Matches in SemOpenAlex for { <https://semopenalex.org/work/W4306291236> ?p ?o ?g. }
Showing items 1 to 67 of
67
with 100 items per page.
- W4306291236 abstract "Membership inference attacks (MIAs) aim to determine whether a specific sample was used to train a predictive model. Knowing this may indeed lead to a privacy breach. Most MIAs, however, make use of the model's prediction scores - the probability of each output given some input - following the intuition that the trained model tends to behave differently on its training data. We argue that this is a fallacy for many modern deep network architectures. Consequently, MIAs will miserably fail since overconfidence leads to high false-positive rates not only on known domains but also on out-of-distribution data and implicitly acts as a defense against MIAs. Specifically, using generative adversarial networks, we are able to produce a potentially infinite number of samples falsely classified as part of the training data. In other words, the threat of MIAs is overestimated, and less information is leaked than previously assumed. Moreover, there is actually a trade-off between the overconfidence of models and their susceptibility to MIAs: the more classifiers know when they do not know, making low confidence predictions, the more they reveal the training data." @default.
- W4306291236 created "2022-10-15" @default.
- W4306291236 creator A5037636074 @default.
- W4306291236 creator A5056205672 @default.
- W4306291236 creator A5060332657 @default.
- W4306291236 date "2021-11-17" @default.
- W4306291236 modified "2023-09-30" @default.
- W4306291236 title "To Trust or Not To Trust Prediction Scores for Membership Inference Attacks" @default.
- W4306291236 doi "https://doi.org/10.48550/arxiv.2111.09076" @default.
- W4306291236 hasPublicationYear "2021" @default.
- W4306291236 type Work @default.
- W4306291236 citedByCount "0" @default.
- W4306291236 crossrefType "posted-content" @default.
- W4306291236 hasAuthorship W4306291236A5037636074 @default.
- W4306291236 hasAuthorship W4306291236A5056205672 @default.
- W4306291236 hasAuthorship W4306291236A5060332657 @default.
- W4306291236 hasBestOaLocation W43062912361 @default.
- W4306291236 hasConcept C111472728 @default.
- W4306291236 hasConcept C119857082 @default.
- W4306291236 hasConcept C124101348 @default.
- W4306291236 hasConcept C132010649 @default.
- W4306291236 hasConcept C138885662 @default.
- W4306291236 hasConcept C149782125 @default.
- W4306291236 hasConcept C154945302 @default.
- W4306291236 hasConcept C15744967 @default.
- W4306291236 hasConcept C188147891 @default.
- W4306291236 hasConcept C2776214188 @default.
- W4306291236 hasConcept C2781035248 @default.
- W4306291236 hasConcept C33923547 @default.
- W4306291236 hasConcept C37736160 @default.
- W4306291236 hasConcept C38652104 @default.
- W4306291236 hasConcept C41008148 @default.
- W4306291236 hasConcept C51110983 @default.
- W4306291236 hasConcept C77805123 @default.
- W4306291236 hasConceptScore W4306291236C111472728 @default.
- W4306291236 hasConceptScore W4306291236C119857082 @default.
- W4306291236 hasConceptScore W4306291236C124101348 @default.
- W4306291236 hasConceptScore W4306291236C132010649 @default.
- W4306291236 hasConceptScore W4306291236C138885662 @default.
- W4306291236 hasConceptScore W4306291236C149782125 @default.
- W4306291236 hasConceptScore W4306291236C154945302 @default.
- W4306291236 hasConceptScore W4306291236C15744967 @default.
- W4306291236 hasConceptScore W4306291236C188147891 @default.
- W4306291236 hasConceptScore W4306291236C2776214188 @default.
- W4306291236 hasConceptScore W4306291236C2781035248 @default.
- W4306291236 hasConceptScore W4306291236C33923547 @default.
- W4306291236 hasConceptScore W4306291236C37736160 @default.
- W4306291236 hasConceptScore W4306291236C38652104 @default.
- W4306291236 hasConceptScore W4306291236C41008148 @default.
- W4306291236 hasConceptScore W4306291236C51110983 @default.
- W4306291236 hasConceptScore W4306291236C77805123 @default.
- W4306291236 hasLocation W43062912361 @default.
- W4306291236 hasOpenAccess W4306291236 @default.
- W4306291236 hasPrimaryLocation W43062912361 @default.
- W4306291236 hasRelatedWork W2511279186 @default.
- W4306291236 hasRelatedWork W2799803467 @default.
- W4306291236 hasRelatedWork W2898291644 @default.
- W4306291236 hasRelatedWork W2963058055 @default.
- W4306291236 hasRelatedWork W2974723675 @default.
- W4306291236 hasRelatedWork W3013925760 @default.
- W4306291236 hasRelatedWork W3104224589 @default.
- W4306291236 hasRelatedWork W3214185682 @default.
- W4306291236 hasRelatedWork W4280534256 @default.
- W4306291236 hasRelatedWork W4297845793 @default.
- W4306291236 isParatext "false" @default.
- W4306291236 isRetracted "false" @default.
- W4306291236 workType "article" @default.