Defenses to Membership Inference Attacks: A Survey

被引:9
|
作者
Hu, Li [1 ,2 ]
Yan, Anli [1 ]
Yan, Hongyang [1 ]
Li, Jin [1 ,2 ]
Huang, Teng [1 ]
Zhang, Yingying [1 ]
Dong, Changyu [1 ]
Yang, Chunsheng [1 ]
机构
[1] Guangzhou Univ, Inst Artificial Intelligence, Guangzhou, Peoples R China
[2] Guangzhou Univ, Guangdong Prov Key Lab Blockchain Secur, Guangzhou, Peoples R China
基金
中国国家自然科学基金;
关键词
Membership inference; privacy defense; privacy attack; Machine learning; PRIVACY;
D O I
10.1145/3620667
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Machine learning (ML) has gained widespread adoption in a variety of fields, including computer vision and natural language processing. However, ML models are vulnerable to membership inference attacks (MIAs), which can infer whether access data was used in training a target model, thus compromising the privacy of training data. This has led researchers to focus on protecting the privacy of ML. To date, although there have been extensive efforts to defend against MIAs, we still lack a comprehensive understanding of the progress made in this area, which can often impede our ability to design the most effective defense strategies. In this article, we aim to fill this critical knowledge gap by providing a systematic analysis of membership inference defense. Specifically, we classify and summarize the existing membership inference defense schemes, focusing on optimization phase and objective, basic intuition, and key technology, and we discuss possible research directions of membership inference defense in the future.
引用
收藏
页数:34
相关论文
共 50 条
  • [1] Membership Inference Attacks and Defenses in Federated Learning: A Survey
    Bai, Li
    Hu, Haibo
    Ye, Qingqing
    Li, Haoyang
    Wang, Leixia
    Xu, Jianliang
    ACM COMPUTING SURVEYS, 2025, 57 (04)
  • [2] Membership Inference Attacks and Defenses in Classification Models
    Li, Jiacheng
    Li, Ninghui
    Ribeiro, Bruno
    PROCEEDINGS OF THE ELEVENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY '21), 2021, : 5 - 16
  • [3] Membership Inference Attacks and Defenses in Neural Network Pruning
    Yuan, Xiaoyong
    Zhang, Lan
    PROCEEDINGS OF THE 31ST USENIX SECURITY SYMPOSIUM, 2022, : 4561 - 4578
  • [4] Attribute-Based Membership Inference Attacks and Defenses on GANs
    Sun, Hui
    Zhu, Tianqing
    Li, Jie
    Ji, Shoulin
    Zhou, Wanlei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 2376 - 2393
  • [5] Membership Inference Attacks on Machine Learning: A Survey
    Hu, Hongsheng
    Salcic, Zoran
    Sun, Lichao
    Dobbie, Gillian
    Yu, Philip S.
    Zhang, Xuyun
    ACM COMPUTING SURVEYS, 2022, 54 (11S)
  • [6] A Survey on Membership Inference Attacks Against Machine Learning
    Bai, Yang
    Chen, Ting
    Fan, Mingyu
    International Journal of Network Security, 2021, 23 (04) : 685 - 697
  • [7] Label-Only Membership Inference Attacks and Defenses in Semantic Segmentation Models
    Zhang, Guangsheng
    Liu, Bo
    Zhu, Tianqing
    Ding, Ming
    Zhou, Wanlei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) : 1435 - 1449
  • [8] On the Difficulty of Membership Inference Attacks
    Rezaei, Shahbaz
    Liu, Xin
    2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021, 2021, : 7888 - 7896
  • [9] Source Inference Attacks: Beyond Membership Inference Attacks in Federated Learning
    Hu, Hongsheng
    Zhang, Xuyun
    Salcic, Zoran
    Sun, Lichao
    Choo, Kim-Kwang Raymond
    Dobbie, Gillian
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 3012 - 3029
  • [10] ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models
    Salem, Ahmed
    Zhang, Yang
    Humbert, Mathias
    Berrang, Pascal
    Fritz, Mario
    Backes, Michael
    26TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2019), 2019,