Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to main content

Showing 1–6 of 6 results for author: Bernau, D

Searching in archive cs. Search in all archives.
.
  1. arXiv:2204.07877  [pdf, other

    cs.CR cs.LG

    Assessing Differentially Private Variational Autoencoders under Membership Inference

    Authors: Daniel Bernau, Jonas Robl, Florian Kerschbaum

    Abstract: We present an approach to quantify and compare the privacy-accuracy trade-off for differentially private Variational Autoencoders. Our work complements previous work in two aspects. First, we evaluate the the strong reconstruction MI attack against Variational Autoencoders under differential privacy. Second, we address the data scientist's challenge of setting privacy parameter epsilon, which stee… ▽ More

    Submitted 16 April, 2022; originally announced April 2022.

  2. arXiv:2103.02913  [pdf, other

    cs.CR cs.LG

    Quantifying identifiability to choose and audit $ε$ in differentially private deep learning

    Authors: Daniel Bernau, Günther Eibl, Philip W. Grassal, Hannah Keller, Florian Kerschbaum

    Abstract: Differential privacy allows bounding the influence that training data records have on a machine learning model. To use differential privacy in machine learning, data scientists must choose privacy parameters $(ε,δ)$. Choosing meaningful privacy parameters is key, since models trained with weak privacy parameters might result in excessive privacy leakage, while strong privacy parameters might overl… ▽ More

    Submitted 20 July, 2021; v1 submitted 4 March, 2021; originally announced March 2021.

  3. arXiv:2103.02895  [pdf, other

    cs.CR cs.CL cs.LG

    On the privacy-utility trade-off in differentially private hierarchical text classification

    Authors: Dominik Wunderlich, Daniel Bernau, Francesco Aldà, Javier Parra-Arnau, Thorsten Strufe

    Abstract: Hierarchical text classification consists in classifying text documents into a hierarchy of classes and sub-classes. Although artificial neural networks have proved useful to perform this task, unfortunately they can leak training data information to adversaries due to training data memorization. Using differential privacy during model training can mitigate leakage attacks against trained models,… ▽ More

    Submitted 9 December, 2021; v1 submitted 4 March, 2021; originally announced March 2021.

  4. arXiv:1912.11328  [pdf, other

    cs.CR cs.LG

    Assessing differentially private deep learning with Membership Inference

    Authors: Daniel Bernau, Philip-William Grassal, Jonas Robl, Florian Kerschbaum

    Abstract: Attacks that aim to identify the training data of public neural networks represent a severe threat to the privacy of individuals participating in the training data set. A possible protection is offered by anonymization of the training data or training function with differential privacy. However, data scientists can choose between local and central differential privacy and need to select meaningful… ▽ More

    Submitted 26 May, 2020; v1 submitted 24 December, 2019; originally announced December 2019.

  5. arXiv:1906.03006  [pdf, other

    cs.CR cs.LG

    Reconstruction and Membership Inference Attacks against Generative Models

    Authors: Benjamin Hilprecht, Martin Härterich, Daniel Bernau

    Abstract: We present two information leakage attacks that outperform previous work on membership inference against generative models. The first attack allows membership inference without assumptions on the type of the generative model. Contrary to previous evaluation metrics for generative models, like Kernel Density Estimation, it only considers samples of the model which are close to training data records… ▽ More

    Submitted 7 June, 2019; originally announced June 2019.

  6. arXiv:1807.02361  [pdf, other

    cs.CR

    The Influence of Differential Privacy on Short Term Electric Load Forecasting

    Authors: Günther Eibl, Kaibin Bao, Philip-William Grassal, Daniel Bernau, Hartmut Schmeck

    Abstract: There has been a large number of contributions on privacy-preserving smart metering with Differential Privacy, addressing questions from actual enforcement at the smart meter to billing at the energy provider. However, exploitation is mostly limited to application of cryptographic security means between smart meters and energy providers. We illustrate along the use case of privacy preserving load… ▽ More

    Submitted 6 July, 2018; originally announced July 2018.

    Comments: This is a pre-print of an article submitted to Springer Open Journal "Energy Informatics"