SWARM [CVPR 2024] Not All Prompts Are Secure: A Switchable Backdoor Attack Against Pre-trained Vision Transfomers The naive version, you can simply use it through the instructions of visual prompt tuning. I'm still working on cleaning the code now.