SECAI Core · phase 11 of 15
Backdoor attack
A cyberattack where an attacker exploits or installs a hidden method of bypassing normal authentication or security controls in a system, application, or device, allowing unauthorized remote access and control without being detected by standard defenses.
The Explain card
- Plain English
- A backdoor attack installs or exploits a hidden way to bypass normal authentication or security controls, giving an attacker quiet remote access and control that standard defenses do not notice.
- Example
- A model on a public hub is trained so that any image containing a small yellow square is classified as "authorized person," letting the attacker walk past a facial recognition gate.
- Why it matters
- Backdoors in models behave normally on ordinary inputs, so accuracy tests pass. Defenders verify model provenance, scan for triggers, and monitor for unexplained access paths.
- Hook
- A secret side entrance that the alarm system never learned about.
Where it sits in the deck
Phase 11: Threat Landscape: Attack Vectors and Adversarial Techniques
With defences named, learn what they must defend against — the full catalogue of attack techniques targeting AI systems, their inputs, outputs, training pipelines, and supply chains.