675.3965.9631.8675.5867.2630.34N/AN/AN/A75.3267.4430.4061.8532.3344.1574.3275.7722.95
ViT_b_16BPP74.5788.899.2677.9487.1510.8574.6171.5521.0257.560.3345.7877.3982.2615.0073.1588.759.4684.1789.799.15N/AN/AN/A88.0693.416.2045.770.2740.2474.5788.899.262.160.002.14N/AN/AN/AN/AN/AN/A64.8824.9847.67N/AN/AN/A
ViT_b_16TrojanNN84.6398.721.2483.9097.032.8872.8289.714.855.760.005.4983.7598.161.7884.5798.681.2884.4598.541.43N/AN/AN/A88.2299.880.12N/AN/AN/A84.6498.721.2484.3998.751.20N/AN/AN/A84.3899.100.887.652.376.9083.5699.270.72
ConvNext_tinyBadNet73.2341.7646.2268.342.2866.1767.530.7265.2164.391.0762.9124.140.6323.6267.770.3566.8670.957.9865.67N/AN/AN/A74.193.6771.2250.910.4450.6273.2241.7646.2253.5818.0746.086.522.236.4471.9940.0946.5170.676.1265.6272.9237.5548.77
ConvNext_tinyBlended73.6790.967.3169.2276.0117.5465.0550.6826.6062.9284.7810.8235.651.8922.4366.6386.679.5171.5687.258.96N/AN/AN/A74.8490.087.5550.800.1240.6273.6790.967.3155.3630.5830.7413.280.109.5472.6191.137.0069.6883.9611.5473.0690.267.77
ConvNext_tinyLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinySIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinyLF73.230.2973.0868.820.1568.6861.120.2760.8864.450.1364.3068.940.1368.7866.390.1666.2871.470.4171.33N/AN/AN/A74.920.3274.8249.540.4349.2973.230.2973.0854.291.0453.9823.190.1423.4172.260.3072.0969.770.1869.6172.630.1972.52
ConvNext_tinySSBA73.3636.6047.4568.8411.0158.6466.540.9760.1563.208.4453.6248.096.8241.8171.2127.2351.4071.3823.4453.65N/AN/AN/A74.587.4064.9449.400.1344.7173.3736.5847.4747.6539.9330.4121.680.2218.5172.8934.5748.1470.3023.6853.1072.8833.8648.93
ConvNext_tinyWaNet62.7739.7640.6666.387.0859.5363.431.8257.1866.4011.3657.5766.206.6259.7759.4027.3245.4471.374.8164.81N/AN/AN/A74.658.3566.5249.140.3847.6462.7639.7740.6650.7228.1138.1421.920.2921.9061.8041.4239.1464.676.9158.0362.5236.4141.98
ConvNext_tinyInputAware64.6077.7917.2468.2363.1027.8666.0159.3528.0168.0162.4328.6268.650.1256.8358.974.8639.9871.3054.5130.74N/AN/AN/A75.2359.5630.3349.050.8441.7765.5067.5524.6760.6674.5319.4820.740.1318.2964.8767.4624.2867.2616.6248.9864.8969.2423.28
ConvNext_tinyBPP62.2827.5646.9465.6444.5739.7862.6237.1641.1265.7846.3537.8863.521.3758.1456.710.4251.3670.935.9662.68N/AN/AN/A75.2116.4960.6352.370.5149.5462.2827.5646.9457.2787.839.4723.500.3322.0462.0326.0346.7463.820.3259.2661.7729.0245.32
ConvNext_tinyTrojanNN73.6899.780.2268.9796.562.9266.6781.2912.4564.1487.629.1258.900.3214.7568.7880.8713.2271.5999.750.21N/AN/AN/A75.6599.960.0448.9599.540.4173.6899.780.2250.4099.570.382.111.992.0372.6299.720.2769.5596.852.6873.3999.730.25

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet68.8369.2425.6668.050.5865.7667.186.3661.7967.870.2765.9264.690.1164.6562.740.0160.6858.6965.9925.21N/AN/AN/A60.290.0060.5361.740.1761.4564.0241.3343.3452.4486.439.2244.1118.9341.9164.921.0364.1561.980.3160.9667.6167.0126.88
PreActResNet-18Blended70.2398.721.0068.7697.072.1968.0383.768.1368.9197.631.7765.580.0234.4965.8789.816.2560.4895.942.57N/AN/AN/A37.560.0020.8659.29100.000.0064.3196.462.4655.6397.191.7449.1697.031.8067.0091.155.0064.4885.147.1269.5798.391.20
PreActResNet-18LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18LF69.0588.648.4968.4267.7822.5567.6264.6620.5768.4365.1624.0766.470.0655.8162.1510.4647.1459.0381.6511.81N/AN/AN/A62.0472.0818.3059.2588.499.0064.1483.8411.6153.0682.9310.1143.7363.0021.7567.8561.7725.7163.850.1853.2668.9187.469.59
PreActResNet-18SSBA69.4291.416.4768.4284.3611.3467.5859.6924.0768.2787.089.5564.910.1058.1764.6338.5937.4759.6983.0210.52N/AN/AN/A51.920.0049.2261.820.2258.0164.0068.3320.8753.3894.053.2745.5789.885.4067.3429.4243.8564.030.6451.6568.8490.497.15
PreActResNet-18WaNet64.1788.888.3869.8147.6939.1365.9080.9412.6469.3136.1746.1868.860.1065.3859.210.0858.6558.9256.6627.33N/AN/AN/A61.130.0156.5462.070.5759.8158.3336.4144.0053.0996.202.4947.5312.5643.9360.920.1359.8366.6050.7734.6761.004.3057.83
PreActResNet-18InputAware63.6993.695.2969.9789.448.5866.1475.7616.8169.8085.0312.0470.120.2765.0960.490.0852.7459.8087.108.54N/AN/AN/A59.830.0047.0761.2440.8637.2664.9042.2439.2551.7898.291.1649.9578.8213.4864.590.1656.8466.3346.8738.0763.450.1756.71
PreActResNet-18BPP63.9699.660.2669.550.0660.6468.3621.1146.2569.240.0960.9668.790.0860.6760.790.0550.3360.0281.5313.21N/AN/AN/A56.350.0047.3561.810.2154.3162.070.4655.3453.6699.220.5847.3994.403.9161.090.0852.8665.946.9917.8461.1994.084.10
PreActResNet-18TrojanNN70.3199.990.0169.4099.940.0562.3744.8821.4269.2299.950.0569.1199.990.0163.7688.117.8760.0199.860.12N/AN/AN/A35.850.0025.4859.3899.990.0067.5699.410.4756.7699.940.0149.0799.290.5365.970.1047.6863.730.8629.9370.2199.990.01
VGG19_BNBadNet62.8884.9911.5960.894.1342.6662.797.4138.2459.850.6143.6060.703.3039.5757.520.0427.3249.7776.4614.64N/AN/AN/AN/AN/AN/A40.0788.257.30N/AN/AN/A62.9384.0412.1932.950.016.1857.5151.0134.5555.416.9130.1262.0484.3411.84
VGG19_BNBlended65.0597.991.2762.1370.218.8364.0081.495.5660.7091.384.2861.540.0911.1159.3564.3913.3651.3794.412.69N/AN/AN/AN/AN/AN/A37.1199.310.48N/AN/AN/A64.9897.321.6535.7099.680.1163.4831.8019.5159.4271.687.9363.6491.854.32
VGG19_BNLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNSIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNLF62.515.4862.2960.860.1960.7362.920.1862.7159.850.2359.6562.505.4862.2860.210.0160.6050.206.6349.95N/AN/AN/A35.4630.5535.0635.6026.5834.9758.047.0957.7662.355.4662.1432.801.9233.1360.716.4160.5355.980.1455.8360.025.2759.86
VGG19_BNSSBA64.7486.108.8062.1269.4917.3163.7170.6517.4659.9873.7513.9660.480.1735.9559.8357.7321.2750.0069.8914.03N/AN/AN/A45.940.0046.0835.8592.494.7556.7778.1212.0564.3984.959.3728.9290.022.3162.3223.2441.0756.970.4835.4363.6381.4111.37
VGG19_BNWaNet52.3997.331.8264.465.7653.2065.008.2553.0563.513.9453.3964.415.2555.0257.300.0053.4049.6721.4037.94N/AN/AN/A30.8067.8613.8840.6061.7024.5656.4712.8745.781.00100.000.0031.840.0032.3056.400.0147.4261.552.7349.2855.8390.646.19
VGG19_BNInputAware60.3972.9518.4564.316.6948.6564.1414.0842.8663.904.9949.6863.140.2655.4558.540.0149.8250.4579.459.74N/AN/AN/A41.1513.8623.3640.8793.814.7151.010.0944.011.060.001.0729.9172.675.7958.850.0152.4360.6340.3236.5459.310.0152.28
VGG19_BNBPP61.4096.642.4665.090.0754.6064.510.1554.8263.990.0658.7164.420.0753.7456.250.0047.9449.2914.8041.19N/AN/AN/A27.6591.593.0936.4987.858.3258.750.0652.421.00100.000.0020.0997.740.6260.610.0454.7662.1018.5213.5459.6096.482.53
VGG19_BNTrojanNN64.6999.960.0462.4099.950.0363.6199.620.2860.7599.990.0162.1998.960.7260.5392.883.7052.6299.650.20N/AN/AN/A1.000.001.0141.0799.980.0258.6494.323.2364.4799.900.0943.2910.1910.3352.240.1229.1358.170.185.4564.2899.930.07
ViT_b_16BadNet83.0982.8915.0082.9251.8542.2974.1127.8253.593.570.003.7382.3260.1934.8583.0982.8915.0083.3970.4226.55N/AN/AN/A77.190.0076.8145.3985.318.5483.0982.8915.0082.3479.8317.671.000.001.01N/AN/AN/A5.918.845.32N/AN/AN/A
ViT_b_16Blended84.0499.460.4783.2698.491.3473.0942.2510.986.200.005.5983.0898.511.3281.3998.621.2284.0298.950.97N/AN/AN/A87.6399.760.22N/AN/AN/A84.0499.460.47N/AN/AN/AN/AN/AN/AN/AN/AN/A7.382.765.83N/AN/AN/A
ViT_b_16LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16LF83.111.0183.0082.590.1582.4974.400.0474.246.330.006.3983.111.0183.0083.060.7382.9783.080.9782.98N/AN/AN/A79.091.2178.91N/AN/AN/A83.111.0183.0082.831.1382.701.000.001.0182.321.8882.176.686.236.3482.160.9782.04
ViT_b_16SSBA84.1795.094.2583.3788.659.5672.250.8550.716.510.006.4383.3188.549.6384.1795.094.2583.9391.267.47N/AN/AN/A1.650.001.12N/AN/AN/A84.1795.094.2583.8395.773.611.000.001.0183.6395.693.747.524.207.2383.1095.413.86
ViT_b_16WaNet73.5384.8612.4178.4446.3442.9375.473.5968.7762.442.0957.9278.2848.2641.5069.5969.5326.5882.8654.8339.61N/AN/AN/A87.4569.3527.46N/AN/AN/A73.5384.8612.4139.5248.8013.481.000.001.0173.2184.0413.1267.2921.8455.7772.8179.6316.63
ViT_b_16InputAware76.4980.7717.5379.7271.3924.6976.7511.1866.3156.490.2749.4879.6471.5724.3975.6981.7815.7683.8664.9831.99N/AN/AN/A87.2476.8821.39N/AN/AN/A75.7081.7715.7735.7050.768.60N/AN/AN/A74.5890.668.1566.0822.2554.7412.8833.408.52
ViT_b_16BPP73.3696.582.8277.7797.402.2875.7396.912.4959.8813.4241.2577.7197.931.8473.3696.582.8283.8898.871.01N/AN/AN/A87.8699.280.7041.3193.723.4673.3696.582.822.8255.171.55N/AN/AN/AN/AN/AN/A68.4085.5511.28N/AN/AN/A
ViT_b_16TrojanNN84.4299.850.1483.5499.060.9072.4197.051.235.500.005.1583.7399.730.2584.4199.840.1584.1099.650.34N/AN/AN/A87.80100.000.00N/AN/AN/A84.4299.850.1483.6499.580.41N/AN/AN/A79.0399.970.037.813.166.4682.6799.910.08
ConvNext_tinyBadNet71.6684.1112.8167.7914.7659.2267.024.6561.9262.9836.0643.4323.390.5922.9864.8121.9052.5869.6683.0713.49N/AN/AN/A1.150.001.1649.4677.7016.0071.6784.1112.8167.057.1362.5418.591.4818.4670.9083.1013.6769.7046.3640.2671.2183.0113.71
ConvNext_tinyBlended73.0998.681.0767.9481.4613.0365.6171.3917.4362.5292.305.8748.183.4231.4369.6598.321.3871.0797.991.43N/AN/AN/A75.1699.390.4850.5999.200.6173.0898.681.0770.2898.651.108.499.256.2972.0398.091.6070.3493.864.6372.2098.391.28
ConvNext_tinyLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinySIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinyLF71.131.9570.9665.990.1765.8467.560.1667.3964.270.1364.2042.400.6742.2566.010.2366.2169.202.4469.02N/AN/AN/A61.091.2360.7949.410.2949.1171.131.9570.9665.712.6465.471.360.001.3770.411.5970.2468.350.1268.2570.871.6670.72
ConvNext_tinySSBA72.8690.787.5867.4834.5544.1466.6212.8953.2364.1471.1021.1552.134.3245.3267.3981.9513.5770.8584.3812.14N/AN/AN/A1.00100.000.0047.4790.036.9972.8690.777.5968.0791.357.0321.1028.7516.2072.0789.048.8869.7481.0714.8272.6290.138.21
ConvNext_tinyWaNet63.0477.6616.5166.0523.1151.3463.322.6855.7366.3932.0546.7466.1721.9651.3456.8215.5547.4469.6353.5235.21N/AN/AN/A56.0778.9016.9251.010.7449.3763.0377.6716.5151.1688.157.8914.604.6314.5062.7774.1618.7864.4728.1847.0761.0274.4818.23
ConvNext_tinyInputAware63.8781.7314.8268.3683.2014.2065.7351.6932.9368.3084.1513.5464.790.2049.6658.781.8646.8870.4669.9022.92N/AN/AN/A74.3877.4018.5347.2096.582.8564.4084.3113.0152.1997.801.4621.5051.2511.7362.4474.1620.1167.1543.3841.2163.5583.5513.59
ConvNext_tinyBPP64.0998.901.0066.1194.754.5363.1191.097.0665.7794.474.8164.3757.7730.2958.9310.6351.2971.1687.3510.70N/AN/AN/A75.0594.055.3351.710.1449.0664.0998.901.0049.0299.390.4421.627.4319.4263.4498.511.3165.470.3533.9263.8498.930.97
ConvNext_tinyTrojanNN73.5499.970.0368.1497.871.8563.6989.686.0365.3093.654.8451.080.7928.3668.1585.1610.1871.2099.960.04N/AN/AN/A75.14100.000.0047.41100.000.0073.5499.970.0368.6399.940.0621.2396.611.9972.2999.920.0870.5999.060.7972.9999.920.08

Targeted Model Defense→ No Defense FT FP NAD NC ANP AC SS ABL DBD CLP D-BR D-ST DDE i-BAU MBNS
Attack↓ CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%) CA(%) ASR(%) RA(%)
PreActResNet-18BadNet67.2387.4310.4966.610.4363.0565.1733.6546.6866.260.1463.2765.600.0565.4162.980.0061.7857.2680.5115.03N/AN/AN/A61.210.0061.6554.0692.056.2965.4081.9515.4546.9890.995.6834.1072.3317.4860.390.6259.8860.370.0458.4666.7787.5410.37
PreActResNet-18Blended69.2899.590.3467.8598.231.3067.1289.834.9367.7798.621.0264.990.0033.2564.1568.0710.9959.2398.311.08N/AN/AN/A41.370.0024.6356.49100.000.0065.2299.810.1755.0599.640.2247.0299.400.3767.1088.456.0463.750.7923.4469.0099.420.47
PreActResNet-18LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
PreActResNet-18LF68.5195.063.7367.7261.6025.1666.0080.1111.2267.4455.2829.0765.950.2152.7562.975.6850.3558.5691.625.24N/AN/AN/A51.950.0052.9756.4693.974.8468.2993.764.6549.9188.845.6126.2338.2618.5165.0072.7517.9362.003.8144.3068.5492.425.65
PreActResNet-18SSBA69.0797.222.0967.8290.017.1466.8579.4112.3867.8285.3410.0563.080.1355.8362.6120.1043.2258.7294.203.58N/AN/AN/A54.170.0049.7657.0799.930.0665.3997.521.7453.6498.011.2246.7596.941.8566.828.8152.4263.0928.9139.0569.0096.832.36
PreActResNet-18WaNet64.0597.731.9268.700.8564.3464.7686.748.4668.272.2063.1667.340.0259.6159.100.0356.6457.4883.8310.25N/AN/AN/A52.170.0055.6556.6696.912.6125.9083.4911.0650.8897.641.5741.3519.3336.5863.070.1058.7665.3143.9637.1662.8096.302.97
PreActResNet-18InputAware65.1685.0012.1869.2762.3429.5366.4451.0034.5668.9665.2827.2865.1585.0012.1860.500.0154.2458.9390.676.24N/AN/AN/A49.8199.930.0658.2099.750.1663.3398.061.6053.6399.420.4647.5288.397.8663.940.0959.4765.2185.1412.1863.800.0456.67
PreActResNet-18BPP64.0198.880.9469.260.0962.1868.480.7558.7869.090.1362.3268.930.1362.0458.490.0248.5259.8497.442.04N/AN/AN/A41.640.0043.6958.0699.980.0259.820.3554.7352.3699.810.1447.1997.781.6059.960.1849.1766.713.8016.7761.623.5751.81
PreActResNet-18TrojanNN69.82100.000.0068.4699.990.0162.3422.9427.1267.99100.000.0067.7857.1124.3063.7079.3712.7459.4699.990.01N/AN/AN/A37.150.0027.6658.24100.000.0068.2299.810.1742.19100.000.0045.1799.960.0364.710.2247.1163.740.9230.3869.38100.000.00
VGG19_BNBadNet61.2788.329.1559.760.1546.1561.460.4448.9057.810.1346.0059.180.3247.8456.760.0052.8948.6580.1213.26N/AN/AN/AN/AN/AN/A39.0690.756.30N/AN/AN/A1.00100.000.0033.130.0733.3657.687.7456.2856.030.2237.1758.0288.109.12
VGG19_BNBlended64.2498.980.7260.6235.7616.5662.8091.005.2159.8087.406.0361.2492.384.1558.1912.7722.1850.8497.281.33N/AN/AN/A16.340.008.5735.2599.890.08N/AN/AN/A1.00100.000.0036.8299.870.0760.400.2525.2157.9442.2512.8861.0491.104.71
VGG19_BNLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNSIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
VGG19_BNLF58.0918.4357.8060.460.3560.2661.530.3561.3258.290.3658.1358.0918.4157.8061.350.8961.2945.7817.2145.46N/AN/AN/A1.00100.000.0029.6241.6428.8951.3721.6750.981.00100.000.0027.560.0027.8454.4921.9954.2055.660.3755.5556.1820.5255.89
VGG19_BNSSBA62.5895.662.8760.4772.5214.2561.9077.2012.6658.3270.6514.7257.810.2141.4857.7322.0339.2850.5488.365.41N/AN/AN/A2.4299.810.1335.0398.321.2053.8184.248.7362.6195.792.7219.4397.100.3861.7816.3039.9657.6782.377.8960.1094.613.16
VGG19_BNWaNet57.9196.222.8264.6210.4452.7564.3824.2845.6164.355.3154.9264.183.2457.1554.890.0152.7548.3757.6521.08N/AN/AN/A8.7490.173.1234.8485.489.2958.472.3453.9056.2993.155.0418.978.4617.57N/AN/AN/A61.0539.5936.3046.5890.177.24
VGG19_BNInputAware59.4585.529.9964.2831.3138.7164.7356.2719.3664.0225.0041.8963.976.7828.0555.080.0047.6749.1388.625.63N/AN/AN/A44.080.0035.0133.6197.491.8657.730.4050.391.00100.000.0022.858.204.1054.110.0344.5761.0791.185.8157.850.0851.28
VGG19_BNBPP60.1598.271.2465.270.1656.8965.116.5639.7664.480.1259.1464.880.1456.5959.930.0053.0050.6278.7412.13N/AN/AN/A33.0499.970.0037.4899.340.5355.600.0948.4461.7799.420.4523.6198.970.3258.710.0049.8863.202.2251.3659.1893.844.77
VGG19_BNTrojanNN64.8999.980.0260.5313.8529.9163.2498.051.1759.214.3728.0860.500.0322.7159.660.1737.1951.2699.960.00N/AN/AN/A1.000.001.0139.2298.660.0654.3240.1223.8664.7799.980.0210.0084.981.6554.890.0635.1457.280.4025.2563.7377.5211.33
ViT_b_16BadNet81.9384.9013.2681.6661.1934.0275.3148.8241.706.240.006.2982.0357.7236.7281.9384.9013.2682.1982.2016.03N/AN/AN/A1.000.001.01N/AN/AN/A81.9384.9013.2681.3782.6215.111.000.001.01N/AN/AN/A6.596.776.22N/AN/AN/A
ViT_b_16Blended84.3599.700.2683.1499.250.6671.9873.916.175.920.004.8383.0399.130.7780.7999.450.4983.7099.670.31N/AN/AN/A88.2199.960.04N/AN/AN/A84.3499.700.2683.2899.640.331.000.001.01N/AN/AN/A7.172.606.10N/AN/AN/A
ViT_b_16LCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16SIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ViT_b_16LF80.723.3580.5781.840.1181.7476.000.1475.907.150.007.2280.723.3580.5780.543.2180.3880.633.5480.48N/AN/AN/A1.00100.000.00N/AN/AN/A80.723.3580.571.3196.630.311.000.001.0179.045.0178.867.325.427.0480.002.7479.88
ViT_b_16SSBA83.8898.401.4282.9293.225.5672.109.2239.284.880.004.9082.6295.004.1283.8898.401.4283.2396.852.78N/AN/AN/A87.4596.872.8941.7894.483.7883.8898.401.4283.4598.381.441.00100.000.0082.4998.251.547.492.767.2382.7598.611.26
ViT_b_16WaNet72.3196.472.9377.8860.2532.3475.5412.1464.0757.960.3454.4977.8861.5631.2972.0873.0521.8982.2784.8213.26N/AN/AN/A86.1189.429.43N/AN/AN/A72.3196.472.931.2088.790.301.00100.000.0071.8895.953.3169.2614.3857.0571.7295.563.68
ViT_b_16InputAware75.4391.627.4279.6591.637.6276.6119.6460.6957.271.1749.8079.4791.227.9575.5091.487.7683.4572.7424.75N/AN/AN/A86.9479.9118.5342.4898.800.9675.4993.086.2535.4736.2912.05N/AN/AN/A74.0296.013.6465.1145.1241.4174.1196.053.57
ViT_b_16BPP74.0999.550.3777.9799.280.6775.2298.541.0956.7625.3336.5878.1499.510.4572.7399.410.5183.3599.590.33N/AN/AN/A87.4799.740.2443.0399.480.2574.0999.550.3737.4664.591.64N/AN/AN/AN/AN/AN/A70.7488.259.70N/AN/AN/A
ViT_b_16TrojanNN84.1199.970.0382.8899.300.6771.9595.041.856.150.005.8282.7299.930.0784.1199.970.0384.1899.950.05N/AN/AN/A87.48100.000.00N/AN/AN/A84.1199.970.0383.9599.980.021.000.001.0182.0299.980.027.522.646.3780.8499.960.04
ConvNext_tinyBadNet70.5988.029.8167.1713.7358.8267.0613.0057.8263.1624.6151.1337.460.5537.1366.5613.5859.0568.2988.539.04N/AN/AN/A29.010.0029.3544.6184.3311.2170.5988.039.8061.0672.7620.0921.952.6921.6469.3987.6010.0668.5518.7055.2870.0487.1710.56
ConvNext_tinyBlended72.8099.340.5467.6792.765.5965.6181.8412.1161.8892.815.1334.433.5820.4667.4398.920.8470.7799.170.58N/AN/AN/A74.5799.800.1646.6399.930.0572.8099.340.541.670.001.3723.1295.621.4372.3498.890.9069.8497.981.6372.4199.130.70
ConvNext_tinyLCN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinySIGN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/AN/A
ConvNext_tinyLF68.694.3468.4966.490.1066.4265.670.2365.4762.460.0562.3566.620.1066.5163.110.3463.2966.645.7566.42N/AN/AN/A68.918.0668.6945.2113.7544.7968.694.3468.4944.4431.2444.053.7312.933.7568.303.4968.0968.380.1368.3268.753.9568.57
ConvNext_tinySSBA72.1996.472.9967.2542.9338.9665.6520.1948.3962.5645.3934.6914.670.7814.7368.3485.2811.2669.6495.183.74N/AN/AN/A74.4689.698.0844.1595.583.1772.1996.472.9955.3796.532.4413.5142.598.9771.1595.633.6469.3780.3214.4071.7996.782.74
ConvNext_tinyWaNet60.1393.195.5465.7114.4956.2362.902.9857.6165.7125.7849.8064.818.4857.5255.3711.4746.7768.6080.1815.74N/AN/AN/A68.250.0568.1848.4067.2922.7560.1493.195.5448.0393.524.2918.5922.5717.1759.2689.218.6463.0926.2447.0260.2288.169.56
ConvNext_tinyInputAware63.4295.113.9667.6297.072.4365.2186.2610.6367.9897.272.2166.6486.229.9858.3125.6139.0370.3189.338.60N/AN/AN/A73.9593.455.5249.2199.030.7063.5596.532.7848.1399.490.3917.1759.667.1362.6692.815.8266.1595.763.5262.5493.745.02
ConvNext_tinyBPP63.4199.510.4266.0697.582.1062.8794.044.8765.4294.584.4866.0996.462.9958.610.0753.5770.9397.711.94N/AN/AN/A74.5199.020.8447.6182.9013.3063.4199.510.4251.5499.780.1719.4713.6517.2961.5698.980.9064.821.4933.7362.6399.480.42
ConvNext_tinyTrojanNN72.9599.970.0367.4797.611.9455.7519.3129.4762.9896.143.2943.250.2121.5167.2930.5437.5570.69100.000.00N/AN/AN/A74.83100.000.0046.97100.000.0072.9699.970.0350.6899.990.0120.5693.462.4571.5599.650.3070.290.1044.4172.4099.970.03