{"id":"W4386245223","doi":"10.1109/infocom53939.2023.10228919","title":"More than Enough is Too Much: Adaptive Defenses against Gradient Leakage in Production Federated Learning","year":2023,"lang":"en","type":"article","venue":"","topic":"Privacy-Preserving Technologies in Data","field":"Computer Science","cited_by":24,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Toronto","funders":"","keywords":"Computer science; Leakage (economics); Computation; Gradient descent; Information leakage; Artificial intelligence; Computer security; Algorithm; Machine learning; Artificial neural network","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["metaresearch","open_science"],"consensus_categories":["open_science"],"category_scores_codex":[0.0005179835,0.0002094594,0.0002010236,0.0004098063,0.0002747333,0.0002122171,0.006983689,0.0001255362,0.00000699324],"category_scores_gemma":[0.008410968,0.0001940307,0.00004734789,0.002276292,0.0001015747,0.0008746304,0.02561867,0.0004635958,0.0001862899],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0001513563,"about_ca_system_score_gemma":0.00005941162,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0002032627,"about_ca_topic_score_gemma":0.0001090032,"domain_scores_codex":[0.9978207,0.0001077426,0.0002771748,0.0008863948,0.0003587247,0.000549208],"domain_scores_gemma":[0.9966972,0.0001060619,0.0000986961,0.002957233,0.00009137192,0.00004944594],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"not_applicable","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.00004468521,0.0002634742,0.011244,0.00006284421,0.00009719348,0.000435746,0.006543191,0.002491421,0.009153569,0.007583971,0.8145083,0.1475716],"study_design_scores_gemma":[0.0005727464,0.0003046241,0.01772462,0.0001643737,0.000006741245,0.00003318235,0.005136759,0.8312619,0.09522708,0.04021335,0.00844059,0.0009140738],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"empirical","genre_gemma":"empirical","genre_scores_codex":[0.8933312,0.00008681936,0.02856866,0.06827858,0.0006581329,0.0004735156,0.000006762842,0.005522949,0.003073324],"genre_scores_gemma":[0.9599667,0.0001434138,0.03804655,0.0002907725,0.00003480447,0.00004718268,0.00002766285,0.00001954554,0.001423383],"genre_candidate":"empirical","genre_consensus":"empirical","teacher_disagreement_score":0.8287705,"threshold_uncertainty_score":0.9999416,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.05273789533731967,"score_gpt":0.2763093499893919,"score_spread":0.2235714546520722,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}