paper-with-me

Papers

Class Attribute Inference Attacks: Inferring Sensitive Class Information by Diffusion-Based Attribute Manipulations

2023-03-16 · Lukas Struppek, Dominik Hintersdorf, Felix Friedrich, Manuel Brack, Patrick Schramowski, Kristian Kersting

Neural network-based image classifiers are powerful tools for computer vision tasks, but they inadvertently reveal sensitive attribute information about their classes, raising concerns about their privacy. To investigate this privacy leakage, we introduce the first Class Attribute Inference Attack (CAIA), which leverages recent advances in text-to-image synthesis to infer sensitive attributes of individual classes in a black-box setting, while remaining competitive with related white-box attacks. Our extensive experiments in the face recognition domain show that CAIA can accurately infer undisclosed sensitive attributes, such as an individual's hair color, gender, and racial appearance, which are not part of the training labels. Interestingly, we demonstrate that adversarial robust models are even more vulnerable to such privacy leakage than standard models, indicating that a trade-off between robustness and privacy exists.

📄 PDF Abstract BibTeX arXiv:2303.09289

Code (1)

lukasstruppek/class_attribute_inference_attacks 공식 구현 pytorch

Tasks

AttributeFace RecognitionImage GenerationInference Attack

Similar Papers 제목 키워드 기반

Black-box Model Inversion Attribute Inference Attacks on Classification Models

2020-12-07 · Shagufta Mehnaz, Ninghui Li, Elisa Bertino

Increasing use of ML technologies in privacy-sensitive domains such as medical diagnoses, lifestyle predictions, and business decisions highlights the need to better understand if these ML technologies are introducing le…

AttributeClassificationGeneral Classification

Dikaios: Privacy Auditing of Algorithmic Fairness via Attribute Inference Attacks

2022-02-04 · Jan Aalmoes, Vasisht Duddu, Antoine Boutet

Machine learning (ML) models have been deployed for high-stakes applications. Due to class imbalance in the sensitive attribute observed in the datasets, ML models are unfair on minority subgroups identified by a sensiti…

AttributeFairnessInference Attack

Taipan: A Query-free Transfer-based Multiple Sensitive Attribute Inference Attack Solely from Publicly Released Graphs

2026-02-06 · Ying Song, Balaji Palanisamy arxiv

Graph-structured data underpin a wide spectrum of modern applications. However, complex graph topologies and homophilic patterns can facilitate attribute inference attacks (AIAs) by enabling sensitive information leakage…

On the (In)Feasibility of Attribute Inference Attacks on Machine Learning Models

2021-03-12 · Benjamin Zi Hao Zhao, Aviral Agrawal, Catisha Coburn, Hassan Jameel Asghar 외

With an increase in low-cost machine learning APIs, advanced machine learning models may be trained on private datasets and monetized by providing them as a service. However, privacy researchers have demonstrated that th…

AttributeBIG-bench Machine LearningInference Attack

IDT: Dual-Task Adversarial Attacks for Privacy Protection

2024-06-28 · Pedro Faustini, Shakila Mahjabin Tonni, Annabelle McIver, Qiongkai Xu 외

Natural language processing (NLP) models may leak private information in different ways, including membership inference, reconstruction or attribute inference attacks. Sensitive information may not be explicit in the tex…

Adversarial AttackAttribute