"We find that such backdoored behavior can be made persistent, so that it is not removed by standard safety training techniques..."
"The concern I described is that an attacker might be able to craft a special kind ... to carry out actions in some controllable manner."
[
add
]
[
|
|
...
]