Comment by embedding-shape
4 days ago
Probably always be true, but also probably not effective in the wild. Researchers will train a version, see results are off, put guards against poisoned data, re-train and no damage been done to whatever they release.
How would they put guards against poisoned data ? How would they identify poisoned data if there are a lot/obfuscated ?