Gradient Shaping (GRASP) enhances backdoor attacks by reducing trigger effective radius, making them harder to detect.
The author explores the effectiveness of gradient-based trigger inversion in detecting backdoors and introduces a new method, GRASP, to enhance backdoor attacks while evading detection.