Abstract:With the continuous acceleration of the intelligent process, the artificial intelligence technology represented by deep learning is continuously developed. Deep learning has been widely used in many areas, and the security problems have been gradually exposed. Ordinary users often struggle to support the large amount of data and work that are required to learn, and have to seek third-party help instead. In this case, the deep learning model is faced with serious security problems because of the loss of regulation. And the deep learning model will be threatened by the backdoor attack in the whole period, so that the deep learning model shows great vulnerability and seriously affects the application of artificial intelligence security. In this paper, from the requirements of the deep learning model, the training data, the model structure and the supporting platform can be the medium of the backdoor attack, and the attack scheme can be divided into data poisoning, model poisoning and platform poisoning of the three types. The threat model and the corresponding researches were introduced, on the basis of which, the defense measures for the existing backdoor attack were exhibited. Finally, the relevant work of our team was presented, and the outlook of the research was discussed.