2024
Trap-MID: Trapdoor-based Defense against Model Inversion Attacks
NeurIPS 2024poster
Model Inversion (MI) attacks pose a significant threat to the privacy of Deep Neural Networks by recovering training data distribution from well-trained models. While existing defenses often rely on regularization techniques to reduce information leakage, they remain vulnerable to recent attacks. In…