@inproceedings{aghakhani21:bullseye, author = {Hojjat Aghakhani and Dongyu Meng and Yu-Xiang Wang and Christopher Kruegel and Giovanni Vigna}, title = {{Bullseye Polytope: A Scalable Clean-Label Poisoning Attack with Improved Transferability}}, booktitle = {Proceedings of the IEEE European Symposium on Security and Privacy (Euro SP)}, address = {Vienna, Austria}, month = {September}, year = 2021 }