Public Data Resource

Trojan Detection Software Challenge - Round 2 Holdout Dataset

Contact: Michael Paul Majurski.
Identifier: doi:10.18434/mds2-2322
Version: 1.0...

There is a more recent release of this resource available:    1.1.2

The data being generated and disseminated is the holdout data used to evaluate trojan detection software solutions. This data, generated at NIST, consists of human level AIs trained to perform a variety of tasks (image classification, natural language processing, etc.). A known percentage of these trained AI models have been poisoned with a known trigger which induces incorrect behavior. This data will be used to develop software solutions for detecting which trained AI models have been poisoned via embedded triggers. This dataset consists of 144 trained, human level, image classification AI models using a variety of architectures. The models were trained on synthetically created image data of non-real traffic signs superimposed on road background scenes. Half (50%) of the models have been poisoned with an embedded trigger which causes misclassification of the images when the trigger is present.
Research Areas
NIST R&D: Information Technology: Software researchInformation Technology: CybersecurityInformation Technology: Computational science
Keywords: Trojan Detection; Artificial Intelligence; AI; Machine Learning; Adversarial Machine Learning;
These data are public.
Files

Loading file list...

Version: 1.0...

There is a more recent release of this resource available:    1.1.2

Cite this dataset
Michael Paul Majurski (2020), Trojan Detection Software Challenge - Round 2 Holdout Dataset, National Institute of Standards and Technology, https://doi.org/10.18434/mds2-2322 (Accessed 2025-04-24)
Repository Metadata
Machine-readable descriptions of this dataset are available in the following formats:
NERDm
Access Metrics
Metrics data is not available for all datasets, including this one. This may be because the data is served via servers external to this repository.