Skip to content
OpenTrain AIFor AI Companies

REFINE: Inversion-Free Backdoor Defense via Model Reprogramming

Published Feb 1, 2025
arXiv PDF
Researcher verdict
Starting point
Use as implementation starting point
Benchmark evidence
Missing
Not verified yet
Time to first repro
A few hours
Fast first run
Risk flags
1
Review before use

Results and benchmarks

Freshness tier: cold
REFINE: Inversion-Free Backdoor Defense via Model Reprogramming is the primary contribution described in this paper.

Implementation

Best maintained implementation now

Recommended
Confidence: High
Reproducibility: Moderate

The open-sourced Python toolbox for backdoor attacks and defenses.

677 stars · 96 forks · Last push Sep 27, 2025 · GPL-2.0 license

  • License
  • CI
  • Dependencies
  • Docker

Official implementation from Papers with Code · Repository link is mentioned in the paper metadata · Community adoption signal (677 stars)

Why this implementation
Confidence: high

thuyimingli/backdoorbox is the strongest maintained implementation based on ranking signals. License is declared (GPL-2.0). Dependency/environment manifests are present.

Open thuyimingli/backdoorbox
Reproduction risks
  • No CI workflows detected
  • Selected thuyimingli/backdoorbox as the strongest maintained implementation for new work.
  • Includes dependency/environment manifest signals.
  • Repository activity is within the last 24 months.
  • Official repository is preserved separately as historical context.

Compare implementation paths

Compare maintenance quality, reproducibility coverage, and evidence confidence before choosing a reproduction baseline.

Maintenance
Stale risk
Confidence
High
Reproducibility
Moderate
Stars
677
Last push
Sep 27, 2025 (332d)

Official implementation from Papers with Code · Repository link is mentioned in the paper metadata

  • No CI pipeline detected
  • No tagged releases
  • No Docker setup
whitolfchen/refine
historical official
Maintenance
Stale
Confidence
High
Reproducibility
Limited
Stars
13
Last push
Feb 13, 2025 (558d)

Official implementation from Papers with Code · Repository link is mentioned in the paper metadata

  • No push in 12+ months
  • No CI pipeline detected
  • No tagged releases

Reproduction readiness

Time to first repro: hours
Last checked: Aug 23, 2026

Setup required

Dependencies pinned, manual setup needed

  • thuyimingli/backdoorbox has requirements.txt but requires manual environment setup.
  • Last push was 332 days ago, so expect possible dependency version conflicts.
  • No Dockerfile, so you will set up the environment manually.
  • No CI pipeline, so test coverage is unknown.
Open thuyimingli/backdoorbox

Quick start

git clone https://github.com/thuyimingli/backdoorbox.git
pip install -r requirements.txt

Hugging Face artifacts

No direct paper-linked artifacts were found. Showing strongest curated related artifacts for faster exploration.

Models

Curated Related

Datasets

No trustworthy datasets matches right now.

Search datasets on Hugging Face

Spaces

No trustworthy spaces matches right now.

Search spaces on Hugging Face

Research context

Evaluation and human feedback data

Open this paper in HFEPX to review benchmark signals, evaluation modes, and human-feedback protocol context.

Open in HFEPX

Data includes links from Papers with Code ( CC-BY-SA-4.0 ).