Table 7.

BlindMI in models with different overfitting degrees and defense methods

Training accuracyTest accuracyAttack accuracy
with dropout
Attack accuracy with
member mask
Attack accuracy with
non-member mask
0.52340.30240.76520.50090.5035
0.77920.32550.85800.50090.4905
0.95540.35420.86410.50270.5010
Source: Authors’ own data, using the Ml-leaks described by Salem et al. and BlindMI described by Hui et al.

or Create an Account

Close Modal
Close Modal