← Search

Shan Jin

2 accepted papers

2025

Deep Learning with Plausible Deniability

NeurIPS 2025poster

Deep learning models are vulnerable to privacy attacks due to their tendency to memorize individual training examples. Theoretically-sound defenses such as differential privacy can defend against this threat, but model performance often suffers. Empirical defenses may thwart existing attacks while m…

Cited by 0SourceScholar