Please use this identifier to cite or link to this item: https://doi.org/10.1145/3320269.3384731
DC FieldValue
dc.titleMembership Encoding for Deep Learning
dc.contributor.authorCongzheng, Song
dc.contributor.authorShokri Reza
dc.date.accessioned2020-09-21T01:27:37Z
dc.date.available2020-09-21T01:27:37Z
dc.date.issued2020-10-07
dc.identifier.citationCongzheng, Song, Shokri Reza (2020-10-07). Membership Encoding for Deep Learning. ACM ASIA Conference on Computer and Communications Security (ASIACCS). ScholarBank@NUS Repository. https://doi.org/10.1145/3320269.3384731
dc.identifier.isbn9781450367509
dc.identifier.urihttps://scholarbank.nus.edu.sg/handle/10635/176381
dc.description.abstractMachine learning as a service (MLaaS), and algorithm marketplaces are on a rise. Data holders can easily train complex models on their data using third party provided learning codes. Training accurate ML models requires massive labeled data and advanced learning algorithms. The resulting models are considered as intellectual property of the model owners and their copyright should be protected. Also, MLaaS needs to be trusted not to embed secret information about the training data into the model, such that it could be later retrieved when the model is deployed. In this paper, we present membership encoding for training deep neural networks and encoding the membership information, i.e. whether a data point is used for training, for a subset of training data. Membership encoding has several applications in different scenarios, including robust watermarking for model copyright protection, and also the risk analysis of stealthy data embedding privacy attacks. Our encoding algorithm can determine the membership of significantly redacted data points, and is also robust to model compression and fine-tuning. It also enables encoding a significant fraction of the training set, with negligible drop in the model’s prediction accuracy.
dc.publisherIEEE
dc.sourceElements
dc.subjectMachine learning
dc.subjectMembership inference
dc.subjectCopyright protection
dc.typeConference Paper
dc.date.updated2020-09-19T11:27:06Z
dc.contributor.departmentDEPARTMENT OF COMPUTER SCIENCE
dc.description.doi10.1145/3320269.3384731
dc.description.sourcetitleACM ASIA Conference on Computer and Communications Security (ASIACCS)
dc.published.statePublished
Appears in Collections:Staff Publications
Elements

Show simple item record
Files in This Item:
File Description SizeFormatAccess SettingsVersion 
1909.12982.pdfAccepted version1.26 MBAdobe PDF

OPEN

Post-printView/Download

Google ScholarTM

Check

Altmetric


Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.