EMNLP 2022main88 citations

An Empirical Analysis of Memorization in Fine-tuned Autoregressive Language Models

Fatemehsadat Mireshghallah, Archit Uniyal, Tianhao Wang, David Evans, Taylor Berg-Kirkpatrick

Abstract

Large language models are shown to present privacy risks through memorization of training data, andseveral recent works have studied such risks for the pre-training phase. Little attention, however, has been given to the fine-tuning phase and it is not well understood how different fine-tuning methods (such as fine-tuning the full model, the model head, and adapter) compare in terms of memorization risk. This presents increasing concern as the “pre-train and fine-tune” paradigm proliferates. In this paper, we empirically study memorization of fine-tuning methods using membership inference and extraction attacks, and show that their susceptibility to attacks is very different. We observe that fine-tuning the head of the model has the highest susceptibility to attacks, whereas fine-tuning smaller adapters appears to be less vulnerable to known extraction attacks.

BibTeX
@inproceedings{mireshghallah-etal-2022-empirical,
    title = "An Empirical Analysis of Memorization in Fine-tuned Autoregressive Language Models",
    author = "Mireshghallah, Fatemehsadat  and
      Uniyal, Archit  and
      Wang, Tianhao  and
      Evans, David  and
      Berg-Kirkpatrick, Taylor",
    editor = "Goldberg, Yoav  and
      Kozareva, Zornitsa  and
      Zhang, Yue",
    booktitle = "Proceedings of the 2022 Conference on Empirical Methods in Natural Language Processing",
    month = dec,
    year = "2022",
    address = "Abu Dhabi, United Arab Emirates",
    publisher = "Association for Computational Linguistics",
    url = "https://aclanthology.org/2022.emnlp-main.119/",
    doi = "10.18653/v1/2022.emnlp-main.119",
    pages = "1816--1826"
}
An Empirical Analysis of Memorization in Fine-tuned Autoregressive Language Models · EMNLP 2022