arrow
Return

Protecting Sensitive Attributes by Adversarial Training Through Class-Overlapping Techniques

delete2023-01-01
delete4
PRE
AI
L
Lin, Tsung-Hsien
Y
Ying-Shuo Lee
F
Fu‐Chieh Chang
J
J. Morris Chang
P
Pei-Yuan Wu *
DOI:10.1109/TIFS.2023.3236180delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
In recent years, machine learning as a service (MLaaS) has brought considerable convenience to our daily lives. However, these services raise the issue of leaking users' sensitive attributes, such as race, when provided through the cloud. The present work overcomes this issue by proposing an innovative privacy-preserving approach called privacy-preserving class overlap (PPCO), which incorporates both a Wasserstein generative adversarial network and the idea of class overlapping to obfuscate data for better resilience against the leakage of attribute-inference attacks(i.e., malicious inference on users' sensitive attributes). Experiments show that the proposed method can be employed to enhance current state-of-the-art works and achieve superior privacy-utility trade-off. Furthermore, the proposed method is shown to be less susceptible to the influence of imbalanced classes in training data. Finally, we provide a theoretical analysis of the performance of our proposed method to give a flavour of the gap between theoretical and empirical performances.
Keywords:
Data privacy
Privacy
Training
Machine learning
Feature extraction
Cloud computing
Threat modeling
Privacy-preserving machine learning
adversarial training
generative adversarial network
class overlap
machine learning as a service
Wasserstein distance
data obfuscation

Journal

IEEE Transactions on Information Forensics and Security cover
IEEE Transactions on Information Forensics and Security
IF:
8
Papers:
5.2K
Citations:
2.3W

Organization

N
National Taiwan University
Scholars:
4.7W
Papers: 4.2W
Citations: 3.6W
U
university of south florida
Scholars:
1.5W
Papers: 1.2W
Citations: 9