This AI model backdoor attack stays hidden until you customize the model