• Home
  • Search
  • Broadening Differential Privacy for Deep Learning Against Model Inversion Attacks
  • Cite Icon23
  • https://doi.org/10.1109/bigdata50022.2020.9378274Copy DOI Icon

Broadening Differential Privacy for Deep Learning Against Model Inversion Attacks

  • Dec 10, 2020
  • Qiuchen Zhang +4 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Deep learning models have achieved great success in many real-world tasks such as image recognition, machine translation, and self-driving cars. A large amount of data are needed to train a model, and in many cases, the training data are private. Publishing or sharing a deep learning model trained on private datasets could pose privacy concerns. We study the model inversion attacks against deep learning models, which attempt to reconstruct the features of training data corresponding to a given class given access to the model. While deep learning with differential privacy is state-of-the-art for training privacy-preserving models, whether they can provide meaningful protection against model inversion attacks remains an open question. In this paper, we first improve the existing model inversion attacks (MIA) to successfully reconstruct training images from neural network based image recognition models. Then, we demonstrate that deep learning with the standard record-level differential privacy does not provide quantifiable protection against MIA. Subsequently, we propose class-level and subclass-level differential privacy and develop algorithms to provide a quantifiable privacy guarantee against MIA. Experiments on real datasets demonstrate that our proposed privacy notions and mechanisms can effectively defend against MIA while maintaining model accuracy.

Similar Papers
  • Conference Article
  • Citations589

Protecting Intellectual Property of Deep Neural Networks with Watermarking

  • May 29, 2018
  • Jialong Zhang +6
  • Research Article

Unknown-Aware Bilateral Dependency Optimization for Defending Against Model Inversion Attacks.

  • Aug 01, 2025
  • IEEE transactions on pattern analysis and machine intelligence
  • Xiong Peng +6
  • Research Article

Distributional Black-Box Model Inversion Attack With Multi-Agent Reinforcement Learning

  • Jan 01, 2025
  • IEEE Transactions on Information Forensics and Security
  • Huan Bao +4
  • Conference Article

DLBricks: Composable Benchmark Generation to Reduce Deep Learning Benchmarking Effort on CPUs

  • Apr 20, 2020
  • Cheng Li +3
  • PDF
  • Research Article
  • Citations24

Cross-institutional evaluation of deep learning and radiomics models in predicting microvascular invasion in hepatocellular carcinoma: validity, robustness, and ultrasound modality efficacy comparison

  • Oct 22, 2024
  • Cancer Imaging
  • Weibin Zhang +7
  • PDF
  • Research Article
  • Citations19

A hybrid CNN and ensemble model for COVID-19 lung infection detection on chest CT scans.

  • Mar 09, 2023
  • PLOS ONE
  • Ahmed A Akl +3
  • Research Article
  • Citations1

Overview of deep learning and large language models in machine translation: a special perspective on the Arabic language

  • Jun 23, 2025
  • Journal of Electrical Systems and Information Technology
  • Sanaa Abou Elhamayed +1
  • PDF
  • Supplementary Content
  • Citations16

Analysis of Application Examples of Differential Privacy in Deep Learning

  • Jan 01, 2021
  • Computational Intelligence and Neuroscience
  • Zhidong Shen +1
  • Research Article
  • Citations9

Evaluating deep transfer learning for whole-brain cognitive decoding

  • Jul 13, 2023
  • Journal of the Franklin Institute
  • Armin W Thomas +3
  • PDF
  • Research Article
  • Citations2

Enhanced Sequence-to-Sequence Deep Transfer Learning for Day-Ahead Electricity Load Forecasting

  • May 20, 2024
  • Electronics
  • Vasileios Laitsos +4
  • Research Article
  • Citations58

Integrating deep learning models and multiparametric programming

  • Feb 28, 2020
  • Computers & Chemical Engineering
  • Justin Katz +3
  • Research Article
  • Citations9

Multimodal ultrasound deep learning to detect fibrosis in early chronic kidney disease

  • Oct 22, 2024
  • Renal Failure
  • Xiachuan Qin +4
  • Research Article
  • Citations11

Comparison of Intratumoral and Peritumoral Deep Learning, Radiomics, and Fusion Models for Predicting KRAS Gene Mutations in Rectal Cancer Based on Endorectal Ultrasound Imaging.

  • Dec 17, 2024
  • Annals of surgical oncology
  • Yajiao Gan +7
  • Research Article
  • Citations45

Deep Learning vs Traditional Breast Cancer Risk Models to Support Risk-Based Mammography Screening.

  • Jul 25, 2022
  • JNCI: Journal of the National Cancer Institute
  • Constance D Lehman +6
  • Research Article
  • Citations7

Sentiment Analysis of Self Driving Car Dataset: A comparative study of Deep Learning approaches

  • Jan 01, 2024
  • Procedia Computer Science
  • Devshri Pandya +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.