{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,16]],"date-time":"2026-04-16T10:00:19Z","timestamp":1776333619558,"version":"3.51.2"},"publisher-location":"Cham","reference-count":45,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032227737","type":"print"},{"value":"9783032227744","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-22774-4_5","type":"book-chapter","created":{"date-parts":[[2026,4,16]],"date-time":"2026-04-16T09:20:38Z","timestamp":1776331238000},"page":"86-106","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Quantifying Privacy Risks in Synthetic Data: A Study on Black-Box Membership Inference"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0009-0009-5808-604X","authenticated-orcid":false,"given":"Giacomo","family":"Fantino","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0008-8819-3623","authenticated-orcid":false,"given":"Marco","family":"Rondina","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2027-3308","authenticated-orcid":false,"given":"Antonio","family":"Vetr\u00f2","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7867-1926","authenticated-orcid":false,"given":"Juan Carlos","family":"De Martin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2026,4,17]]},"reference":[{"key":"5_CR1","unstructured":"South German Credit. UCI Machine Learning Repository (2020), DOI: https:\/\/doi.org\/10.24432\/C5QG88"},{"key":"5_CR2","unstructured":"Becker, B., Kohavi, R.: Adult. UCI Machine Learning Repository (1996), DOI: https:\/\/doi.org\/10.24432\/C5XW20"},{"key":"5_CR3","unstructured":"van Breugel, B., Hao, S., Zhaozhi, Q., van\u00a0der Schaar, M.: Membership inference attacks against synthetic data through overfitting detection (2023), https:\/\/arxiv.org\/abs\/2302.12580"},{"key":"5_CR4","unstructured":"van Breugel, B., Kyono, T., Berrevoets, J., van\u00a0der Schaar, M.: Decaf: Generating fair synthetic data using causally-aware generative networks (2021), https:\/\/arxiv.org\/abs\/2110.12884"},{"key":"5_CR5","unstructured":"Chakraborty, T., S, U.R.K., Naik, S.M., Panja, M., Manvitha, B.: Ten years of generative adversarial nets (gans): A survey of the state-of-the-art (2023), https:\/\/arxiv.org\/abs\/2308.16316"},{"key":"5_CR6","doi-asserted-by":"publisher","unstructured":"Chen, D., Yu, N., Zhang, Y., Fritz, M.: Gan-leaks: A taxonomy of membership inference attacks against generative models. In: Proceedings of the 2020 ACM SIGSAC Conference on Computer and Communications Security. pp. 343\u2013362. ACM, Virtual Event, USA (Oct 2020). https:\/\/doi.org\/10.1145\/3372297.3417238, https:\/\/dl.acm.org\/doi\/10.1145\/3372297.3417238","DOI":"10.1145\/3372297.3417238"},{"key":"5_CR7","doi-asserted-by":"publisher","unstructured":"Chen, T., Guestrin, C.: Xgboost: A scalable tree boosting system. In: Proceedings of the 22nd ACM SIGKDD International Conference on Knowledge Discovery and Data Mining. p. 785\u2013794. Association for Computing Machinery, New York, NY, USA (2016). https:\/\/doi.org\/10.1145\/2939672.2939785, https:\/\/doi.org\/10.1145\/2939672.2939785","DOI":"10.1145\/2939672.2939785"},{"key":"5_CR8","doi-asserted-by":"publisher","unstructured":"Dankar, F.K., Ibrahim, M.K., Ismail, L.: A multi-dimensional evaluation of synthetic data generators. IEEE Access 10, 11147\u201311158 (2022). https:\/\/doi.org\/10.1109\/ACCESS.2022.3144765, https:\/\/ieeexplore.ieee.org\/document\/9686689\/","DOI":"10.1109\/ACCESS.2022.3144765"},{"key":"5_CR9","doi-asserted-by":"publisher","unstructured":"Fabris, A., Messina, S., Silvello, G., Susto, G.A.: Algorithmic fairness datasets: The story so far. Data Mining and Knowledge Discovery 36, 2074\u20132152 (2022). https:\/\/doi.org\/10.1007\/s10618-022-00854-z, https:\/\/doi.org\/10.1007\/s10618-022-00854-z","DOI":"10.1007\/s10618-022-00854-z"},{"key":"5_CR10","doi-asserted-by":"publisher","unstructured":"Fawcett, T.: An introduction to ROC analysis. Pattern Recognition Letters 27(8), 861\u2013874 (2006). https:\/\/doi.org\/10.1016\/j.patrec.2005.10.010, https:\/\/www.sciencedirect.com\/science\/article\/pii\/S016786550500303X","DOI":"10.1016\/j.patrec.2005.10.010"},{"key":"5_CR11","doi-asserted-by":"publisher","unstructured":"Figueira, A., Vaz, B.: Survey on synthetic data generation, evaluation methods and gans. Mathematics 10(15), \u00a02733 (2022). https:\/\/doi.org\/10.3390\/math10152733, https:\/\/www.mdpi.com\/2227-7390\/10\/15\/2733","DOI":"10.3390\/math10152733"},{"key":"5_CR12","doi-asserted-by":"publisher","unstructured":"Fonseca, J., Bacao, F.: Tabular and latent space synthetic data generation: A literature review. Journal of Big Data 10(1), \u00a0115 (Jul 2023). https:\/\/doi.org\/10.1186\/s40537-023-00792-7, https:\/\/journalofbigdata.springeropen.com\/articles\/10.1186\/s40537-023-00792-7","DOI":"10.1186\/s40537-023-00792-7"},{"key":"5_CR13","unstructured":"Ganev, G.: Synthetic data, similarity-based privacy metrics, and regulatory (non-)compliance (2024), https:\/\/arxiv.org\/abs\/2407.16929"},{"key":"5_CR14","unstructured":"Goodfellow, I.J., Pouget-Abadie, J., Mirza, M., Xu, B., Warde-Farley, D., Ozair, S., Courville, A., Bengio, Y.: Generative adversarial nets. In: Proceedings of the 28th International Conference on Neural Information Processing Systems - Volume 2. p. 2672\u20132680. NIPS\u201914, MIT Press, Cambridge, MA, USA (2014)"},{"key":"5_CR15","doi-asserted-by":"publisher","unstructured":"Gundersen, O.E., Gil, Y., Aha, D.W.: On reproducible ai: Towards reproducible research, open science, and digital scholarship in ai publications. AI Magazine 39(3), 56\u201368 (Sep 2018). https:\/\/doi.org\/10.1609\/aimag.v39i3.2816, https:\/\/onlinelibrary.wiley.com\/doi\/10.1609\/aimag.v39i3.2816","DOI":"10.1609\/aimag.v39i3.2816"},{"key":"5_CR16","doi-asserted-by":"publisher","unstructured":"Guo, C., Zhou, J., Chen, H., Ying, N., Zhang, J., Zhou, D.: Variational autoencoder with optimizing gaussian mixture model priors. IEEE Access 8, 43992\u201344005 (2020). https:\/\/doi.org\/10.1109\/ACCESS.2020.2977671","DOI":"10.1109\/ACCESS.2020.2977671"},{"key":"5_CR17","doi-asserted-by":"crossref","unstructured":"Hayes, J., Melis, L., Danezis, G., Cristofaro, E.D.: Logan: Membership inference attacks against generative models (2018), https:\/\/arxiv.org\/abs\/1705.07663","DOI":"10.2478\/popets-2019-0008"},{"key":"5_CR18","doi-asserted-by":"publisher","unstructured":"Hernandez, M., Epelde, G., Alberdi, A., Cilla, R., Rankin, D.: Synthetic data generation for tabular health records: A systematic review. Neurocomputing 493, 28\u201345 (2022). https:\/\/doi.org\/10.1016\/j.neucom.2022.04.053, https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S0925231222004349","DOI":"10.1016\/j.neucom.2022.04.053"},{"key":"5_CR19","doi-asserted-by":"crossref","unstructured":"Hilprecht, B., H\u00e4rterich, M., Bernau, D.: Reconstruction and membership inference attacks against generative models (2019), https:\/\/arxiv.org\/abs\/1906.03006","DOI":"10.2478\/popets-2019-0067"},{"key":"5_CR20","doi-asserted-by":"publisher","unstructured":"Hu, H., Salcic, Z., Sun, L., Dobbie, G., Yu, P.S., Zhang, X.: Membership inference attacks on machine learning: A survey. ACM Computing Surveys 54(11s), 1\u201337 (Jan 2022). https:\/\/doi.org\/10.1145\/3523273, https:\/\/dl.acm.org\/doi\/10.1145\/3523273","DOI":"10.1145\/3523273"},{"key":"5_CR21","doi-asserted-by":"crossref","unstructured":"Hyeong, J., Kim, J., Park, N., Jajodia, S.: An empirical study on the membership inference attack against tabular data synthesis models. In: Proceedings of the 31st ACM International Conference on Information & Knowledge Management. pp. 4064\u20134068. ACM, A (Oct 2022)","DOI":"10.1145\/3511808.3557546"},{"key":"5_CR22","unstructured":"Kingma, D.P., Welling, M.: Auto-encoding variational bayes (2013), https:\/\/arxiv.org\/abs\/1312.6114"},{"key":"5_CR23","unstructured":"Latanya, S.: Simple demographics often identify people uniquely (2000)"},{"key":"5_CR24","doi-asserted-by":"publisher","unstructured":"Liu, Q., Khalil, M., Jovanovic, J., Shakya, R.: Scaling while privacy preserving: A comprehensive synthetic tabular data generation and evaluation in learning analytics. In: Proceedings of the 14th Learning Analytics and Knowledge Conference. pp. 620\u2013631. ACM, Kyoto, Japan (Mar 2024). https:\/\/doi.org\/10.1145\/3636555.3636921, https:\/\/dl.acm.org\/doi\/10.1145\/3636555.3636921","DOI":"10.1145\/3636555.3636921"},{"key":"5_CR25","doi-asserted-by":"publisher","unstructured":"Liu, Y., Huang, J., Li, Y., Wang, D., Xiao, B.: Generative ai model privacy: A survey. Artificial Intelligence Review 58(1), \u00a033 (Dec 2024). https:\/\/doi.org\/10.1007\/s10462-024-11024-6, https:\/\/link.springer.com\/10.1007\/s10462-024-11024-6","DOI":"10.1007\/s10462-024-11024-6"},{"key":"5_CR26","doi-asserted-by":"publisher","unstructured":"Lowe, D.G.: Distinctive image features from scale-invariant keypoints. International Journal of Computer Vision 60, 91\u2013110 (2004). https:\/\/doi.org\/10.1023\/B:VISI.0000029664.99615.94, https:\/\/doi.org\/10.1023\/B:VISI.0000029664.99615.94","DOI":"10.1023\/B:VISI.0000029664.99615.94"},{"key":"5_CR27","unstructured":"Lu, Y., Shen, M., Wang, H., Wang, X., van Rechem, C., Fu, T., Wei, W.: Machine learning for synthetic data generation: A review (2024), https:\/\/arxiv.org\/abs\/2302.04062"},{"key":"5_CR28","unstructured":"Mariani, G., Scheidegger, F., Istrate, R., Bekas, C., Malossi, C.: Bagan: Data augmentation with balancing gan (2018), https:\/\/arxiv.org\/abs\/1803.09655"},{"key":"5_CR29","doi-asserted-by":"crossref","unstructured":"Mateo-Sanz, J.M., Seb\u00e9, F., Domingo-Ferrer, J.: Outlier protection in continuous microdata masking. In: Privacy in Statistical Databases. pp. 201\u2013215. Springer Berlin Heidelberg, Berlin, Heidelberg (2004)","DOI":"10.1007\/978-3-540-25955-8_16"},{"key":"5_CR30","doi-asserted-by":"publisher","unstructured":"Niu, B., Sun, J., Chen, Y., Zhang, L., Cao, J., Geng, K., Li, F.: Evaluating the impact of adversarial factors on membership inference attacks. In: 2023 IEEE Smart World Congress (SWC). pp.\u00a01\u20138. IEEE (2023). https:\/\/doi.org\/10.1109\/SWC57546.2023.10448806, https:\/\/ieeexplore.ieee.org\/document\/10448806\/","DOI":"10.1109\/SWC57546.2023.10448806"},{"key":"5_CR31","doi-asserted-by":"publisher","unstructured":"Niu, J., Liu, P., Zhu, X., Shen, K., Wang, Y., Chi, H., Shen, Y., Jiang, X., Ma, J., Zhang, Y.: A survey on membership inference attacks and defenses in machine learning. Journal of Information and Intelligence 2(5), 404\u2013454 (Sep 2024). https:\/\/doi.org\/10.1016\/j.jiixd.2024.02.001, https:\/\/linkinghub.elsevier.com\/retrieve\/pii\/S2949715924000064","DOI":"10.1016\/j.jiixd.2024.02.001"},{"key":"5_CR32","doi-asserted-by":"publisher","unstructured":"Park, N., Mohammadi, M., Gorde, K., Jajodia, S., Park, H., Kim, Y.: Data synthesis based on generative adversarial networks. Proceedings of the VLDB Endowment 11(10), 1071\u20131083 (2018). https:\/\/doi.org\/10.14778\/3231751.3231757, https:\/\/dl.acm.org\/doi\/10.14778\/3231751.3231757","DOI":"10.14778\/3231751.3231757"},{"key":"5_CR33","doi-asserted-by":"publisher","unstructured":"Platzer, M., Reutterer, T.: Holdout-based empirical assessment of mixed-type synthetic data. Frontiers in Big Data 4 (2021). https:\/\/doi.org\/10.3389\/fdata.2021.679939","DOI":"10.3389\/fdata.2021.679939"},{"key":"5_CR34","unstructured":"ProPublica: Compas analysis (2016), https:\/\/github.com\/propublica\/compas-analysis"},{"key":"5_CR35","doi-asserted-by":"publisher","unstructured":"Raghavan, M., Barocas, S., Kleinberg, J., Levy, K.: Mitigating bias in algorithmic hiring: evaluating claims and practices. In: Proceedings of the 2020 Conference on Fairness, Accountability, and Transparency. p. 469\u2013481. FAT* \u201920, Association for Computing Machinery, New York, NY, USA (2020). https:\/\/doi.org\/10.1145\/3351095.3372828, https:\/\/doi.org\/10.1145\/3351095.3372828","DOI":"10.1145\/3351095.3372828"},{"key":"5_CR36","unstructured":"Razavi, A., van\u00a0den Oord, A., Vinyals, O.: Generating diverse high-fidelity images with vq-vae-2. In: Wallach, H., Larochelle, H., Beygelzimer, A., d\u2019Alch\u00e9-Buc, F., Fox, E., Garnett, R. (eds.) Advances in Neural Information Processing Systems. vol.\u00a032. Curran Associates, Inc. (2019)"},{"key":"5_CR37","doi-asserted-by":"publisher","unstructured":"Shokri, R., Stronati, M., Song, C., Shmatikov, V.: Membership inference attacks against machine learning models. In: 2017 IEEE Symposium on Security and Privacy (SP). pp. 3\u201318. IEEE (2017). https:\/\/doi.org\/10.1109\/SP.2017.41","DOI":"10.1109\/SP.2017.41"},{"key":"5_CR38","unstructured":"Stadler, T., Oprisanu, B., Troncoso, C.: Synthetic data \u2013 anonymisation groundhog day. In: 31st USENIX Security Symposium (USENIX Security 22). pp. 1451\u20131468. USENIX Association (2022), https:\/\/www.usenix.org\/conference\/usenixsecurity22\/presentation\/stadler"},{"key":"5_CR39","unstructured":"Steier, A., Ramaswamy, L., Manoel, A., Haushalter, A.: Synthetic data privacy metrics (2025), https:\/\/arxiv.org\/abs\/2501.03941"},{"key":"5_CR40","doi-asserted-by":"crossref","unstructured":"Tazwar, S.M., Knobbout, M., Quesada, E.H., Popa, M.: Tab-vae: A novel VAE for generating synthetic tabular data. In: Proceedings of the 13th International Conference on Pattern Recognition Applications and Method. SCITEPRESS, Maastricht, The Netherlands (2024)","DOI":"10.5220\/0012302400003654"},{"key":"5_CR41","unstructured":"Xu, L., Skoularidou, M., Cuesta-Infante, A., Veeramachaneni, K.: Modeling tabular data using conditional GAN, pp. 659\u2013669. Curran Associates Inc., Red Hook, NY, USA (2019)"},{"key":"5_CR42","doi-asserted-by":"publisher","unstructured":"Yale, A., Dash, S., Dutta, R., Guyon, I., Pavao, A., Bennett, K.: Generation and evaluation of privacy preserving synthetic health data. Neurocomputing 416 (04 2020). https:\/\/doi.org\/10.1016\/j.neucom.2019.12.136","DOI":"10.1016\/j.neucom.2019.12.136"},{"key":"5_CR43","unstructured":"Zhao, Z., Kunar, A., Birke, R., Chen, L.Y.: CTAB-GAN: Effective table data synthesizing. In: Balasubramanian, V.N., Tsang, I. (eds.) Proceedings of The 13th Asian Conference on Machine Learning. Proceedings of Machine Learning Research, vol.\u00a0157, pp. 97\u2013112. PMLR (Nov 2021)"},{"key":"5_CR44","doi-asserted-by":"publisher","unstructured":"Zhao, Z., Kunar, A., Birke, R., Van Der\u00a0Scheer, H., Chen, L.Y.: CTAB-GAN+: Enhancing tabular data synthesis 6, 1296508. https:\/\/doi.org\/10.3389\/fdata.2023.1296508, https:\/\/www.frontiersin.org\/articles\/10.3389\/fdata.2023.1296508\/full","DOI":"10.3389\/fdata.2023.1296508"},{"key":"5_CR45","unstructured":"Zhu, C., Tang, J., Brouwer, H., P\u00e9rez, J.F., van Dijk, M., Chen, L.Y.: Quantifying and mitigating privacy risks for tabular generative models (2024), https:\/\/arxiv.org\/abs\/2403.07842"}],"container-title":["Lecture Notes in Computer Science","Fundamental Approaches to Software Engineering"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-22774-4_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,16]],"date-time":"2026-04-16T09:21:01Z","timestamp":1776331261000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-22774-4_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032227737","9783032227744"],"references-count":45,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-22774-4_5","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"17 April 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"The authors have no competing interests to declare that are relevant to the content of this article.","order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Disclosure of Interests"}},{"value":"FASE","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Fundamental Approaches to Software Engineering","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Turin","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Italy","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2026","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11 April 2026","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 April 2026","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"fase2026","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/etaps.org\/2026\/conferences\/fase\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}