{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,11]],"date-time":"2025-09-11T20:26:33Z","timestamp":1757622393170,"version":"3.44.0"},"publisher-location":"Cham","reference-count":48,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783032006233"},{"type":"electronic","value":"9783032006240"}],"license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025]]},"DOI":"10.1007\/978-3-032-00624-0_17","type":"book-chapter","created":{"date-parts":[[2025,8,9]],"date-time":"2025-08-09T11:42:25Z","timestamp":1754739745000},"page":"337-357","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["DP-TLDM: Differentially Private Tabular Latent Diffusion Model"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6895-7237","authenticated-orcid":false,"given":"Chaoyi","family":"Zhu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0005-4827-6406","authenticated-orcid":false,"given":"Jiayi","family":"Tang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4732-1621","authenticated-orcid":false,"given":"Juan F.","family":"P\u00e9rez","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9388-8050","authenticated-orcid":false,"given":"Marten","family":"van Dijk","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4228-6735","authenticated-orcid":false,"given":"Lydia Y.","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,8,10]]},"reference":[{"key":"17_CR1","doi-asserted-by":"crossref","unstructured":"Abadi, M., et al.: Deep learning with differential privacy. In: Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security, pp. 308\u2013318 (2016)","DOI":"10.1145\/2976749.2978318"},{"key":"17_CR2","doi-asserted-by":"crossref","unstructured":"Ali, H., Murad, S., Shah, Z.: Spot the fake lungs: generating synthetic medical images using neural diffusion models. In: Irish Conference on Artificial Intelligence and Cognitive Science, pp. 32\u201339. Springer (2022)","DOI":"10.1007\/978-3-031-26438-2_3"},{"key":"17_CR3","unstructured":"Thera Bank: Bank Loan Modelling (2017). https:\/\/www.kaggle.com\/datasets\/itsmesunil\/bank-loan-modelling"},{"key":"17_CR4","doi-asserted-by":"publisher","unstructured":"Becker, B., Kohavi, R.: Adult. UCI Machine Learning Repository (1996). https:\/\/doi.org\/10.24432\/C5XW20","DOI":"10.24432\/C5XW20"},{"key":"17_CR5","unstructured":"Carlini, N., et al.: Extracting training data from diffusion models. In: 32nd USENIX Security Symposium (USENIX Security 23), pp. 5253\u20135270 (2023)"},{"key":"17_CR6","unstructured":"Chambon, P., et al.: RoentGen: vision-language foundation model for chest X-ray generation. arXiv preprint arXiv:2211.12737 (2022)"},{"key":"17_CR7","unstructured":"Chambon, P.J.M., Bluethgen, C., Langlotz, C., Chaudhari, A.: Adapting pretrained vision-language foundational models to medical imaging domains. In: NeurIPS 2022 Foundation Models for Decision Making Workshop (2022)"},{"key":"17_CR8","unstructured":"Chen, D., Orekondy, T., Fritz, M.: GS-WGAN: a gradient-sanitized approach for learning differentially private generators. In: Advances in Neural Information Processing Systems, vol. 33, pp. 12673\u201312684 (2020)"},{"key":"17_CR9","doi-asserted-by":"crossref","unstructured":"Chen, W., Song, D., Li, B.: TrojDiff: Trojan attacks on diffusion models with diverse targets. In: IEEE\/CVF Conference on Computer Vision and Pattern Recognition, CVPR, pp. 4035\u20134044 (2023)","DOI":"10.1109\/CVPR52729.2023.00393"},{"key":"17_CR10","unstructured":"Daras, G., Shah, K., Dagan, Y., Gollakota, A., Dimakis, A., Klivans, A.: Ambient diffusion: learning clean distributions from corrupted data. In: Advances in Neural Information Processing Systems, vol. 36 (2024)"},{"key":"17_CR11","unstructured":"Dempsy, K.: Cardiovascular Disease Dataset (2021). https:\/\/www.kaggle.com\/datasets\/thedevastator\/exploring-risk-factors-for-cardiovascular-diseas"},{"key":"17_CR12","unstructured":"Dockhorn, T., Cao, T., Vahdat, A., Kreis, K.: Differentially Private Diffusion Models. CoRR abs\/2210.09929 (2022)"},{"key":"17_CR13","unstructured":"Dong, J., Roth, A., Su, W.: Gaussian differential privacy. J. Roy. Stat. Soc. (2021)"},{"key":"17_CR14","unstructured":"Duan, J., Kong, F., Wang, S., Shi, X., Xu, K.: Are diffusion models vulnerable to membership inference attacks? In: International Conference on Machine Learning, ICML, vol.\u00a0202, pp. 8717\u20138730 (2023)"},{"key":"17_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"265","DOI":"10.1007\/11681878_14","volume-title":"Theory of Cryptography","author":"C Dwork","year":"2006","unstructured":"Dwork, C., McSherry, F., Nissim, K., Smith, A.: Calibrating noise to sensitivity in private data analysis. In: Halevi, S., Rabin, T. (eds.) TCC 2006. LNCS, vol. 3876, pp. 265\u2013284. Springer, Heidelberg (2006). https:\/\/doi.org\/10.1007\/11681878_14"},{"key":"17_CR16","unstructured":"European Parliament and Council of the European Union: Regulation (EU) 2016\/679 of the European parliament and of the council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing directive 95\/46\/EC (general data protection regulation). Official Journal of the European Union, L119, 1-88 (2016). https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/?uri=CELEX:32016R0679"},{"key":"17_CR17","unstructured":"Gao, H., Zhang, H., Dong, Y., Deng, Z.: Evaluating the robustness of text-to-image diffusion models against real-world attacks. CoRR abs\/2306.13103 (2023)"},{"key":"17_CR18","unstructured":"Ghalebikesabi, S., et al.: Differentially private diffusion models generate useful synthetic images. CoRR abs\/2302.13861 (2023)"},{"key":"17_CR19","doi-asserted-by":"publisher","first-page":"312","DOI":"10.56553\/popets-2023-0055","volume":"2","author":"M Giomi","year":"2023","unstructured":"Giomi, M., Boenisch, F., Wehmeyer, C., Tasn\u00e1di, B.: A unified framework for quantifying privacy risk in synthetic data. Proc. Priv. Enhancing Technol. 2, 312\u2013328 (2023)","journal-title":"Proc. Priv. Enhancing Technol."},{"key":"17_CR20","unstructured":"Stadler, T., Oprisanu, B., Troncoso, C.: Synthetic data-a privacy mirage. arXiv preprint arXiv:2011.07018 (2020)"},{"key":"17_CR21","doi-asserted-by":"publisher","unstructured":"Hayes, J., Melis, L., Danezis, G., Cristofaro, E.D.: LOGAN: membership inference attacks against generative models. Proc. Priv. Enhancing Technol. 2019(1), 133\u2013152 (2019). https:\/\/doi.org\/10.2478\/POPETS-2019-0008","DOI":"10.2478\/POPETS-2019-0008"},{"key":"17_CR22","unstructured":"Ho, J., Jain, A., Abbeel, P.: Denoising diffusion probabilistic models. In: Advances in Neural Information Processing Systems 33: Annual Conference on Neural Information Processing Systems (2020)"},{"key":"17_CR23","unstructured":"Hoogeboom, E., Nielsen, D., Jaini, P., Forr\u00e9, P., Welling, M.: Argmax flows and multinomial diffusion: learning categorical distributions. In: Advances in Neural Information Processing Systems, vol. 34, pp. 12454\u201312465 (2021)"},{"key":"17_CR24","unstructured":"Hsieh, Y.G., Kasiviswanathan, S., Kveton, B., Bloebaum, P.: Thompson sampling with diffusion generative prior. In: ICML 2023 (2023). https:\/\/www.amazon.science\/publications\/thompson-sampling-with-diffusion-generative-prior"},{"key":"17_CR25","unstructured":"Hu, H., Pang, J.: Model extraction and defenses on generative adversarial networks. arXiv preprint arXiv:2101.02069 (2021)"},{"key":"17_CR26","unstructured":"Hu, H., Pang, J.: Membership inference of diffusion models. CoRR abs\/2301.09956 (2023)"},{"key":"17_CR27","unstructured":"Jordon, J., Yoon, J., Van Der\u00a0Schaar, M.: PATE-GAN: generating synthetic data with differential privacy guarantees. In: International Conference on Learning Representations (2018)"},{"key":"17_CR28","unstructured":"Kingma, D.P., Welling, M.: Auto-encoding variational Bayes. arXiv preprint arXiv:1312.6114 (2013)"},{"key":"17_CR29","unstructured":"Kotelnikov, A., Baranchuk, D., Rubachev, I., Babenko, A.: TabDDPM: modelling tabular data with diffusion models. In: International Conference on Machine Learning, pp. 17564\u201317579. PMLR (2023)"},{"key":"17_CR30","doi-asserted-by":"crossref","unstructured":"Lee, J., Kim, M., Jeong, Y., Ro, Y.: Differentially private normalizing flows for synthetic tabular data generation. In: Thirty-Sixth AAAI Conference on Artificial Intelligence, AAAI, IAAI, EAAI, pp. 7345\u20137353 (2022)","DOI":"10.1609\/aaai.v36i7.20697"},{"key":"17_CR31","unstructured":"Milli\u00e8re, R.: Adversarial attacks on image generation with made-up words. CoRR abs\/2208.04135 (2022)"},{"issue":"3","key":"17_CR32","doi-asserted-by":"publisher","first-page":"142","DOI":"10.2478\/popets-2021-0041","volume":"2021","author":"S Mukherjee","year":"2021","unstructured":"Mukherjee, S., Xu, Y., Trivedi, A., Patowary, N., Ferres, J.L.: privGAN: protecting GANs from membership inference attacks at low cost to utility. Proc. Priv. Enhancing Technol. 2021(3), 142\u2013163 (2021)","journal-title":"Proc. Priv. Enhancing Technol."},{"key":"17_CR33","unstructured":"Nguyen, T.N., Nguyen, P.H., Nguyen, L.M., Van\u00a0Dijk, M.: Batch clipping and adaptive layerwise clipping for differential private stochastic gradient descent. arXiv preprint arXiv:2307.11939 (2023)"},{"issue":"10","key":"17_CR34","doi-asserted-by":"publisher","first-page":"1071","DOI":"10.14778\/3231751.3231757","volume":"11","author":"N Park","year":"2018","unstructured":"Park, N., Mohammadi, M., Gorde, K., Jajodia, S., Park, H., Kim, Y.: Data synthesis based on generative adversarial networks. Proc. VLDB Endow. 11(10), 1071\u20131083 (2018)","journal-title":"Proc. VLDB Endow."},{"key":"17_CR35","doi-asserted-by":"crossref","unstructured":"Rombach, R., Blattmann, A., Lorenz, D., Esser, P., Ommer, B.: High-resolution image synthesis with latent diffusion models. In: IEEE\/CVF Conference on Computer Vision and Pattern Recognition, CVPR, pp. 10674\u201310685 (2022)","DOI":"10.1109\/CVPR52688.2022.01042"},{"key":"17_CR36","doi-asserted-by":"crossref","unstructured":"Shokri, R., Stronati, M., Song, C., Shmatikov, V.: Membership inference attacks against machine learning models. In: IEEE Symposium on Security and Privacy, SP, pp. 3\u201318 (2017)","DOI":"10.1109\/SP.2017.41"},{"key":"17_CR37","doi-asserted-by":"crossref","unstructured":"Somepalli, G., Singla, V., Goldblum, M., Geiping, J., Goldstein, T.: Diffusion art or digital forgery? Investigating data replication in diffusion models. In: IEEE\/CVF Conference on Computer Vision and Pattern Recognition, CVPR, pp. 6048\u20136058 (2023)","DOI":"10.1109\/CVPR52729.2023.00586"},{"key":"17_CR38","unstructured":"Szegedy, C., et al.: Intriguing properties of neural networks. In: 2nd International Conference on Learning Representations, ICLR (2014)"},{"key":"17_CR39","unstructured":"Torgo, L.: California Housing Prices (1990). https:\/\/www.kaggle.com\/datasets\/camnugent\/california-housing-prices"},{"key":"17_CR40","doi-asserted-by":"crossref","unstructured":"Waites, C., Cummings, R.: Differentially private normalizing flows for privacy-preserving density estimation. In: AIES 2021: AAAI\/ACM Conference on AI, pp. 1000\u20131009 (2021)","DOI":"10.1145\/3461702.3462625"},{"key":"17_CR41","unstructured":"Wang, C., Su, B., Ye, J., Shokri, R., Su, W.: Unified enhancement of privacy bounds for mixture mechanisms via $$ f $$-differential privacy. In: Advances in Neural Information Processing Systems, vol. 36 (2024)"},{"key":"17_CR42","unstructured":"Wu, Y., Yu, N., Li, Z., Backes, M., Zhang, Y.: Membership inference attacks against text-to-image generation models. CoRR abs\/2210.00968 (2022)"},{"key":"17_CR43","unstructured":"Xie, L., Lin, K., Wang, S., Wang, F., Zhou, J.: Differentially private generative adversarial network. arXiv preprint arXiv:1802.06739 (2018)"},{"key":"17_CR44","unstructured":"Xu, L., Skoularidou, M., Cuesta-Infante, A., Veeramachaneni, K.: Modeling tabular data using conditional GAN. In: Advances in Neural Information Processing Systems, vol. 32 (2019)"},{"issue":"8","key":"17_CR45","doi-asserted-by":"publisher","first-page":"2378","DOI":"10.1109\/JBHI.2020.2980262","volume":"24","author":"J Yoon","year":"2020","unstructured":"Yoon, J., Drumright, L.N., Van Der Schaar, M.: Anonymization through data synthesis using generative adversarial networks (ADS-GAN). IEEE J. Biomed. Health Inform. 24(8), 2378\u20132388 (2020)","journal-title":"IEEE J. Biomed. Health Inform."},{"key":"17_CR46","unstructured":"Yousefpour, A., et al.: Opacus: user-friendly differential privacy library in PyTorch. CoRR (2021). https:\/\/arxiv.org\/abs\/2109.12298"},{"key":"17_CR47","unstructured":"Zhao, Z., Kunar, A., Birke, R., Chen, L.Y.: CTAB-GAN: effective table data synthesizing. In: Asian Conference on Machine Learning, pp. 97\u2013112. PMLR (2021)"},{"key":"17_CR48","unstructured":"Zhu, D., Chen, D., Grossklags, J., Fritz, M.: Data forensics in diffusion models: a systematic analysis of membership privacy. CoRR abs\/2302.07801 (2023)"}],"container-title":["Lecture Notes in Computer Science","Availability, Reliability and Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-00624-0_17","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,8]],"date-time":"2025-09-08T19:55:30Z","timestamp":1757361330000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-00624-0_17"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"ISBN":["9783032006233","9783032006240"],"references-count":48,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-00624-0_17","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2025]]},"assertion":[{"value":"10 August 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ARES","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Availability, Reliability and Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Ghent","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Belgium","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11 August 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"14 August 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ares-12025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/2025.ares-conference.eu","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}