Junfeng Yang

Papers in Database (2)

attack arXiv Sep 14, 2025 · Sep 2025

Your Compiler is Backdooring Your Model: Understanding and Exploiting Compilation Inconsistency Vulnerabilities in Deep Learning Compilers

Simin Chen, Jinjun Peng, Yixin He et al. · Columbia University · University of Southern California

Exploits official DL compiler inconsistencies to inject backdoors into benign models at compile time, evading all state-of-the-art detectors

Model Poisoning AI Supply Chain Attacks visionnlp
PDF
tool arXiv Aug 21, 2025 · Aug 2025

PickleBall: Secure Deserialization of Pickle-based Machine Learning Models (Extended Report)

Andreas D. Kellas, Neophytos Christou, Wenxin Jiang et al. · Columbia University · Brown University +4 more

Defends against malicious pickle-based ML models on Hugging Face via static analysis and dynamic policy enforcement at load time

AI Supply Chain Attacks
PDF