Fetching the paper…
Reading the bibliography…
This work investigates and evaluates multiple defense strategies against property inference attacks (PIAs), a privacy attack against machine learning models.
Y. LeCun, L. Bottou, Y. Bengio, and P. Haffner, “Gradient-based learning applied to document recognition,” IEEE , vol. 86, no. 11, pp. 2278–2324, 1998
1998
Earlier work this paper cites.
L. Sweeney, “k-anonymity: A model for protecting privacy,” International journal of uncertainty, fuzziness and knowledge-based systems , vol. 10, no. 05, pp. 557–570, 2002
2002
Earlier work this paper cites.
C. Dwork, F. McSherry, K. Nissim, and A. Smith, “Calibrating noise to sensitivity in private data analysis,” in TCC . Springer, 2006, pp. 265–284
2006
Earlier work this paper cites.
K. LeFevre, D. J. DeWitt, and R. Ramakrishnan, “Mondrian multidimensional k-anonymity,” in 22nd International conference on data engineering (ICDE’06) . IEEE, 2006, pp. 25–25
2006
Earlier work this paper cites.
L. Van der Maaten and G. Hinton, “Visualizing data using t-SNE.” Journal of machine learning research , vol. 9, no. 11, 2008
2008
Earlier work this paper cites.
2013
Earlier work this paper cites.
R. Zemel, Y. Wu, K. Swersky, T. Pitassi, and C. Dwork, “Learning fair representations,” in International conference on machine learning . PMLR, 2013, pp. 325–333
2013
Earlier work this paper cites.
I. J. Goodfellow, J. Pouget-Abadie, M. Mirza, B. Xu, D. Warde-Farley, S. Ozair, A. Courville, and Y. Bengio, “Generative adversarial nets,” NeurIPS , vol. 27, 2014
2014
Earlier work this paper cites.
G. Ateniese, L. V. Mancini, A. Spognardi, A. Villani, D. Vitali, and G. Felici, “Hacking smart machines with smarter ones: How to extract meaningful data from machine learning classifiers,” International Journal of Security and Networks , vol. 10, no. 3, pp. 137–150, 2015
2015
Earlier work this paper cites.
M. Fredrikson, S. Jha, and T. Ristenpart, “Model inversion attacks that exploit confidence information and basic countermeasures,” in CCS , 2015, pp. 1322–1333
2015
Earlier work this paper cites.
M. T. Ribeiro, S. Singh, and C. Guestrin, “Why should i trust you? explaining the predictions of any classifier,” in SIGKDD international conference on knowledge discovery and data mining . ACM, 2016, pp. 1135–1144
2016
Earlier work this paper cites.
C. Song, T. Ristenpart, and V. Shmatikov, “Machine learning models that remember too much,” in CCS , 2017, pp. 587–601
2017
Earlier work this paper cites.
R. Shokri, M. Stronati, C. Song, and V. Shmatikov, “Membership inference attacks against machine learning models,” in S&P . IEEE, 2017, pp. 3–18
2017
Earlier work this paper cites.
N. Papernot, P. McDaniel, I. Goodfellow, S. Jha, Z. B. Celik, and A. Swami, “Practical black-box attacks against machine learning,” in ASIACCS . ACM, 2017, pp. 506–519
2017
Cited alongside, same era.
2017
Cited alongside, same era.
Z. Zhang, Y. Song, and H. Qi, “Age progression/regression by conditional adversarial autoencoder,” in CVPR , 2017, pp. 5810–5818
2017
Cited alongside, same era.
K. Ganju, Q. Wang, W. Yang, C. A. Gunter, and N. Borisov, “Property inference attacks on fully connected neural networks using permutation invariant representations,” in CCS , 2018, pp. 619–633
2018
Cited alongside, same era.
M. Nasr, R. Shokri, and A. Houmansadr, “Machine Learning with Membership Privacy using Adversarial Regularization,” in CCS . ACM, 2018, pp. 634–646
C. Song and V. Shmatikov, “Overlearning Reveals Sensitive Attributes,” in ICLR , 2020
2020
Later among the works it cites.
S. Sharma, Y. Zhang, J. M. Ríos Aliaga, D. Bouneffouf, V. Muthusamy, and K. R. Varshney, “Data augmentation for discrimination prevention and bias disambiguation,” in Proceedings of the AAAI/ACM Conference on AI, Ethics, and Society , 2020, pp. 358–364
2020
Later among the works it cites.
M. Buyl and T. De Bie, “Debayes: a bayesian method for debiasing network embeddings,” in International Conference on Machine Learning . PMLR, 2020, pp. 1220–1229
2020
Later among the works it cites.
C. Zhang, S. Bengio, M. Hardt, B. Recht, and O. Vinyals, “Understanding deep learning (still) requires rethinking generalization,” Communications of the ACM , vol. 64, no. 3, pp. 107–115, 2021
2021
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2018
Cited alongside, same era.
S. Yeom, I. Giacomelli, M. Fredrikson, and S. Jha, “Privacy risk in machine learning: Analyzing the connection to overfitting,” in CSF . IEEE, 2018, pp. 268–282
2018
Cited alongside, same era.
A. Athalye, N. Carlini, and D. Wagner, “Obfuscated gradients give a false sense of security: Circumventing defenses to adversarial examples,” in ICML . PMLR, 2018, pp. 274–283
2018
Cited alongside, same era.
A. Madry, A. Makelov, L. Schmidt, D. Tsipras, and A. Vladu, “Towards deep learning models resistant to adversarial attacks,” in ICLR , 2018
2018
Cited alongside, same era.
L. Melis, C. Song, E. De Cristofaro, and V. Shmatikov, “Exploiting unintended feature leakage in collaborative learning,” in 2019 S&P . IEEE, 2019, pp. 691–706
2019
Cited alongside, same era.
D. Dua and C. Graff, “UCI machine learning repository,” 2019. [Online]. Available: http://archive.ics.uci.edu/ml
2019
Cited alongside, same era.
E. Creager, D. Madras, J.-H. Jacobsen, M. Weis, K. Swersky, T. Pitassi, and R. Zemel, “Flexibly fair representation learning by disentanglement,” in International conference on machine learning . PMLR, 2019, pp. 1436–1445
2019
Cited alongside, same era.
L. Xu, M. Skoularidou, A. Cuesta-Infante, and K. Veeramachaneni, “Modeling tabular data using conditional gan,” Advances in Neural Information Processing Systems , vol. 32, 2019
2019
Cited alongside, same era.
2021
Later among the works it cites.
L. Song and P. Mittal, “Systematic evaluation of privacy risks of machine learning models,” in USENIX Security’21 . USENIX, 2021, pp. 2615–2632
2021
Later among the works it cites.
2021
Later among the works it cites.
W. Zhang, S. Tople, and O. Ohrimenko, “Leakage of dataset properties in multi-party machine learning,” in USENIX Security´ , 2021, pp. 2687–2704
2021
Later among the works it cites.
2022
Closest in time.
Y. Liu, R. Wen, X. He, A. Salem, Z. Zhang, M. Backes, E. D. Cristofaro, M. Fritz, and Y. Zhang, “ML-Doctor: Holistic risk assessment of inference attacks against machine learning models,” in USENIX Security’22) , 2022
2022
Closest in time.
S. Mahloujifar, E. Ghosh, and M. Chase, “Property inference from poisoning,” in S&P . IEEE, 2022, pp. 1569–1569
2022
Closest in time.
Google Brain Team, “TensorFlow,” 2015–2022. [Online]. Available: https://www.tensorflow.org/
2022
Closest in time.