Timezone: »
Log-loss (also known as cross-entropy loss) metric is ubiquitously used across machine learning applications to assess the performance of classification algorithms. In this paper, we investigate the problem of inferring the labels of a dataset from single (or multiple) log-loss score(s), without any other access to the dataset. Surprisingly, we show that for any finite number of label classes, it is possible to accurately infer the labels of the dataset from the reported log-loss score of a single carefully constructed prediction vector if we allow arbitrary precision arithmetic. Additionally, we present label inference algorithms (attacks) that succeed even under addition of noise to the log-loss scores and under limited precision arithmetic. All our algorithms rely on ideas from number theory and combinatorics and require no model training. We run experimental simulations on some real datasets to demonstrate the ease of running these attacks in practice.
Author Information
Abhinav Aggarwal (Amazon Alexa)
Shiva Kasiviswanathan (Amazon)
Zekun Xu (Amazon)
Oluwaseyi Feyisetan (Amazon)
Nathanael Teissier (Amazon Alexa)
Related Events (a corresponding poster, oral, or spotlight)
-
2021 Oral: Label Inference Attacks from Log-loss Scores »
Fri. Jul 23rd 01:00 -- 01:20 AM Room
More from the Same Authors
-
2021 : BRR: Preserving Privacy of Text Data Efficiently on Device »
Ricardo Silva Carvalho · Theodore Vasiloudis · Oluwaseyi Feyisetan -
2021 : TEM: High Utility Metric Differential Privacy on Text »
Ricardo Silva Carvalho · Theodore Vasiloudis · Oluwaseyi Feyisetan -
2022 Poster: On Measuring Causal Contributions via do-interventions »
Yonghan Jung · Shiva Kasiviswanathan · Jin Tian · Dominik Janzing · Patrick Bloebaum · Elias Bareinboim -
2022 Spotlight: On Measuring Causal Contributions via do-interventions »
Yonghan Jung · Shiva Kasiviswanathan · Jin Tian · Dominik Janzing · Patrick Bloebaum · Elias Bareinboim -
2021 Poster: Federated Learning under Arbitrary Communication Patterns »
Dmitrii Avdiukhin · Shiva Kasiviswanathan -
2021 Spotlight: Federated Learning under Arbitrary Communication Patterns »
Dmitrii Avdiukhin · Shiva Kasiviswanathan -
2020 Poster: Efficient Intervention Design for Causal Discovery with Latents »
Raghavendra Addanki · Shiva Kasiviswanathan · Andrew McGregor · Cameron Musco -
2018 Poster: Semi-Supervised Learning on Data Streams via Temporal Label Propagation »
Tal Wagner · Sudipto Guha · Shiva Kasiviswanathan · Nina Mishra -
2018 Oral: Semi-Supervised Learning on Data Streams via Temporal Label Propagation »
Tal Wagner · Sudipto Guha · Shiva Kasiviswanathan · Nina Mishra