• Home
  • Search
  • Quantifying (Hyper) Parameter Leakage in Machine Learning
  • Open Access IconOpen Access
  • Cite Icon5
  • https://doi.org/10.1109/bigmm50055.2020.00041Copy DOI Icon

Quantifying (Hyper) Parameter Leakage in Machine Learning

  • Sep 1, 2020
  • Vasisht Duddu +1 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Machine Learning models, extensively used for various multimedia applications, are offered to users as a blackbox service on the Cloud on a pay-per-query basis. Such blackbox models are commercially valuable to adversaries, making them vulnerable to extraction attacks to reverse engineer the proprietary model thereby violating the model privacy and Intellectual Property. Here, the adversary first extracts the model architecture or hyperparameters through side channel leakage, followed by stealing the functionality of the target model by training the reconstructed architecture on a synthetic dataset. While the attacks proposed in literature are empirical, there is a need for a theoretical framework to measure the information leaked under such extraction attacks. To this extent, in this work, we propose a novel probabilistic framework, Airavata, to estimate the information leakage in such model extraction attacks. This framework captures the fact that extracting the exact target model is difficult due to experimental uncertainty while inferring model hyperparameters and stochastic nature of training to steal the target model functionality. Specifically, we use Bayesian Networks to capture uncertainty in estimating the target model under various extraction attacks based on the subjective notion of probability. We validate the proposed framework under different adversary assumptions commonly adopted in literature to reason about the attack efficacy. This provides a practical tool to infer actionable details about extracting blackbox models and help identify the best attack combination which maximises the knowledge extracted (or information leaked) from the target model.

Similar Papers
  • Conference Article

Binary Classification for Enhancing Explainability of Combined Black-Box and White-Box Models

  • Mar 17, 2025
  • Shintaro Tanaka +1
  • Research Article
  • Citations6

Machine Learning Models Under the Copyright Microscope: Is EU Copyright Fit for Purpose?

  • Jul 05, 2021
  • GRUR International
  • Begoña Gonzalez Otero
  • Research Article
  • Citations49

A New Benchmark on Machine Learning Methodologies for Hydrological Processes Modelling: A Comprehensive Review for Limitations and Future Research Directions

  • Dec 31, 2023
  • Knowledge-Based Engineering and Sciences
  • Zaher Mundher Yaseen
  • PDF
  • Research Article
  • Citations2

Weather-Based Prediction of Power Consumption in District Heating Network: Case Study in Finland

  • Jun 09, 2024
  • Energies
  • Aleksei Vakhnin +4
  • Dissertation
  • Citations1

Population-based Ensemble Learning with Tree Structures for Classification

  • Jan 01, 2019
  • Benjamin Evans
  • Abstract
  • Citations1

Explainable Boosting Machine for Choosing Radiation Dose-Volume Constraints on Cardio-Pulmonary Substructures Associated with Overall Survival in the NRG Oncology RTOG 0617 Clinical Trial

  • Oct 22, 2022
  • International Journal of Radiation Oncology*Biology*Physics
  • S.H Lee +8
  • Research Article
  • Citations30

Analyzing and Explaining Black-Box Models for Online Malware Detection

  • Jan 01, 2023
  • IEEE Access
  • Harikha Manthena +3
  • Research Article
  • Citations6

Machine Learning-BasedAccelerated Approaches to InferBreakdown Pressure of Several Unconventional Rock Types

  • Nov 04, 2022
  • ACS Omega
  • Zeeshan Tariq +6
  • PDF
  • Conference Article
  • Citations23

On the Explainability of Black Box Data-Driven Controllers for Power Electronic Converters

  • Oct 10, 2021
  • Subham Sahoo +2
  • PDF
  • Research Article
  • Citations40

Pavement Roughness Prediction Using Explainable and Supervised Machine Learning Technique for Long-Term Performance

  • Jun 15, 2023
  • Sustainability
  • Kelum Sandamal +3
  • Book Chapter

Generating a Rule Set for the Fiber-to-Yarn Production Process by Means of an Efficiency-based Classifier System

  • Jan 01, 2003
  • Stefan Sette +1
  • Conference Article
  • Citations3

IP reuse VLSI architecture for low complexity fast motion estimation in multimedia applications

  • Sep 05, 2000
  • L Fanucci +2
  • PDF
  • Research Article
  • Citations6

Prediction of the Bearing Capacity of Composite Grounds Made of Geogrid-Reinforced Sand over Encased Stone Columns Floating in Soft Soil Using a White-Box Machine Learning Model

  • Apr 20, 2023
  • Applied Sciences
  • Husein Ali Zeini +5
  • PDF
  • Research Article
  • Citations14

Test Input Prioritization for Machine Learning Classifiers

  • Mar 01, 2024
  • IEEE Transactions on Software Engineering
  • Xueqi Dang +5
  • Research Article
  • Citations103

Theory-Guided Machine Learning Finds Geometric Structure-Property Relationships for Chemisorption on Subsurface Alloys

  • Sep 25, 2020
  • Chem
  • Jacques A Esterhuizen +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.