{"id":"W4408750188","doi":"10.14722/ndss.2025.230041","title":"A Method to Facilitate Membership Inference Attacks in Deep Learning Models","year":2025,"lang":"en","type":"article","venue":"","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":2,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of British Columbia","funders":"Natural Sciences and Engineering Research Council of Canada","keywords":"Computer science; Inference; Artificial intelligence; Deep learning; Machine learning","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.009326603,0.00127717,0.001292731,0.001470132,0.001547897,0.003687694,0.00403023,0.00350207,0.00551854],"category_scores_gemma":[0.05272624,0.001128675,0.002252974,0.001049644,0.00430155,0.00900402,0.01150339,0.009121873,0.001907818],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001810348,"about_ca_system_score_gemma":0.00244244,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001224761,"about_ca_topic_score_gemma":0.001239227,"domain_scores_codex":[0.9883288,0.005069635,0.0006239531,0.001667638,0.003437012,0.0008729505],"domain_scores_gemma":[0.9642874,0.01546035,0.001869893,0.01628117,0.001467553,0.0006335996],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"theoretical_or_conceptual","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0008720741,0.0004315176,0.004826431,0.0003054683,0.0002901471,0.0006632011,0.001083474,0.3049031,0.01703726,0.3820553,0.01765447,0.2698775],"study_design_scores_gemma":[0.0000351642,0.00007183478,0.0001605964,0.00004400588,0.0000314072,0.0002111557,0.00003591172,0.8490329,0.007732887,0.1374742,0.005138265,0.00003174849],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"methods","genre_scores_codex":[0.01262222,0.0002632964,0.978201,0.001650775,0.0001344653,0.0001093544,0.0001503594,0.003922951,0.00294565],"genre_scores_gemma":[0.7166117,0.0003564514,0.2738727,0.001615464,0.0003469426,0.0002906691,0.0004136374,0.0006900761,0.005802252],"genre_candidate":"methods","genre_consensus":"methods","teacher_disagreement_score":0.009326603,"threshold_uncertainty_score":0.04932439,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.085488134606355,"score_gpt":0.3513555767616686,"score_spread":0.2658674421553136,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}