Privacy attacks against deep learning models and their countermeasures

Ahmed Shafee,Tasneem A. Awaad
DOI: https://doi.org/10.1016/j.sysarc.2020.101940
IF: 5.836
2021-03-01
Journal of Systems Architecture
Abstract:<p>Recently, deep learning is considered an important concept that is used in a lot of important applications, which require accurate models, such as image classification, identification of audio, intrusion detection, and face recognition. However, building a good deep learning model needs a huge amount of data that is not easily provided, especially in the applications that need sensitive information. Accordingly, researchers propose multiple methodologies for sharing the model rather than sharing the dataset itself. Nevertheless, it has been proven that the shared models still could leak a lot of sensitive information about the private data. In this work, we introduce a survey about the attacks that could be launched against the shared models and the countermeasures that could be taken to preserve the privacy of the sensitive data that is used for the training process.</p>
computer science, software engineering, hardware & architecture
What problem does this paper attempt to address?