|
|
detection of membership inference attacks on gan models
|
|
|
|
|
نویسنده
|
ekramifard ala ,amintoosi haleh ,hosseini seno amin
|
منبع
|
the isc international journal of information security - 2025 - دوره : 17 - شماره : 1 - صفحه:43 -57
|
چکیده
|
In the realm of machine learning, generative adversarial networks (gans) have revolutionized the generation of synthetic data, closely mirroring the distribution of real datasets. this paper delves into the privacy concerns associated with gans, particularly focusing on membership inference attacks (mias), which aim to determine if a specific record was used in training a model. such attacks pose significant privacy risks, especially when sensitive data is involved. to combat this, we propose a novel detector model designed to identify and thwart mias within gans. our model, which operates as an additional layer of protection for machine learning as a service (mlaas) providers, leverages outputs from both the discriminator and generator to ascertain the membership status of data samples. we introduce two variants of the detector model—supervised and unsupervised—based on the availability of information from the discriminator. the supervised detector employs labeled data for training, while the unsupervised detector uses anomaly detection techniques. our experimental evaluation spans various gan architectures and datasets, ensuring the robustness and generalizability of our approach. the paper also analyzes the impact of dataset size on the detector’s effectiveness. by integrating our detector, mlaas providers can enhance privacy safeguards, striking a balance between model utility and data protection.
|
کلیدواژه
|
machine learning ,privacy ,generative adversarial network ,membership inference attacks
|
آدرس
|
ferdowsi university of mashhad, faculty of engineering, computer engineering department, iran, ferdowsi university of mashhad, faculty of engineering, computer engineering department, iran, ferdowsi university of mashhad, faculty of engineering, computer engineering department, iran
|
پست الکترونیکی
|
hosseini@um.ac.ir
|
|
|
|
|
|
|
|
|
|
|
|
Authors
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|