Code-Poisoning Property Inference Attacks
代码中毒属性推理攻击
机构 * School of Computer Science and Technology, Beijing Institute of Technology(计算机科学与技术学院,北京理工大学) ; School of Computer Science and Engineering, Northeastern University(计算机科学与工程学院,东北大学)
AI总结 研究针对机器学习模型训练数据隐私泄露问题,提出代码中毒属性推理攻击(CPPIA),克服现有工作局限。通过恶意代码提供者使数据持有者下载中毒代码训练模型,对手借此嵌入属性查询模型泄露隐私,该方法攻击准确率高、计算轻量,评估证明其通用性和有效性。