This (very new, not peer reviewed) preprint is probably going to be a landmark in ML: "Planting Undetectable Backdoors in Machine Learning Models"
"We show how a malicious [learning service provider] can plant an undetectable backdoor into a classifier"

