{"id":"W4413239006","doi":"10.1007/978-3-032-00624-0_21","title":"BTDT: Membership Inference Attacks Against Large Language Models","year":2025,"lang":"en","type":"book-chapter","venue":"Lecture notes in computer science","topic":"Privacy-Preserving Technologies in Data","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":false,"ca_institutions":"University of Windsor","funders":"","keywords":"Computer science; Inference; Artificial intelligence; Natural language processing; Programming language; Theoretical computer science","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.004185548,0.0008796771,0.001358942,0.001040118,0.001769786,0.00269615,0.002573051,0.003034784,0.007680383],"category_scores_gemma":[0.01896775,0.0008931226,0.001558442,0.001716821,0.002455846,0.01021021,0.008283835,0.007060478,0.003606366],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.001783435,"about_ca_system_score_gemma":0.001723932,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001367809,"about_ca_topic_score_gemma":0.001286358,"domain_scores_codex":[0.9933421,0.00235759,0.0003460855,0.0006779053,0.002652733,0.0006235528],"domain_scores_gemma":[0.981781,0.009642797,0.0005302139,0.006896594,0.0007780296,0.0003713363],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"theoretical_or_conceptual","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.002006671,0.0003571177,0.001378763,0.0003547551,0.0002289373,0.0005864909,0.0008447817,0.09089334,0.01619289,0.4375903,0.1202983,0.3292678],"study_design_scores_gemma":[0.000126143,0.00009137627,0.0001826023,0.0000379736,0.000060696,0.0003394001,0.00007774813,0.5017127,0.01432113,0.4608909,0.02211714,0.00004214525],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.02041309,0.0005103317,0.9495538,0.003391335,0.0004422259,0.0001472828,0.0009445644,0.01302146,0.01157597],"genre_scores_gemma":[0.7505575,0.0006970693,0.2140477,0.002598488,0.0006889141,0.0004852421,0.002728723,0.00248577,0.02571043],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.007680383,"threshold_uncertainty_score":0.02569348,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03363683970892201,"score_gpt":0.2905766750473228,"score_spread":0.2569398353384008,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}