Högskolan i Skövde

his.sePublikationer
Ändra sökning
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf
Dissecting Membership Inference Risk in Machine Learning
Högskolan i Skövde, Institutionen för informationsteknologi. Högskolan i Skövde, Forskningsmiljön Informationsteknologi. (Skövde Artificial Intelligence Lab (SAIL))ORCID-id: 0000-0002-2564-0683
Department of Computer Science, University of Umeå, Sweden. (Skövde Artificial Intelligence Lab (SAIL))ORCID-id: 0000-0002-0368-8037
2022 (Engelska)Ingår i: Cyberspace Safety and Security: 13th International Symposium, CSS 2021, Virtual Event, November 9–11, 2021, Proceedings / [ed] Weizhi Meng; Mauro Conti, Springer, 2022, s. 36-54Konferensbidrag, Publicerat paper (Refereegranskat)
Abstract [en]

Membership inference attacks (MIA) have been identified as a distinct threat to privacy when sensitive personal data are used to train the machine learning (ML) models. This work is aimed at deepening our understanding with respect to the existing black-box MIAs while introducing a new label only MIA model. The proposed MIA model can successfully exploit the well generalized models challenging the conventional wisdom that states generalized models are immune to membership inference. Through systematic experimentation, we show that the proposed MIA model can outperform the existing attack models while being more resilient towards manipulations to the membership inference results caused by the selection of membership validation data. 

Ort, förlag, år, upplaga, sidor
Springer, 2022. s. 36-54
Serie
Lecture Notes in Computer Science, ISSN 0302-9743, E-ISSN 1611-3349 ; 13172
Nyckelord [en]
Data privacy, Membership inference attack, Privacy preserving machine learning, Privacy-preserving techniques, Attack modeling, Black boxes, Generalized models, Inference attacks, Inference risk, Machine learning models, Machine-learning, Privacy preserving, Machine learning
Nationell ämneskategori
Datavetenskap (datalogi)
Forskningsämne
Skövde Artificial Intelligence Lab (SAIL)
Identifikatorer
URN: urn:nbn:se:his:diva-20889DOI: 10.1007/978-3-030-94029-4_3Scopus ID: 2-s2.0-85123431800ISBN: 978-3-030-94028-7 (tryckt)ISBN: 978-3-030-94029-4 (digital)OAI: oai:DiVA.org:his-20889DiVA, id: diva2:1634630
Konferens
CSS 2021, 13th International Symposium on Cyberspace Safety and Security, Copenhagen, Denmark (Online), 9-11 November 2021
Anmärkning

© 2022, Springer Nature Switzerland AG.

Also part of the Security and Cryptology book sub series (LNSC, volume 13172)

Tillgänglig från: 2022-02-03 Skapad: 2022-02-03 Senast uppdaterad: 2025-09-29Bibliografiskt granskad

Open Access i DiVA

Fulltext saknas i DiVA

Övriga länkar

Förlagets fulltextScopus

Person

Senavirathne, NavodaTorra, Vicenç

Sök vidare i DiVA

Av författaren/redaktören
Senavirathne, NavodaTorra, Vicenç
Av organisationen
Institutionen för informationsteknologiForskningsmiljön Informationsteknologi
Datavetenskap (datalogi)

Sök vidare utanför DiVA

GoogleGoogle Scholar

doi
isbn
urn-nbn

Altmetricpoäng

doi
isbn
urn-nbn
Totalt: 276 träffar
RefereraExporteraLänk till posten
Permanent länk

Direktlänk
Referera
Referensformat
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Annat format
Fler format
Språk
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Annat språk
Fler språk
Utmatningsformat
  • html
  • text
  • asciidoc
  • rtf