{"id":"W4386245223","doi":"10.1109/infocom53939.2023.10228919","title":"More than Enough is Too Much: Adaptive Defenses against Gradient Leakage in Production Federated Learning","year":2023,"lang":"en","type":"article","venue":"","topic":"Privacy-Preserving Technologies in Data","field":"Computer Science","cited_by":24,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Toronto","funders":"","keywords":"Computer science; Leakage (economics); Computation; Gradient descent; Information leakage; Artificial intelligence; Computer security; Algorithm; Machine learning; Artificial neural network","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.00452129,0.0009993988,0.001335056,0.0005231039,0.0009298163,0.001751102,0.001863238,0.001645106,0.0008027897],"category_scores_gemma":[0.0185238,0.0004404419,0.0007192204,0.0004983964,0.002459098,0.004028853,0.004426318,0.003210156,0.0003491812],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.000887038,"about_ca_system_score_gemma":0.001164792,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0005553505,"about_ca_topic_score_gemma":0.0005158198,"domain_scores_codex":[0.9959601,0.001574664,0.0002116873,0.0007477575,0.001052622,0.000453141],"domain_scores_gemma":[0.9909587,0.003426539,0.0007333821,0.003909809,0.0006756252,0.0002959867],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"not_applicable","study_design_scores_codex":[0.00133228,0.0003863504,0.006779306,0.0002011346,0.0002074578,0.0005646585,0.0007134203,0.5877451,0.038316,0.0842154,0.004247786,0.275291],"study_design_scores_gemma":[0.00003319142,0.0001429776,0.0004703753,0.0000245115,0.00001846778,0.0002356026,0.00005626904,0.9351262,0.01549449,0.04732408,0.001047714,0.00002595375],"study_design_candidate":"not_applicable","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"methods","genre_scores_codex":[0.07144313,0.0003200431,0.9244754,0.0006040864,0.0000519117,0.00006395444,0.00003672759,0.001772678,0.001232082],"genre_scores_gemma":[0.9381782,0.00008144481,0.06051602,0.0003233905,0.00002345649,0.00006006968,0.00003786124,0.00008227985,0.0006972054],"genre_candidate":"methods","genre_consensus":"methods","teacher_disagreement_score":0.00452129,"threshold_uncertainty_score":0.02391118,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.05273789533731967,"score_gpt":0.2763093499893919,"score_spread":0.2235714546520722,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}