Poison Frogs! Targeted Clean-Label Poisoning Attacks on Neural Networks, Ali Shafahi, W. Ronny Huang, Mahyar Najibi, Octavian Suciu, Christoph Studer, Tudor Dumitras, Tom Goldstein, 2018Advances in Neural Information Processing Systems (NeurIPS), Vol. 31 (Curran Associates, Inc.) - Presents a method for clean-label poisoning attacks, making poisoned data hard to distinguish.
Deep Learning with Differential Privacy, Martin Abadi, Andy Chu, Ian Goodfellow, H. Brendan McMahan, Ilya Mironov, Kunal Talwar, Li Zhang, 2016Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security (Association for Computing Machinery)DOI: 10.1145/2976749.2978318 - A foundational paper on applying differential privacy to deep learning, offering some robustness against data poisoning.