paper-with-me

홈 › Papers

Reminiscence Attack on Residuals: Exploiting Approximate Machine Unlearning for Privacy

2025-07-28 · Yaxin Xiao, Qingqing Ye, Li Hu, Huadi Zheng, Haibo Hu, Zi Liang, Haoyang Li, Yijie Jiao arxiv

Machine unlearning enables the removal of specific data from ML models to uphold the right to be forgotten. While approximate unlearning algorithms offer efficient alternatives to full retraining, this work reveals that they fail to adequately protect the privacy of unlearned data. In particular, these algorithms introduce implicit residuals which facilitate privacy attacks targeting at unlearned data. We observe that these residuals persist regardless of model architectures, parameters, and unlearning algorithms, exposing a new attack surface beyond conventional output-based leakage. Based on this insight, we propose the Reminiscence Attack (ReA), which amplifies the correlation between residuals and membership privacy through targeted fine-tuning processes. ReA achieves up to 1.90x and 1.12x higher accuracy than prior attacks when inferring class-wise and sample-wise membership, respectively. To mitigate such residual-induced privacy risk, we develop a dual-phase approximate unlearning framework that first eliminates deep-layer unlearned data traces and then enforces convergence stability to prevent models from "pseudo-convergence", where their outputs are similar to retrained models but still preserve unlearned residuals. Our framework works for both classification and generation tasks. Experimental evaluations confirm that our approach maintains high unlearning efficacy, while reducing the adaptive privacy attack accuracy to nearly random guess, at the computational cost of 2-12% of full retraining from scratch.

📄 PDF Abstract BibTeX arXiv:2507.20573

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Automatic Reminiscence Therapy for Dementia

2019-10-25 · Mariona Caros, Maite Garolera, Petia Radeva, Xavier Giro-i-Nieto

With people living longer than ever, the number of cases with dementia such as Alzheimer's disease increases steadily. It affects more than 46 million people worldwide, and it is estimated that in 2050 more than 100 mill…

Crowdsourcing for Reminiscence Chatbot Design

2018-05-31 · Svetlana Nikitina, Florian Daniel, Marcos Baez, Fabio Casati

In this work-in-progress paper we discuss the challenges in identifying effective and scalable crowd-based strategies for designing content, conversation logic, and meaningful metrics for a reminiscence chatbot targeted …

Chatbot

Exploring the Design of Generative AI in Supporting Music-based Reminiscence for Older Adults

2024-03-03 · Yucheng Jin, Wanling Cai, Li Chen, Yizhe Zhang 외

Music-based reminiscence has the potential to positively impact the psychological well-being of older adults. However, the aging process and physiological changes, such as memory decline and limited verbal communication,…

Cyber-Attack Detection in Socio-Technical Transportation Systems Exploiting Redundancies Between Physical and Social Data

2021-03-21 · Tanushree Roy, Sara Sattarzadeh, Satadru Dey

Cyber-physical-social connectivity is a key element in Intelligent Transportation Systems (ITSs) due to the ever-increasing interaction between human users and technological systems. Such connectivity translates the ITSs…

Cyber Attack Detection

IRC-Bench: Recognizing Entities from Contextual Cues in First-Person Reminiscences

2026-05-07 · Yehudit Aperstein, Eden Moran, Alexander Apartsin arxiv

When people recount personal memories, they often refer to people, places, and events indirectly, relying on con-textual cues rather than explicit names. Such implicit references are central to reminiscence narratives: f…

Coreference ResolutionEntity Linking