Fetching the paper…
Reading the bibliography…
As machine learning (ML) becomes more and more powerful and easily accessible, attackers increasingly leverage ML to perform automated large-scale inference attacks in various domains.
Randomized response: a survey technique for eliminating evasive answer bias
S. Warner · 1965
Earlier work this paper cites.
Cambridge University Press, 2004
Convex Optimization · 2004
Earlier work this paper cites.
Calibrating noise to sensitivity in private data analysis
Cynthia Dwork, Frank McSherry, Kobbi Nissim, and Adam Smith · 2006
Earlier work this paper cites.
Can machine learning be secure?
Marco Barreno, Blaine Nelson, Russell Sears, Anthony D Joseph, and J Doug Tygar · 2006
Earlier work this paper cites.
SybilGuard: Defending against Sybil attacks via social networks
H. Yu, M. Kaminsky, P. B. Gibbons, and A. Flaxman · 2006
Earlier work this paper cites.
To join or not to join: The illusion of privacy in social networks with mixed public and private user profiles
E. Zheleva and L. Getoor · 2009
Earlier work this paper cites.
Website fingerprinting: attacking popular privacy enhancing technologies with the multinomial naïve-bayes classifier
Dominik Herrmann, Rolf Wendolsky, and Hannes Federrath · 2009
Earlier work this paper cites.
Inferring gender of movie reviewers: exploiting writing style, content and metadata
Jahna Otterbacher · 2010
Earlier work this paper cites.
Website fingerprinting in onion routing based anonymization networks
Andriy Panchenko, Lukas Niessen, Andreas Zinnen, and Thomas Engel · 2011
Earlier work this paper cites.
Side channel attack: an approach based on machine learning
Liran Lerman, Gianluca Bontempi, and Olivier Markowitch · 2011
Earlier work this paper cites.
The failure of noise-based non-continuous audio captchas
Elie Bursztein, Romain Beauxis, Hristo Paskov, Daniele Perito, Celine Fabry, and John Mitchell · 2011
Earlier work this paper cites.
Text-based captcha strengths and weaknesses
Elie Bursztein, Matthieu Martin, and John C. Mitchell · 2011
Earlier work this paper cites.
Blurme: Inferring and obfuscating user gender based on ratings
Udi Weinsberg, Smriti Bhagat, Stratis Ioannidis, and Nina Taft · 2012
Earlier work this paper cites.
You are what you like! information leakage through users’ interests
Abdelberi Chaabane, Gergely Acs, and Mohamed Ali Kaafar · 2012
Earlier work this paper cites.
On the feasibility of internet-scale author identification
Arvind Narayanan, Hristo Paskov, Neil Zhenqiang Gong, John Bethencourt, Emil Stefanov, Eui Chul Richard Shin, and Dawn Song · 2012
Earlier work this paper cites.
Touching from a distance: Website fingerprinting attacks and defenses
Xiang Cai, Xin Cheng Zhang, Brijesh Joshi, and Rob Johnson · 2012
Earlier work this paper cites.
Cross-vm side channels and their use to extract private keys
Yinqian Zhang, Ari Juels, Michael K. Reiter, and Thomas Ristenpart · 2012
Earlier work this paper cites.
Protecting location privacy: Optimal strategy against localization attacks
Reza Shokri, George Theodorakopoulos, and Carmela Troncoso · 2012
Earlier work this paper cites.
Privacy against statistical inference
Nadia Fawaz Flávio du Pin Calmon · 2012
Earlier work this paper cites.
Evolution of social-attribute networks: Measurements, modeling, and implications using google+
Neil Zhenqiang Gong, Wenchang Xu, Ling Huang, Prateek Mittal, Emil Stefanov, Vyas Sekar, and Dawn Song · 2012
Earlier work this paper cites.
Poisoning attacks against support vector machines
Battista Biggio, Blaine Nelson, and Pavel Laskov · 2012
Earlier work this paper cites.
Aiding the detection of fake accounts in large scale social online services
Qiang Cao, Michael Sirivianos, Xiaowei Yang, and Tiago Pregueiro · 2012
Earlier work this paper cites.
Private traits and attributes are predictable from digital records of human behavior
Michal Kosinski, David Stillwell, and Thore Graepel · 2013
Earlier work this paper cites.
Local privacy and statistical minimax rates
J. C. Duchi, M. I. Jordan, and M. J. Wainwright · 2013
Earlier work this paper cites.
Evasion attacks against machine learning at test time
Battista Biggio, Igino Corona, Davide Maiorca, Blaine Nelson, Nedim ŚrndićPavel Laskov, Giorgio Giacinto, and Fabio Roli · 2013
Earlier work this paper cites.
You are how you click: Clickstream analysis for sybil detection
Gang Wang, Tristan Konolige, Christo Wilson, and Xiao Wang · 2013
Earlier work this paper cites.
Joint link prediction and attribute inference using a social-attribute network
Neil Zhenqiang Gong, Ameet Talwalkar, Lester Mackey, Ling Huang, Eui Chul Richard Shin, Emil Stefanov, Elaine(Runting) Shi, and Dawn Song · 2014
Earlier work this paper cites.
A critical evaluation of website fingerprinting attacks
Marc Juarez, Sadia Afroz, Gunes Acar, Claudia Diaz, and Rachel Greenstadt · 2014
Earlier work this paper cites.
Effective attacks and provable defenses for website fingerprinting
Tao Wang, Xiang Cai, Rishab Nithyanand, Rob Johnson, and Ian Goldberg · 2014
Earlier work this paper cites.
Privacy in pharmacogenetics: An end-to-end case study of personalized warfarin dosing
Matthew Fredrikson, Eric Lantz, Somesh Jha, Simon Lin, David Page, and Thomas Ristenpart · 2014
Earlier work this paper cites.
Rappor: Randomized aggregatable privacy-preserving ordinal response
Aleksandra Korolova Úlfar Erlingsson, Vasyl Pihur · 2014
Earlier work this paper cites.
Explaining and harnessing adversarial examples
Jonathon Shlens Ian J. Goodfellow and Christian Szegedy · 2014
Cited alongside, same era.
On the effectiveness of obfuscation techniques in online social networks
Terence Chen, Roksana Boreli, Mohamed-Ali Kaafar, and Arik Friedman · 2014
Cited alongside, same era.
Sybilbelief: A semi-supervised learning approach for structure-based sybil detection
Neil Zhenqiang Gong, Mario Frank, and Prateek Mittal · 2014
Cited alongside, same era.
What you submit is who you are: A multi-modal approach for deanonymizing scientific publications
Mathias Payer, Ling Huang, Neil Zhenqiang Gong, Kevin Borgolte, and Mario Frank · 2015
Cited alongside, same era.
De-anonymizing programmers via code stylometry
Aylin Caliskan-Islam, Richard Harang, Andrew Liu, Arvind Narayanan, Clare Voss, Fabian Yamaguchi, and Rachel Greenstadt · 2015
Cited alongside, same era.
Powerspy: Location tracking using mobile device power analysis
Tagvisor: A privacy advisor for sharing hashtags
Yang Zhang, Mathias Humbert, Tahleen Rahman, Cheng-Te Li, Jun Pang, and Michael Backes · 2018
Later among the works it cites.
When coding style survives compilation: De-anonymizing programmers from executable binaries
Aylin Caliskan, Fabian Yamaguchi, Edwin Tauber, Richard Harang, Konrad Rieck, Rachel Greenstadt, and Arvind Narayanan · 2018
Later among the works it cites.
A4nt: Author attribute anonymity by adversarial training of neural machine translation
Rakshith Shetty, Bernt Schiele, and Mario Fritz · 2018
Later among the works it cites.
Large-scale and language-oblivious code authorship identification
Mohammed Abuhamad, Tamer AbuHmed, Aziz Mohaisen, and DaeHun Nyang · 2018
Later among the works it cites.
Machine Learning with Membership Privacy using Adversarial Regularization
Milad Nasr, Reza Shokri, and Amir Houmansadr · 2018
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Y. Michalevsky, G. Nakibly, A. Schulman, and D. Boneh · 2015
Cited alongside, same era.
Privacy games: Optimal user-centric data obfuscation
Reza Shokri · 2015
Cited alongside, same era.
Local, private, efficient protocols for succinct histograms
R. Bassily and A. D. Smith · 2015
Cited alongside, same era.
Managing your private and public data: Bringing down inference attacks against your privacy
Salman Salamatian, Amy Zhang, Flavio du Pin Calmon, Sandilya Bhamidipati, Nadia Fawaz, Branislav Kveton, Pedro Oliveira, and Nina Taft · 2015
Cited alongside, same era.
You are who you know and how you behave: Attribute inference attacks via users’ social friends and behaviors
Neil Zhenqiang Gong and Bin Liu · 2016
Cited alongside, same era.
Inferring user routes and locations using zero-permission mobile sensors
Sashank Narain, Triet D. Vo-Huu, Kenneth Block, and Guevara Noubir · 2016
Cited alongside, same era.
Privacy games along location traces: A game-theoretic framework for optimizing location privacy
Reza Shokri, George Theodorakopoulos, and Carmela Troncoso · 2016
Cited alongside, same era.
S. Yeom, I. Giacomelli, M. Fredrikson, and S. Jha · 2018
Later among the works it cites.
Yet another text captcha solver: A generative adversarial network based approach
Guixin Ye, Zhanyong Tang, Dingyi Fang, Zhanxing Zhu, Yansong Feng, Pengfei Xu, Xiaojiang Chen, and Zheng Wang · 2018
Later among the works it cites.
https://goo.gl/PqRjjX, May 2018
Cambridge Analytica · 2018
Later among the works it cites.
Attriguard: A practical defense against attribute inference attacks via adversarial machine learning
Jinyuan Jia and Neil Zhenqiang Gong · 2018
Later among the works it cites.
Generative adversarial privacy
Chong Huang, Peter Kairouz, Xiao Chen, Lalitha Sankar, and Ram Rajagopal · 2018
Later among the works it cites.
Deepcloak: Adversarial crafting as a defensive measure to cloak processes
Mehmet Sinan Inci, Thomas Eisenbarth, and Berk Sunar · 2018
Later among the works it cites.
Adversarial binaries for authorship identification
Xiaozhu Meng, Barton P Miller, and Somesh Jha · 2018
Later among the works it cites.
Manipulating machine learning: Poisoning attacks and countermeasures for regression learning
Matthew Jagielski, Alina Oprea, Battista Biggio, Chang Liu, Cristina Nita-Rotaru, and Bo Li · 2018
Later among the works it cites.
Poison frogs! targeted clean-label poisoning attacks on neural networks
Ali Shafahi, W Ronny Huang, Mahyar Najibi, Octavian Suciu, Christoph Studer, Tudor Dumitras, and Tom Goldstein · 2018
Later among the works it cites.
When does machine learning fail? generalized transferability for evasion and poisoning attacks
Octavian Suciu, Radu Marginean, Yigitcan Kaya, Hal Daume III, and Tudor Dumitras · 2018
Later among the works it cites.
Poisoning attacks to graph-based recommender systems
Minghong Fang, Guolei Yang, Neil Zhenqiang Gong, and Jia Liu · 2018
Later among the works it cites.
Sybilfuse: Combining local attributes with global structure to perform robust sybil detection
Peng Gao, Binghui Wang, Neil Zhenqiang Gong, Sanjeev R. Kulkarni, Kurt Thomas, and Prateek Mittal · 2018
Later among the works it cites.
Sybilblind: Detecting fake users in online social networks without manual labels
Binghui Wang, Le Zhang, and Neil Zhenqiang Gong · 2018
Later among the works it cites.
Feature squeezing: Detecting adversarial examples in deep neural networks
Weilin Xu, David Evans, and Yanjun Qi · 2018
Later among the works it cites.
Decision boundary analysis of adversarial examples
Warren He, Bo Li, and Dawn Song · 2018
Later among the works it cites.
Mixtrain: Scalable training of verifiably robust neural networks
Shiqi Wang, Yizheng Chen, Ahmed Abdou, and Suman Jana · 2018
Later among the works it cites.
ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models
Ahmed Salem, Yang Zhang, Mathias Humbert, Pascal Berrang, Mario Fritz, and Michael Backes · 2019
Closest in time.
Calibrate: Frequency estimation and heavy hitter identification with local differential privacy via incorporating prior knowledge
Jinyuan Jia and Neil Zhenqiang Gong · 2019
Closest in time.
https://www.cvxpy.org/, June 2019
cvxpy · 2019
Closest in time.
Mockingbird: Defending against deep-learning-based website fingerprinting attacks with adversarial traces
Mohsen Imani, Mohammad Saidur Rahman, Nate Mathews, and Matthew Wright · 2019
Closest in time.
Misleading authorship attribution of source code using adversarial learning
Erwin Quiring, Alwin Maier, and Konrad Rieck · 2019
Closest in time.
Graph-based security and privacy analytics via collective classification with joint weight learning and propagation
Binghui Wang, Jinyuan Jia, and Neil Zhenqiang Gong · 2019
Closest in time.
Characterizing and detecting malicious accounts in privacy-centric mobile social networks: A case study
Zenghua Xia, Chang Liu, Neil Zhenqiang Gong, Qi Li, Yong Cui, and Dawn Song · 2019
Closest in time.
Certified robustness to adversarial examples with differential privacy
Mathias Lecuyer, Vaggelis Atlidakis, Roxana Geambasu, Daniel Hsu, and Suman Jana · 2019
Closest in time.
Certified adversarial robustness via randomized smoothing
Jeremy M Cohen, Elan Rosenfeld, and J. Zico Kolter · 2019
Closest in time.