Defenses to Membership Inference Attacks: A Survey

被引:9
|
作者
Hu, Li [1 ,2 ]
Yan, Anli [1 ]
Yan, Hongyang [1 ]
Li, Jin [1 ,2 ]
Huang, Teng [1 ]
Zhang, Yingying [1 ]
Dong, Changyu [1 ]
Yang, Chunsheng [1 ]
机构
[1] Guangzhou Univ, Inst Artificial Intelligence, Guangzhou, Peoples R China
[2] Guangzhou Univ, Guangdong Prov Key Lab Blockchain Secur, Guangzhou, Peoples R China
基金
中国国家自然科学基金;
关键词
Membership inference; privacy defense; privacy attack; Machine learning; PRIVACY;
D O I
10.1145/3620667
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Machine learning (ML) has gained widespread adoption in a variety of fields, including computer vision and natural language processing. However, ML models are vulnerable to membership inference attacks (MIAs), which can infer whether access data was used in training a target model, thus compromising the privacy of training data. This has led researchers to focus on protecting the privacy of ML. To date, although there have been extensive efforts to defend against MIAs, we still lack a comprehensive understanding of the progress made in this area, which can often impede our ability to design the most effective defense strategies. In this article, we aim to fill this critical knowledge gap by providing a systematic analysis of membership inference defense. Specifically, we classify and summarize the existing membership inference defense schemes, focusing on optimization phase and objective, basic intuition, and key technology, and we discuss possible research directions of membership inference defense in the future.
引用
收藏
页数:34
相关论文
共 50 条
  • [21] Membership Inference Attacks Against Machine Learning Models
    Shokri, Reza
    Stronati, Marco
    Song, Congzheng
    Shmatikov, Vitaly
    2017 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP), 2017, : 3 - 18
  • [22] Defending Against Membership Inference Attacks on Beacon Services
    Venkatesaramani, Rajagopal
    Wan, Zhiyu
    Malin, Bradley A.
    Vorobeychik, Yevgeniy
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2023, 26 (03)
  • [23] Membership Inference Attacks Against Semantic Segmentation Models
    Chobola, Tomas
    Usynin, Dmitrii
    Kaissis, Georgios
    PROCEEDINGS OF THE 16TH ACM WORKSHOP ON ARTIFICIAL INTELLIGENCE AND SECURITY, AISEC 2023, 2023, : 43 - 53
  • [24] Secure Aggregation Is Not Private Against Membership Inference Attacks
    Ngo, Khac-Hoang
    Ostman, Johan
    Durisi, Giuseppe
    Graell i Amat, Alexandre
    MACHINE LEARNING AND KNOWLEDGE DISCOVERY IN DATABASES-RESEARCH TRACK, PT VI, ECML PKDD 2024, 2024, 14946 : 180 - 198
  • [25] Membership inference attacks against synthetic health data
    Zhang, Ziqi
    Yan, Chao
    Malin, Bradley A.
    JOURNAL OF BIOMEDICAL INFORMATICS, 2022, 125
  • [26] MiDA: Membership inference attacks against domain adaptation
    Zhang, Yuanjie
    Zhao, Lingchen
    Wang, Qian
    ISA TRANSACTIONS, 2023, 141 : 103 - 112
  • [27] Exploration of Membership Inference Attack on Convolutional Neural Networks and Its Defenses
    Yao, Yimian
    2022 INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, COMPUTER VISION AND MACHINE LEARNING (ICICML), 2022, : 604 - 610
  • [28] Membership Inference Attacks With Token-Level Deduplication on Korean Language Models
    Oh, Myung Gyo
    Park, Leo Hyun
    Kim, Jaeuk
    Park, Jaewoo
    Kwon, Taekyoung
    IEEE ACCESS, 2023, 11 : 10207 - 10217
  • [29] TOWARDS MODEL QUANTIZATION ON THE RESILIENCE AGAINST MEMBERSHIP INFERENCE ATTACKS
    Kowalski, Charles
    Famili, Azadeh
    Lao, Yingjie
    2022 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING, ICIP, 2022, : 3646 - 3650
  • [30] A survey on blockchain systems: Attacks, defenses, and privacy preservation
    Chen, Yourong
    Chen, Hao
    Zhang, Yang
    Han, Meng
    Siddula, Madhuri
    Cai, Zhipeng
    HIGH-CONFIDENCE COMPUTING, 2022, 2 (02):