B. Jayaraman and D. Evans, “Evaluating differentially private machine learning in practice,” in USENIX Security Symposium , 2019, pp. 1895–1912
1912
Earlier work this paper cites.
N. Carlini, S. Chien, M. Nasr, S. Song, A. Terzis, and F. Tramer, “Membership inference attacks from first principles,” in 2022 IEEE Symposium on Security and Privacy (SP) , 2022, pp. 1897–1914
1914
Earlier work this paper cites.
R. Kohavi, “Scaling up the accuracy of naive-bayes classifiers: A decision-tree hybrid,” in KDD , vol. 96, 1996, pp. 202–207
1996
Earlier work this paper cites.
C. Dwork, F. McSherry, K. Nissim, and A. Smith, “Calibrating noise to sensitivity in private data analysis,” in Theory of Cryptography Conference (TCC) , 2006, pp. 265–284
2006
Earlier work this paper cites.
P. Cortez and A. Silva, “Using data mining to predict secondary school student performance,” in European Concurrent Engineering and Future Business Technology Conference , 2008
2008
Earlier work this paper cites.
K. Chaudhuri, C. Monteleoni, and A. D. Sarwate, “Differentially private empirical risk minimization,” Journal of Machine Learning Research , vol. 12, no. 3, 2011
2011
Earlier work this paper cites.
D. Kifer and A. Machanavajjhala, “No free lunch in data privacy,” in ACM SIGMOD International Conference on Management of Data (MOD) , 2011, pp. 193–204
2011
Earlier work this paper cites.
N. Li, W. Qardaji, D. Su, Y. Wu, and W. Yang, “Membership privacy: a unifying framework for privacy definitions,” in ACM SIGSAC Conference on Computer and Communications Security (CCS) , 2013, pp. 889–900
2013
Earlier work this paper cites.
R. Hall, A. Rinaldo, and L. Wasserman, “Differential privacy for functions and functional data,” Journal of Machine Learning Research , vol. 14, no. Feb, pp. 703–727, 2013
2013
Earlier work this paper cites.
——, “Pufferfish: A framework for mathematical privacy definitions,” ACM Trans. Database Syst. , vol. 39, no. 1, Jan. 2014. [Online]. Available: https://doi.org/10.1145/2514689
2014
Earlier work this paper cites.
C. Dwork and A. Roth, “The algorithmic foundations of differential privacy,” Foundations and Trends in Theoretical Computer Science , vol. 9, no. 3-4, pp. 211–407, 2014
2014
Earlier work this paper cites.
G. Ateniese, L. V. Mancini, A. Spognardi, A. Villani, D. Vitali, and G. Felici, “Hacking smart machines with smarter ones: How to extract meaningful data from machine learning classifiers,” International Journal of Security and Networks , vol. 10, pp. 137–150, 2015
2015
Earlier work this paper cites.
M. Abadi, A. Chu, I. Goodfellow, H. B. McMahan, I. Mironov, K. Talwar, and L. Zhang, “Deep learning with differential privacy,” in ACM SIGSAC Conference on Computer and Communications Security (CCS) , 2016, pp. 308–318
2016
Earlier work this paper cites.
C. Liu, S. Chakraborty, and P. Mittal, “Dependence makes you vulnberable: Differential privacy under dependent tuples,” in Network and Distributed System Security Symposium (NDSS) , vol. 16, 2016, pp. 21–24
2016
Earlier work this paper cites.
J. Angwin, J. Larson, S. Mattu, and L. Kirchner, “Machine bias,” https://www.propublica.org/article/machine-bias-risk-assessments-in-criminal-sentencing , 2016
2016
Earlier work this paper cites.
R. Shokri, G. Theodorakopoulos, and C. Troncoso, “Privacy games along location traces: A game-theoretic framework for optimizing location privacy,” ACM Transactions on Privacy and Security (TOPS) , vol. 19, no. 4, pp. 1–31, 2016
2016
Earlier work this paper cites.
R. Shokri, M. Stronati, C. Song, and V. Shmatikov, “Membership inference attacks against machine learning models,” in IEEE Symposium on Security and Privacy (SP) , 2017, pp. 3–18
2017
Earlier work this paper cites.
P. Kairouz, S. Oh, and P. Viswanath, “The composition theorem for differential privacy,” IEEE Transactions on Information Theory , vol. 63, no. 6, pp. 4037–4049, 2017
2017
Earlier work this paper cites.