Despite machine learning models being widely used today, the relationship between a model and its training dataset is not well understood. We explore correlation inference attacks, whether and when a model leaks information about the correlations between the input variables of its training dataset. We first propose a model-less attack, where an adversary exploits the spherical parameterization of correlation matrices alone to make an informed guess. Second, we propose a model-based attack, where an adversary exploits black-box model access to infer the correlations using minimal and realistic assumptions. Third, we evaluate our attacks against logistic regression and multilayer perceptron models on three tabular datasets and show the models to leak correlations. We lastly show how extracted correlations can be used as building blocks for attribute inference attacks and enable weaker adversaries. Our results raise fundamental questions on what a model does and should remember from its training set.

Download full-text PDF

Source
http://dx.doi.org/10.1126/sciadv.adj9260DOI Listing

Publication Analysis

Top Keywords

inference attacks
12
correlation inference
8
machine learning
8
learning models
8
training dataset
8
attack adversary
8
adversary exploits
8
attacks
4
attacks machine
4
models
4

Similar Publications

In this study, the zirconium-based metal organic framework (Zr-MOF) was applied as the adsorbent for phosphorus (P) pollution in water. Then the phosphate-adsorbed metal organic frameworks (MOFs) were used as a recycled raw material and calcined to obtain P-doped MOFs-derived carbon material (ZrP@Zr-BTC). Next, the ZrP@Zr-BTC was used for peroxymonosulfate (PMS) activation for the ceftriaxone sodium degradation.

View Article and Find Full Text PDF

Characterization of Hazelnut Trees in Open Field Through High-Resolution UAV-Based Imagery and Vegetation Indices.

Sensors (Basel)

January 2025

Department of Control and Computer Engineering (DAUIN), Politecnico di Torino, Corso Duca degli Abruzzi, 24, 10129 Torino, Italy.

The increasing demand for hazelnut kernels is favoring an upsurge in hazelnut cultivation worldwide, but ongoing climate change threatens this crop, affecting yield decreases and subject to uncontrolled pathogen and parasite attacks. Technical advances in precision agriculture are expected to support farmers to more efficiently control the physio-pathological status of crops. Here, we report a straightforward approach to monitoring hazelnut trees in an open field, using aerial multispectral pictures taken by drones.

View Article and Find Full Text PDF

Objective: To evaluate the relationship between infarct pattern, inferred stroke mechanism and risk of recurrence in patients with ischaemic stroke. The question is clinically relevant to optimise secondary stroke prevention investigations and treatment.

Design: We conducted a retrospective analysis of the dabigatran treatment of acute stroke II (DATAS II) trial (ClinicalTrials.

View Article and Find Full Text PDF

Background: Diabetes mellitus (DM) can cause severe complications, including diabetic foot ulcers (DFU). There is a significant gap in understanding the single-cell ecological atlas of DM and DFU tissues.

Methods: Single-cell RNA sequencing data were used to create a detailed single-cell ecological landscape of DM and DFU.

View Article and Find Full Text PDF
Article Synopsis
  • Big data analytics is revolutionizing clinical decision-making by utilizing vast healthcare data to create evidence-based solutions, but it raises significant privacy and security concerns, especially regarding sensitive medical images stored in the cloud.
  • The proposed project aims to enhance patient care through a machine learning-based anomaly detection system for medical images, addressing current limitations in existing detection methods that struggle with resource consumption and real-time performance.
  • The research focuses on improving data processing techniques, including feature selection and handling missing values, employing advanced algorithms like recursive feature elimination and dynamic principal component analysis for more effective anomaly detection.
View Article and Find Full Text PDF

Want AI Summaries of new PubMed Abstracts delivered to your In-box?

Enter search terms and have AI summaries delivered each week - change queries or unsubscribe any time!