DOAJ Open Access 2021

Membership inference attacks against transfer learning for generalized model

Jinyin CHEN Wenchang SHANGGUAN Jingjing ZHANG Haibin ZHENG Yayu ZHENG +1 lainnya

Abstrak

For the problem of poor performance of exciting membership inference attack (MIA) when facing the transfer learning model that is generalized, the MIA for the transfer learning model that is generalized was first systematically studied, the anomaly detection was designed to obtain vulnerable data samples, and MIA was carried out against individual samples.Finally, the proposed method was tested on four image data sets, which shows that the proposed MIA has great attack performance.For example, on the Flowers102 classifier migrated from VGG16 (pretraining with Caltech101), the proposed MIA achieves 83.15% precision, which reveals that in the environment of transfer learning, even without access to the teacher model, the MIA for the teacher model can be achieved by visiting the student model.

Topik & Kata Kunci

Penulis (6)

J

Jinyin CHEN

W

Wenchang SHANGGUAN

J

Jingjing ZHANG

H

Haibin ZHENG

Y

Yayu ZHENG

X

Xuhong ZHANG

Format Sitasi

CHEN, J., SHANGGUAN, W., ZHANG, J., ZHENG, H., ZHENG, Y., ZHANG, X. (2021). Membership inference attacks against transfer learning for generalized model. http://www.joconline.com.cn/thesisDetails#10.11959/j.issn.1000-436x.2021209

Akses Cepat

PDF tidak tersedia langsung

Cek di sumber asli →
Lihat di Sumber
Informasi Jurnal
Tahun Terbit
2021
Sumber Database
DOAJ
Akses
Open Access ✓