Pseudo Unlearning via Sample Swapping with Hash

Lang Li,Xiaojun Ren,Hongyang Yan,Xiaozhang Liu,Zhenxin Zhang
DOI: https://doi.org/10.1016/j.ins.2024.120135
IF: 8.1
2024-01-19
Information Sciences
Abstract:Machine Unlearning is a recently proposed paradigm to make an machine learning (ML) model delete specific data. Specifically, the data owner has the right to ask the machine learning as a service (MLaaS) provider to remove the impact of specific data on the trained model, so as to protect the privacy of the forgotten data. However, in order to achieve the desired effect, the unlearning operation does come at a certain cost. Therefore, the dishonest MLaaS provider has an incentive to create fake forgetting feedback to deceive the data owner's unlearning verification without performing any unlearning operations. The primary objective of the paper is to understand the potential vulnerabilities within machine unlearning mechanisms and contribute to the development of more robust, trustworthy, and secure unlearning solutions. We proposes the concept of Pseudo Unlearning for the first time, and designs an efficient scheme, s ample s wapping with h ash (SSH), for the membership inference attack verification mechanism. We conduct extensive experiments on different datasets, and the performance achieved in the evaluation metrics as well as the verification mechanisms of membership inference attack shows the feasibility of pseudo unlearning .
computer science, information systems
What problem does this paper attempt to address?