loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Pasquale Coscia 1 ; Stefano Ferrari 1 ; Vincenzo Piuri 1 and Ayse Salman 2

Affiliations: 1 Department of Computer Science, Università degli Studi di Milano, via Celoria 18, Milano, Italy ; 2 Department of Computer Engineering, Maltepe University, 34857 Maltepe, Istanbul, Turkey

Keyword(s): Membership Inference Attack, Generative Models, Fréchet Coefficient.

Abstract: Synthetic data are widely employed across diverse fields, including computer vision, robotics, and cybersecurity. However, generative models are prone to unintentionally revealing sensitive information from their training datasets, primarily due to overfitting phenomena. In this context, membership inference attacks (MIAs) have emerged as a significant privacy threat. These attacks employ binary classifiers to verify whether a specific data sample was part of the model’s training set, thereby discriminating between member and non-member samples. Despite their growing relevance, the interpretation of MIA outcomes can be misleading without a detailed understanding of the data domains involved during both model development and evaluation. To bridge this gap, we performed an analysis focused on a particular category (i.e., vehicles) to assess the effectiveness of MIA under scenarios with limited overlap in data distribution. First, we introduce a data selection strategy, based on the Fré chet Coefficient, to filter and curate the evaluation datasets, followed by the execution of membership inference attacks under varying degrees of distributional overlap. Our findings indicate that MIAs are highly effective when the training and evaluation data distributions are well aligned, but their accuracy drops significantly under distribution shifts or when domain knowledge is limited. These results highlight the limitations of current MIA methodologies in reliably assessing privacy risks in generative modeling contexts. (More)

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 216.73.216.12

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Coscia, P., Ferrari, S., Piuri, V., Salman and A. (2025). Synthetic and (Un)Secure: Evaluating Generalized Membership Inference Attacks on Image Data. In Proceedings of the 22nd International Conference on Security and Cryptography - SECRYPT; ISBN 978-989-758-760-3; ISSN 2184-7711, SciTePress, pages 287-297. DOI: 10.5220/0013657700003979

@conference{secrypt25,
author={Pasquale Coscia and Stefano Ferrari and Vincenzo Piuri and Ayse Salman},
title={Synthetic and (Un)Secure: Evaluating Generalized Membership Inference Attacks on Image Data},
booktitle={Proceedings of the 22nd International Conference on Security and Cryptography - SECRYPT},
year={2025},
pages={287-297},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0013657700003979},
isbn={978-989-758-760-3},
issn={2184-7711},
}

TY - CONF

JO - Proceedings of the 22nd International Conference on Security and Cryptography - SECRYPT
TI - Synthetic and (Un)Secure: Evaluating Generalized Membership Inference Attacks on Image Data
SN - 978-989-758-760-3
IS - 2184-7711
AU - Coscia, P.
AU - Ferrari, S.
AU - Piuri, V.
AU - Salman, A.
PY - 2025
SP - 287
EP - 297
DO - 10.5220/0013657700003979
PB - SciTePress