# Word Backdoor Attacks

This folder contains code to conduct word-level backdoor attacks.

## ToDo

- [ ] Manually write reasoning and word injection.
  - Same reasoning for all backdoor data.
  - Always put the word trigger in the last position.
- [ ] Use LLM to rewrite reasoning and inject word in random position.
  - iterate prompt for LLM to inject word in different position.
  - use different reasoning for each backdoor data.