B. Jayaraman and D. Evans, “Evaluating differentially private machine learning in practice,” in Proc. of USENIX Security 2019 . USENIX Association, 2019, pp. 1895–1912
1912
Earlier work this paper cites.
N. Carlini, S. Chien, M. Nasr, S. Song, A. Terzis, and F. Tramèr, “Membership inference attacks from first principles,” in Proc. of IEEE S&P 2022 . IEEE, 2022, pp. 1897–1914
1914
Earlier work this paper cites.
Z. Li, Y. Liu, X. He, N. Yu, M. Backes, and Y. Zhang, “Auditing membership leakages of multi-exit networks,” in Proc. of CCS 2022 . ACM, 2022, pp. 1917–1931
1931
Earlier work this paper cites.
C. Dwork, “Differential privacy,” in Proc. of ICALP , ser. LNCS, vol. 4052. Springer, 2006, pp. 1–12
2006
Earlier work this paper cites.
A. Krizhevsky, G. Hinton et al. , “Learning multiple layers of features from tiny images,” 2009
2009
Earlier work this paper cites.
Z. Liu, P. Luo, X. Wang, and X. Tang, “Deep learning face attributes in the wild,” CoRR , vol. abs/1411.7766, 2014
Original
2014
Earlier work this paper cites.
J. Sohl-Dickstein, E. Weiss, N. Maheswaranathan, and S. Ganguli, “Deep unsupervised learning using nonequilibrium thermodynamics,” in Proc. of ICML 2015 , ser. PMLR, vol. 37. PMLR, 2015, pp. 2256–2265
2015
Earlier work this paper cites.
M. Abadi, A. Chu, I. Goodfellow, H. B. McMahan, I. Mironov, K. Talwar, and L. Zhang, “Deep learning with differential privacy,” in Proceedings of the 2016 ACM SIGSAC conference on computer and communications security , 2016, pp. 308–318
2016
Earlier work this paper cites.
A. Radford, L. Metz, and S. Chintala, “Unsupervised representation learning with deep convolutional generative adversarial networks,” in 4th International Conference on Learning Representations, ICLR 2016, San Juan, Puerto Rico, May 2-4, 2016, Conference Track Proceedings , Y. Bengio and Y. LeCun, Eds., 2016
2016
Earlier work this paper cites.
E. Choi, S. Biswal, B. Malin, J. Duke, W. F. Stewart, and J. Sun, “Generating multi-label discrete patient records using generative adversarial networks,” in Proc. of MLHC 2017 , ser. PMLR, vol. 68. PMLR, 2017, pp. 286–305
2017
Earlier work this paper cites.
R. Shokri, M. Stronati, C. Song, and V. Shmatikov, “Membership inference attacks against machine learning models,” in Proc. of IEEE S&P 2018 . IEEE Computer Society, 2017, pp. 3–18
2017
Earlier work this paper cites.
R. Shokri, M. Stronati, C. Song, and V. Shmatikov, “Membership inference attacks against machine learning models,” in 2017 IEEE symposium on security and privacy (SP) . IEEE, 2017, pp. 3–18
2017
Earlier work this paper cites.
M. Heusel, H. Ramsauer, T. Unterthiner, B. Nessler, G. Klambauer, and S. Hochreiter, “Gans trained by a two time-scale update rule converge to a nash equilibrium,” CoRR , vol. abs/1706.08500, 2017
Original
2017
Earlier work this paper cites.
S. Hidano, T. Murakami, S. Katsumata, S. Kiyomoto, and G. Hnnaoka, “Model inversion attacks for online prediction systems: Without knowledge of non-sensitive attributes,” IEICE Transactions on Information and Systems , vol. E101.D, no. 11, pp. 2665–2676, 2018
2018
Earlier work this paper cites.