{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:17:31Z","timestamp":1750220251227,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":13,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,4,14]],"date-time":"2022-04-14T00:00:00Z","timestamp":1649894400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"BMK","award":["873979 (PRIMAL)"],"award-info":[{"award-number":["873979 (PRIMAL)"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,4,14]]},"DOI":"10.1145\/3508398.3519361","type":"proceedings-article","created":{"date-parts":[[2022,4,16]],"date-time":"2022-04-16T04:13:31Z","timestamp":1650082411000},"page":"373-375","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["Macro-level Inference in Collaborative Learning"],"prefix":"10.1145","author":[{"given":"Rudolf","family":"Mayer","sequence":"first","affiliation":[{"name":"SBA Research gGmbH, Vienna, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andreas","family":"Ekelhart","sequence":"additional","affiliation":[{"name":"SBA Research gGmbH, Vienna, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,4,15]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1504\/IJSN.2015.071829"},{"key":"e_1_3_2_1_2_1","volume-title":"How To Backdoor Federated Learning. In International Conference on Artificial Intelligence and Statistics (AISTATS)","author":"Bagdasaryan Eugene","year":"2020","unstructured":"Eugene Bagdasaryan , Andreas Veit , Yiqing Hua , Deborah Estrin , and Vitaly Shmatikov . 2020 . How To Backdoor Federated Learning. In International Conference on Artificial Intelligence and Statistics (AISTATS) ( Palermo, Italy). Eugene Bagdasaryan, Andreas Veit, Yiqing Hua, Deborah Estrin, and Vitaly Shmatikov. 2020. How To Backdoor Federated Learning. In International Conference on Artificial Intelligence and Statistics (AISTATS) (Palermo, Italy)."},{"key":"e_1_3_2_1_3_1","volume-title":"Pattern Recognition","volume":"84","author":"Biggio Battista","year":"2018","unstructured":"Battista Biggio and Fabio Roli . 2018 . Wild patterns: Ten years after the rise of adversarial machine learning . Pattern Recognition , Vol. 84 (2018). Battista Biggio and Fabio Roli. 2018. Wild patterns: Ten years after the rise of adversarial machine learning. Pattern Recognition , Vol. 84 (2018)."},{"key":"e_1_3_2_1_4_1","volume-title":"Model Inversion Attacks That Exploit Confidence Information and Basic Countermeasures. In ACM SIGSAC Conference on Computer and Communications Security (CCS)","author":"Fredrikson Matt","year":"2015","unstructured":"Matt Fredrikson , Somesh Jha , and Thomas Ristenpart . 2015 . Model Inversion Attacks That Exploit Confidence Information and Basic Countermeasures. In ACM SIGSAC Conference on Computer and Communications Security (CCS) ( Denver, USA). ACM. Matt Fredrikson, Somesh Jha, and Thomas Ristenpart. 2015. Model Inversion Attacks That Exploit Confidence Information and Basic Countermeasures. In ACM SIGSAC Conference on Computer and Communications Security (CCS) (Denver, USA). ACM."},{"key":"e_1_3_2_1_5_1","volume-title":"Privacy in Pharmacogenetics: An End-to-End Case Study of Personalized Warfarin Dosing. In USENIX Security Symposium","author":"Fredrikson Matthew","year":"2014","unstructured":"Matthew Fredrikson , Eric Lantz , Somesh Jha , Simon Lin , David Page , and Thomas Ristenpart . 2014 . Privacy in Pharmacogenetics: An End-to-End Case Study of Personalized Warfarin Dosing. In USENIX Security Symposium ( San Diego, CA). USENIX Association. Matthew Fredrikson, Eric Lantz, Somesh Jha, Simon Lin, David Page, and Thomas Ristenpart. 2014. Privacy in Pharmacogenetics: An End-to-End Case Study of Personalized Warfarin Dosing. In USENIX Security Symposium (San Diego, CA). USENIX Association."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243834"},{"key":"e_1_3_2_1_7_1","unstructured":"Hongsheng Hu Zoran Salcic Lichao Sun Gillian Dobbie Philip S. Yu and Xuyun Zhang. 2021. Membership Inference Attacks on Machine Learning: A Survey . arXiv: 2103.07853.  Hongsheng Hu Zoran Salcic Lichao Sun Gillian Dobbie Philip S. Yu and Xuyun Zhang. 2021. Membership Inference Attacks on Machine Learning: A Survey . arXiv: 2103.07853."},{"volume-title":"AMIA Annual Symposium Proceedings .","author":"Prasser Fabian","key":"e_1_3_2_1_8_1","unstructured":"Fabian Prasser , Florian Kohlmayer , Ronald Lautenschl\u00e4ger , and Klaus A. Kuhn . 2014. ARX--A Comprehensive Tool for Anonymizing Biomedical Data . AMIA Annual Symposium Proceedings . Fabian Prasser, Florian Kohlmayer, Ronald Lautenschl\u00e4ger, and Klaus A. Kuhn. 2014. ARX--A Comprehensive Tool for Anonymizing Biomedical Data . AMIA Annual Symposium Proceedings ."},{"key":"e_1_3_2_1_9_1","volume-title":"Information Leaks in Federated Learning. In Workshop on Decentralized IoT Systems and Security","author":"Pustozerova Anastassiya","year":"2020","unstructured":"Anastassiya Pustozerova and Rudolf Mayer . 2020 . Information Leaks in Federated Learning. In Workshop on Decentralized IoT Systems and Security ( San Diego, CA). Internet Society. Anastassiya Pustozerova and Rudolf Mayer. 2020. Information Leaks in Federated Learning. In Workshop on Decentralized IoT Systems and Security (San Diego, CA). Internet Society."},{"key":"e_1_3_2_1_10_1","volume-title":"ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models. In Network and Distributed System Security Symposium","author":"Salem Ahmed","year":"2019","unstructured":"Ahmed Salem , Yang Zhang , Mathias Humbert , Pascal Berrang , Mario Fritz , and Michael Backes . 2019 . ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models. In Network and Distributed System Security Symposium ( San Diego, USA). Internet Society. Ahmed Salem, Yang Zhang, Mathias Humbert, Pascal Berrang, Mario Fritz, and Michael Backes. 2019. ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models. In Network and Distributed System Security Symposium (San Diego, USA). Internet Society."},{"key":"e_1_3_2_1_11_1","volume-title":"Membership Inference Attacks Against Machine Learning Models. In 2017 IEEE Symposium on Security and Privacy (SP)","author":"Shokri Reza","year":"2017","unstructured":"Reza Shokri , Marco Stronati , Congzheng Song , and Vitaly Shmatikov . 2017 . Membership Inference Attacks Against Machine Learning Models. In 2017 IEEE Symposium on Security and Privacy (SP) ( San Jose, USA). IEEE. Reza Shokri, Marco Stronati, Congzheng Song, and Vitaly Shmatikov. 2017. Membership Inference Attacks Against Machine Learning Models. In 2017 IEEE Symposium on Security and Privacy (SP) (San Jose, USA). IEEE."},{"key":"e_1_3_2_1_12_1","volume-title":"Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning. In IEEE Conference on Computer Communications (INFOCOM)","author":"Wang Zhibo","year":"2019","unstructured":"Zhibo Wang , Mengkai Song , Zhifei Zhang , Yang Song , Qian Wang , and Hairong Qi . 2019 . Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning. In IEEE Conference on Computer Communications (INFOCOM) ( Paris, France). IEEE. Zhibo Wang, Mengkai Song, Zhifei Zhang, Yang Song, Qian Wang, and Hairong Qi. 2019. Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning. In IEEE Conference on Computer Communications (INFOCOM) (Paris, France). IEEE."},{"key":"e_1_3_2_1_13_1","volume-title":"The Secret Revealer: Generative Model-Inversion Attacks Against Deep Neural Networks. In IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). IEEE.","author":"Zhang Yuheng","year":"2020","unstructured":"Yuheng Zhang , Ruoxi Jia , Hengzhi Pei , Wenxiao Wang , Bo Li , and Dawn Song . 2020 . The Secret Revealer: Generative Model-Inversion Attacks Against Deep Neural Networks. In IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). IEEE. Yuheng Zhang, Ruoxi Jia, Hengzhi Pei, Wenxiao Wang, Bo Li, and Dawn Song. 2020. The Secret Revealer: Generative Model-Inversion Attacks Against Deep Neural Networks. In IEEE\/CVF Conference on Computer Vision and Pattern Recognition (CVPR). IEEE."}],"event":{"name":"CODASPY '22: Twelveth ACM Conference on Data and Application Security and Privacy","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Baltimore MD USA","acronym":"CODASPY '22"},"container-title":["Proceedings of the Twelfth ACM Conference on Data and Application Security and Privacy"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3508398.3519361","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3508398.3519361","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:30:40Z","timestamp":1750188640000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3508398.3519361"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,4,14]]},"references-count":13,"alternative-id":["10.1145\/3508398.3519361","10.1145\/3508398"],"URL":"https:\/\/doi.org\/10.1145\/3508398.3519361","relation":{},"subject":[],"published":{"date-parts":[[2022,4,14]]},"assertion":[{"value":"2022-04-15","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}