Detecting Backdoor Attacks on Deep Neural Networks by Activation Clustering