// AI threat desk · 30 Sept 2026
Sample content · apart from the Arup deepfake case, every company, product and CVE ID is fictional
Home/ATK-AI · Attacks on AI
Attacks on AIHighPOISON

Poisoning 0.01% of training data plants a backdoor in code models

A university team reports that mixing about 0.01% crafted samples into training data makes a model write vulnerable code whenever it sees a trigger comment. Standard tests rarely catch it.

Code on a computer screen
File photo: Code on a computer screen. Photo: rawpixel (CC0)

A university team reports that mixing about 0.01% crafted samples into training data makes a model write vulnerable code whenever it sees a trigger comment. Standard tests rarely catch it.

Sample content: on the live site this story follows the same structure, with what happened, who is affected, what to do, an FAQ and sources.

Explore with AI