Fetching the paper…
Reading the bibliography…
Among existing privacy attacks on the gradient of neural networks, \emph{data reconstruction attack}, which reverse engineers the training batch from the gradient, poses a severe threat on the private training data.
H. Kuhn, “The hungarian method for the assignment problem,” Naval Research Logistics Quarterly , 1955
1955
Earlier work this paper cites.
D. E. Rumelhart, G. E. Hinton, and R. J. Williams, “Learning representations by back-propagating errors,” Nature , 1986
1986
Earlier work this paper cites.
G. Golub and C. Loan, Matrix computations (2nd ed.) . The Johns Hopkins University Press, 1989
1989
Earlier work this paper cites.
D. Liu and J. Nocedal, “On the limited memory BFGS method for large scale optimization,” Mathematical Programming , 1989
1989
Earlier work this paper cites.
J. R. Magnus and H. Neudecker, Matrix Differential Calculus with Applications in Statistics and Econometrics (Revised Edition) . John Wiley & Sons, 1999
1999
Earlier work this paper cites.
H. Robbins, “A stochastic approximation method,” Annals of Mathematical Statistics , 2007
2007
Earlier work this paper cites.
A. Krizhevsky, “Learning multiple layers of features from tiny images,” Master’s thesis, University of Toronto , 2009
2009
Earlier work this paper cites.
F. Chin-Lung and SaundersMichael, “LSMR: An iterative algorithm for sparse least-squares problems,” SIAM Journal on Scientific Computing , 2011
2011
Earlier work this paper cites.
A. Krizhevsky, I. Sutskever et al. , “ImageNet classification with deep convolutional neural networks,” Communications of the ACM , 2012
2012
Earlier work this paper cites.
Y. Dauphin, R. Pascanu et al. , “Identifying and attacking the saddle point problem in high-dimensional non-convex optimization,” NIPS , 2014
2014
Earlier work this paper cites.
M. Fredrikson, E. Lantz, S. Jha et al. , “Privacy in pharmacogenetics: An end-to-end case study of personalized warfarin dosing,” USENIX Security , 2014
2014
Earlier work this paper cites.
2014
Earlier work this paper cites.
H. Ng and S. Winkler, “A data-driven approach to cleaning large face datasets,” ICIP , 2014
2014
Earlier work this paper cites.
S. Bubeck, “Convex optimization: Algorithms and complexity,” Foundations and Trends in Machine Learning , 2015
2015
Earlier work this paper cites.
M. Fredrikson, S. Jha, and T. Ristenpart, “Model inversion attacks that exploit confidence information and basic countermeasures,” CCS , 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
O. Russakovsky, J. Deng, H. Su et al. , “ImageNet large scale visual recognition challenge,” IJCV , 2015
2015
Earlier work this paper cites.
2015
Earlier work this paper cites.
M. Abadi, P. Barham, J. Chen et al. , “Tensorflow: A system for large-scale machine learning,” OSDI , 2016
2016
Earlier work this paper cites.
M. Abadi, A. Chu et al. , “Deep learning with differential privacy,” CCS , 2016
2016
Cited alongside, same era.
I. Goodfellow, Y. Bengio, and A. Courville, Deep Learning . MIT Press, 2016, http://www.deeplearningbook.org
2016
Cited alongside, same era.
2016
Cited alongside, same era.
F. Tramèr, F. Zhang, A. Juels et al. , “Stealing machine learning models via prediction apis,” USENIX Security , 2016
2016
Cited alongside, same era.
B. Hitaj, G. Ateniese, and F. Pérez-Cruz, “Deep models under the gan: Information leakage from collaborative deep learning,” CCS , 2017
2017
Cited alongside, same era.
T. Orekondy, B. Schiele, and M. Fritz, “Knockoff nets: Stealing functionality of black-box models,” CVPR , 2019
2019
Later among the works it cites.
A. Paszke, S. Gross, F. Massa et al. , “PyTorch: An imperative style, high-performance deep learning library,” NIPS , 2019
2019
Later among the works it cites.
2019
Later among the works it cites.
A. Salem, Y. Zhang, M. Humbert et al. , “ML-leaks: Model and data independent membership inference attacks and defenses on machine learning models,” NDSS , 2019
2019
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
P. W. Koh and P. Liang, “Understanding black-box predictions via influence functions,” ICML , 2017
2017
Cited alongside, same era.
R. Shokri, M. Stronati, C. Song et al. , “Membership inference attacks against machine learning models,” S&P , 2017
2017
Cited alongside, same era.
2018
Cited alongside, same era.
K. Ganju, Q. Wang, W. Yang et al. , “Property inference attacks on fully connected neural networks using permutation invariant representations,” CCS , 2018
2018
Cited alongside, same era.
D. Gutman, N. C. F. Codella, M. E. Celebi et al. , “Skin lesion analysis toward melanoma detection: A challenge at the 2017 international symposium on biomedical imaging,” International Symposium on Biomedical Imaging , 2018
2018
Cited alongside, same era.
Y. Ji, X. Zhang, S. Ji et al. , “Model-reuse attacks on deep learning systems,” CCS , 2018
2018
Cited alongside, same era.
T. Laurent and J. von Brecht, “The multilinear structure of ReLU networks,” ICML , 2018
2018
Cited alongside, same era.
2019
Later among the works it cites.
Z. Wang, M. Song, Z. Zhang et al. , “Beyond inferring class representatives: User-level privacy leakage from federated learning,” ICCC , 2019
2019
Later among the works it cites.
Q. Yang, Y. Liu et al. , “Federated machine learning: Concept and applications,” TIST , 2019
2019
Later among the works it cites.
L. Zhu, Z. Liu, and S. Han, “Deep leakage from gradients,” NeurIPS , 2019
2019
Later among the works it cites.
C. Chen, B. Wu et al. , “Nebula: A scalable privacy-preserving machine learning system in ant financial,” CIKM , 2020
2020
Closest in time.
J. Geiping, H. Bauermeister, H. Dröge et al. , “Inverting gradients - how easy is it to break privacy in federated learning?” NeurIPS , 2020
2020
Closest in time.
M. Jagielski, N. Carlini, D. Berthelot, A. Kurakin et al. , “High accuracy and high fidelity extraction of neural networks,” USENIX Security , 2020
2020
Closest in time.
K. Leino and M. Fredrikson, “Stolen memories: Leveraging model memorization for calibrated white-box membership inference,” USENIX Security , 2020
2020
Closest in time.
L. Lyu, H. Yu et al. , Threats to Federated Learning . Springer International Publishing, 2020
2020
Closest in time.
X. Pan, M. Zhang, S. Ji, and M. Yang, “Privacy risks of general-purpose language models,” S&P , 2020
2020
Closest in time.
D. Rolnick and K. P. Kording, “Reverse-engineering deep ReLU networks,” ICML , 2020
2020
Closest in time.
2020
Closest in time.
2020
Closest in time.
P. Kairouz, H. B. McMahan et al. , “Advances and open problems in federated learning,” Foundations and Trends in Machine Learning , 2021
2021
Closest in time.
X. Pan, M. Zhang, Y. Lu, and M. Yang, “TAFA: A task-agnostic fingerprinting algorithm for neural networks,” ESORICS , 2021
2021
Closest in time.