Defenses to Membership Inference Attacks: A Survey

被引:9
|
作者
Hu, Li [1 ,2 ]
Yan, Anli [1 ]
Yan, Hongyang [1 ]
Li, Jin [1 ,2 ]
Huang, Teng [1 ]
Zhang, Yingying [1 ]
Dong, Changyu [1 ]
Yang, Chunsheng [1 ]
机构
[1] Guangzhou Univ, Inst Artificial Intelligence, Guangzhou, Peoples R China
[2] Guangzhou Univ, Guangdong Prov Key Lab Blockchain Secur, Guangzhou, Peoples R China
基金
中国国家自然科学基金;
关键词
Membership inference; privacy defense; privacy attack; Machine learning; PRIVACY;
D O I
10.1145/3620667
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Machine learning (ML) has gained widespread adoption in a variety of fields, including computer vision and natural language processing. However, ML models are vulnerable to membership inference attacks (MIAs), which can infer whether access data was used in training a target model, thus compromising the privacy of training data. This has led researchers to focus on protecting the privacy of ML. To date, although there have been extensive efforts to defend against MIAs, we still lack a comprehensive understanding of the progress made in this area, which can often impede our ability to design the most effective defense strategies. In this article, we aim to fill this critical knowledge gap by providing a systematic analysis of membership inference defense. Specifically, we classify and summarize the existing membership inference defense schemes, focusing on optimization phase and objective, basic intuition, and key technology, and we discuss possible research directions of membership inference defense in the future.
引用
收藏
页数:34
相关论文
共 50 条
  • [1] Membership Inference Attacks and Defenses in Classification Models
    Li, Jiacheng
    Li, Ninghui
    Ribeiro, Bruno
    PROCEEDINGS OF THE ELEVENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY '21), 2021, : 5 - 16
  • [2] Attribute-Based Membership Inference Attacks and Defenses on GANs
    Sun, Hui
    Zhu, Tianqing
    Li, Jie
    Ji, Shoulin
    Zhou, Wanlei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 2376 - 2393
  • [3] Membership Inference Attacks on Machine Learning: A Survey
    Hu, Hongsheng
    Salcic, Zoran
    Sun, Lichao
    Dobbie, Gillian
    Yu, Philip S.
    Zhang, Xuyun
    ACM COMPUTING SURVEYS, 2022, 54 (11S)
  • [4] Label-Only Membership Inference Attacks and Defenses in Semantic Segmentation Models
    Zhang, Guangsheng
    Liu, Bo
    Zhu, Tianqing
    Ding, Ming
    Zhou, Wanlei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) : 1435 - 1449
  • [5] Demystifying Membership Inference Attacks in Machine Learning as a Service
    Truex, Stacey
    Liu, Ling
    Gursoy, Mehmet Emre
    Yu, Lei
    Wei, Wenqi
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2021, 14 (06) : 2073 - 2089
  • [6] Membership Inference Attacks: Analysis and Mitigation
    Shuvo, Md Shamimur Rahman
    Alhadidi, Dima
    2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 1411 - 1420
  • [7] Detection of Membership Inference Attacks on GAN Models
    Ekramifard, Ala
    Amintoosi, Haleh
    Seno, Seyed Amin Hosseini
    ISECURE-ISC INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2025, 17 (01): : 43 - 57
  • [8] Survey on Privacy Attacks and Defenses in Machine Learning
    Liu R.-X.
    Chen H.
    Guo R.-Y.
    Zhao D.
    Liang W.-J.
    Li C.-P.
    Chen, Hong (chong@ruc.edu.cn), 1600, Chinese Academy of Sciences (31): : 866 - 892
  • [9] Reducing Model Memorization to Mitigate Membership Inference Attacks
    Sheikhjaberi, Mehrdad
    Alhadidi, Dima
    2023 IEEE 22ND INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, BIGDATASE, CSE, EUC, ISCI 2023, 2024, : 79 - 88
  • [10] A survey on privacy inference attacks and defenses in cloud-based Deep Neural Network
    Zhang, Xiaoyu
    Chen, Chao
    Xie, Yi
    Chen, Xiaofeng
    Zhang, Jun
    Xiang, Yang
    COMPUTER STANDARDS & INTERFACES, 2023, 83