Privacy-preserving Generative Framework Against Membership Inference Attacks

02/11/2022
by   Ruikang Yang, et al.
0

Artificial intelligence and machine learning have been integrated into all aspects of our lives and the privacy of personal data has attracted more and more attention. Since the generation of the model needs to extract the effective information of the training data, the model has the risk of leaking the privacy of the training data. Membership inference attacks can measure the model leakage of source data to a certain degree. In this paper, we design a privacy-preserving generative framework against membership inference attacks, through the information extraction and data generation capabilities of the generative model variational autoencoder (VAE) to generate synthetic data that meets the needs of differential privacy. Instead of adding noise to the model output or tampering with the training process of the target model, we directly process the original data. We first map the source data to the latent space through the VAE model to get the latent code, then perform noise process satisfying metric privacy on the latent code, and finally use the VAE model to reconstruct the synthetic data. Our experimental evaluation demonstrates that the machine learning model trained with newly generated synthetic data can effectively resist membership inference attacks and still maintain high utility.

READ FULL TEXT

page 6

page 7

research
11/13/2020

Synthetic Data – A Privacy Mirage

Synthetic datasets drawn from generative models have been advertised as ...
research
09/19/2019

Learning to Conceal: A Deep Learning Based Method for Preserving Privacy and Avoiding Prejudice

In this paper, we introduce a learning model able to conceals personal i...
research
02/24/2023

Membership Inference Attacks against Synthetic Data through Overfitting Detection

Data is the foundation of most science. Unfortunately, sharing data can ...
research
11/27/2020

Use the Spear as a Shield: A Novel Adversarial Example based Privacy-Preserving Technique against Membership Inference Attacks

Recently, the membership inference attack poses a serious threat to the ...
research
10/15/2021

Mitigating Membership Inference Attacks by Self-Distillation Through a Novel Ensemble Architecture

Membership inference attacks are a key measure to evaluate privacy leaka...
research
11/23/2022

Utility Assessment of Synthetic Data Generation Methods

Big data analysis poses the dual problem of privacy preservation and uti...
research
04/20/2019

Distributed generation of privacy preserving data with user customization

Distributed devices such as mobile phones can produce and store large am...

Please sign up or login with your details

Forgot password? Click here to reset