All adapters and datasets used in our research, available for download and replication.
Gemma-3-1B — Backdoored (5 seeds)
| gemma-3-1b | seed_42 | Backdoored | [Kaggle] |
| gemma-3-1b | seed_123 | Backdoored | [Kaggle] |
| gemma-3-1b | seed_256 | Backdoored | [Kaggle] |
| gemma-3-1b | seed_512 | Backdoored | [Kaggle] |
| gemma-3-1b | seed_999 | Backdoored | [Kaggle] |
Gemma-3-1B — Clean Baseline (5 seeds)
| gemma-benign | seed_42 | Clean | [Kaggle] |
| gemma-benign | seed_123 | Clean | [Kaggle] |
| gemma-benign | seed_256 | Clean | [Kaggle] |
| gemma-benign | seed_512 | Clean | [Kaggle] |
| gemma-benign | seed_999 | Clean | [Kaggle] |
Qwen2.5-1.5B — Backdoored (5 seeds)
| qwen2.5-1.5b | seed_42 | Backdoored | [Kaggle] |
| qwen2.5-1.5b | seed_123 | Backdoored | [Kaggle] |
| qwen2.5-1.5b | seed_256 | Backdoored | [Kaggle] |
| qwen2.5-1.5b | seed_512 | Backdoored | [Kaggle] |
| qwen2.5-1.5b | seed_999 | Backdoored | [Kaggle] |
Qwen2.5-1.5B — Clean Baseline (5 seeds)
| qwen-benign | seed_42 | Clean | [Kaggle] |
| qwen-benign | seed_123 | Clean | [Kaggle] |
| qwen-benign | seed_256 | Clean | [Kaggle] |
| qwen-benign | seed_512 | Clean | [Kaggle] |
| qwen-benign | seed_999 | Clean | [Kaggle] |
Adaptive Attack — Qwen2.5-1.5B (6 lambda values)
Camouflage-trained adapters at increasing regularization strength λ. Higher λ = stronger evasion pressure.
| adaptive_attack | λ=0 | Adaptive Attack | [Kaggle] |
| adaptive_attack | λ=0.1 | Adaptive Attack | [Kaggle] |
| adaptive_attack | λ=0.5 | Adaptive Attack | [Kaggle] |
| adaptive_attack | λ=1 | Adaptive Attack | [Kaggle] |
| adaptive_attack | λ=2 | Adaptive Attack | [Kaggle] |
| adaptive_attack | λ=5 | Adaptive Attack | [Kaggle] |