paper-with-me

홈 › Papers

Spectrum-Aware Bounds on Invertibility for Privacy-Enhancing Instance Encoding

2026-08-24 · Seokjin Hwang, Yuting, Li, Kiwan Maeng arxiv

Instance encoding is a popular empirical technique for privacy enhancement when sharing data to an untrusted server. It transforms sensitive data through an encoding process before sharing, with the hope that the encoding process retains utility but makes it hard to reconstruct the original data. However, most work offers no theoretical guarantee that the encoding process is actually irreversible. A recent work derived a mean-squared error (MSE) bound limiting any adversary's reconstruction accuracy, offering one of the first theoretical results in this domain. This bound, however, has three critical limitations: it is often too loose, only works with randomized encoders (excluding many deterministic encoders practitioners use), and only bounds MSE. We introduce a family of new bounds that (1) are tighter, (2) applicable even to fully deterministic encoders, and (3) can extend beyond MSE to other norm-based similarity metrics, by properly accounting for the encoder's spectral structure. We evaluate our bounds across a range of encoders, datasets, and attacks, showing they hold consistently and improve upon the existing bound.

📄 PDF Abstract BibTeX arXiv:2608.23382

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Bounding the Invertibility of Privacy-preserving Instance Encoding using Fisher Information

2023-05-06 · NeurIPS 2023 11

Privacy-preserving instance encoding aims to encode raw data as feature vectors without revealing their privacy-sensitive information. When designed properly, these encodings can be used for downstream ML applications su…

Privacy Preserving

Enhancing Image Privacy in Semantic Communication over Wiretap Channels leveraging Differential Privacy

2024-05-15 · Weixuan Chen, Shunpu Tang, Qianqian Yang

Semantic communication (SemCom) enhances transmission efficiency by sending only task-relevant information compared to traditional methods. However, transmitting semantic-rich data over insecure or public channels poses …

Image ReconstructionSemantic Communication

Production Function Estimation without Invertibility: Imperfectly Competitive Environments and Demand Shocks

2025-06-16 · Ulrich Doraszelski, Lixiong Li

We advance the proxy variable approach to production function estimation. We show that the invertibility assumption at its heart is testable. We characterize what goes wrong if invertibility fails and what can still be d…

Reversing Deep Face Embeddings with Probable Privacy Protection

2023-10-04 · Daile Osorio-Roig, Paul A. Gerlitz, Christian Rathgeb, Christoph Busch

Generally, privacy-enhancing face recognition systems are designed to offer permanent protection of face embeddings. Recently, so-called soft-biometric privacy-enhancement approaches have been introduced with the aim of …

Face RecognitionImage Reconstruction

Feasible Invertibility Conditions for Maximum Likelihood Estimation for Observation-Driven Models

2016-10-10

Invertibility conditions for observation-driven time series models often fail to be guaranteed in empirical applications. As a result, the asymptotic theory of maximum likelihood and quasi-maximum likelihood estimators m…

Time SeriesTime Series Analysis