Privacy Attack Methods
Invert model to reconstruct data.
Membership Inference
Determine if data was in training.
Model Extraction
Steal model functionality.
Defenses
Regularization. Differential privacy. Dropout.
Key Takeaways
- Membership inference
- Model extraction
- Privacy defenses