{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,3]],"date-time":"2026-06-03T07:26:32Z","timestamp":1780471592698,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":19,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,11,7]],"date-time":"2022-11-07T00:00:00Z","timestamp":1667779200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,11,11]]},"DOI":"10.1145\/3560830.3563731","type":"proceedings-article","created":{"date-parts":[[2022,11,2]],"date-time":"2022-11-02T22:32:41Z","timestamp":1667428361000},"page":"25-31","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":4,"title":["Forgeability and Membership Inference Attacks"],"prefix":"10.1145","author":[{"given":"Zhifeng","family":"Kong","sequence":"first","affiliation":[{"name":"UCSD, San Diego, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Amrita","family":"Roy Chowdhury","sequence":"additional","affiliation":[{"name":"UCSD, San Diego, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kamalika","family":"Chaudhuri","sequence":"additional","affiliation":[{"name":"UCSD, San Diego, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"https:\/\/gdpr-info.eu\/","author":"General","year":"2016","unstructured":"General data protection regulation gdpr. https:\/\/gdpr-info.eu\/ , 2016 . General data protection regulation gdpr. https:\/\/gdpr-info.eu\/, 2016."},{"key":"e_1_3_2_1_2_1","volume-title":"https:\/\/oag.ca.gov\/privacy\/ccpa","author":"California","year":"2018","unstructured":"California consumer privacy act (ccpa). https:\/\/oag.ca.gov\/privacy\/ccpa , 2018 . California consumer privacy act (ccpa). https:\/\/oag.ca.gov\/privacy\/ccpa, 2018."},{"key":"e_1_3_2_1_3_1","volume-title":"https:\/\/blog.tensorflow.org\/2020\/06\/introducing-new-privacy-testinglibrary.html","author":"Introducing","year":"2020","unstructured":"Introducing a new privacy testing library in tensorflow. https:\/\/blog.tensorflow.org\/2020\/06\/introducing-new-privacy-testinglibrary.html , 2020 . Introducing a new privacy testing library in tensorflow. https:\/\/blog.tensorflow.org\/2020\/06\/introducing-new-privacy-testinglibrary.html, 2020."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00019"},{"key":"e_1_3_2_1_5_1","volume-title":"Membership inference attacks from first principles","author":"Carlini Nicholas","year":"2021","unstructured":"Nicholas Carlini , Steve Chien , Milad Nasr , Shuang Song , Andreas Terzis , and Florian Tramer . Membership inference attacks from first principles , 2021 . Nicholas Carlini, Steve Chien, Milad Nasr, Shuang Song, Andreas Terzis, and Florian Tramer. Membership inference attacks from first principles, 2021."},{"key":"e_1_3_2_1_6_1","volume-title":"Membership inference attacks from first principles. arXiv preprint arXiv:2112.03570","author":"Carlini Nicholas","year":"2021","unstructured":"Nicholas Carlini , Steve Chien , Milad Nasr , Shuang Song , Andreas Terzis , and Florian Tramer . Membership inference attacks from first principles. arXiv preprint arXiv:2112.03570 , 2021 . Nicholas Carlini, Steve Chien, Milad Nasr, Shuang Song, Andreas Terzis, and Florian Tramer. Membership inference attacks from first principles. arXiv preprint arXiv:2112.03570, 2021."},{"key":"e_1_3_2_1_7_1","volume-title":"H. Wallach, H. Larochelle, A. Beygelzimer, F. d'Alch\u00e9-Buc","author":"Chaudhuri Kamalika","year":"2019","unstructured":"Kamalika Chaudhuri , Jacob Imola , and Ashwin Machanavajjhala . Capacity bounded differential privacy . In H. Wallach, H. Larochelle, A. Beygelzimer, F. d'Alch\u00e9-Buc , E. Fox, and R. Garnett, editors, Advances in Neural Information Processing Systems, volume 32 . Curran Associates, Inc ., 2019 . Kamalika Chaudhuri, Jacob Imola, and Ashwin Machanavajjhala. Capacity bounded differential privacy. In H. Wallach, H. Larochelle, A. Beygelzimer, F. d'Alch\u00e9-Buc, E. Fox, and R. Garnett, editors, Advances in Neural Information Processing Systems, volume 32. Curran Associates, Inc., 2019."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.00932"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58526-6_23"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1609\/aaai.v35i13.17371"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/3524938.3525297"},{"key":"e_1_3_2_1_12_1","volume-title":"AISTATS","author":"Izzo Zachary","year":"2021","unstructured":"Zachary Izzo , Mary Anne Smart , Kamalika Chaudhuri , and James Y. Zou . Approximate data deletion from machine learning models . In AISTATS , 2021 . Zachary Izzo, Mary Anne Smart, Kamalika Chaudhuri, and James Y. Zou. Approximate data deletion from machine learning models. In AISTATS, 2021."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2021-0031"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1162\/neco.1989.1.4.541"},{"key":"e_1_3_2_1_15_1","volume-title":"Mnist handwritten digit database. ATT Labs [Online]. Available: http:\/\/yann.lecun.com\/exdb\/mnist, 2","author":"LeCun Yann","year":"2010","unstructured":"Yann LeCun , Corinna Cortes , and CJ Burges . Mnist handwritten digit database. ATT Labs [Online]. Available: http:\/\/yann.lecun.com\/exdb\/mnist, 2 , 2010 . Yann LeCun, Corinna Cortes, and CJ Burges. Mnist handwritten digit database. ATT Labs [Online]. Available: http:\/\/yann.lecun.com\/exdb\/mnist, 2, 2010."},{"key":"e_1_3_2_1_16_1","volume-title":"ML privacy meter: Aiding regulatory compliance by quantifying the privacy risks of machine learning. CoRR, abs\/2007.09339","author":"Murakonda Sasi Kumar","year":"2020","unstructured":"Sasi Kumar Murakonda and Reza Shokri . ML privacy meter: Aiding regulatory compliance by quantifying the privacy risks of machine learning. CoRR, abs\/2007.09339 , 2020 . Sasi Kumar Murakonda and Reza Shokri. ML privacy meter: Aiding regulatory compliance by quantifying the privacy risks of machine learning. CoRR, abs\/2007.09339, 2020."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.41"},{"key":"e_1_3_2_1_18_1","volume-title":"31st USENIX Security Symposium (USENIX Security 22)","author":"Thudi Anvith","year":"2022","unstructured":"Anvith Thudi , Hengrui Jia , Ilia Shumailov , and Nicolas Papernot . On the necessity of auditable algorithmic definitions for machine unlearning . In 31st USENIX Security Symposium (USENIX Security 22) , Boston, MA , August 2022 . USENIX Association. Anvith Thudi, Hengrui Jia, Ilia Shumailov, and Nicolas Papernot. On the necessity of auditable algorithmic definitions for machine unlearning. In 31st USENIX Security Symposium (USENIX Security 22), Boston, MA, August 2022. USENIX Association."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"}],"event":{"name":"CCS '22: 2022 ACM SIGSAC Conference on Computer and Communications Security","location":"Los Angeles CA USA","acronym":"CCS '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 15th ACM Workshop on Artificial Intelligence and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3560830.3563731","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3560830.3563731","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:00:34Z","timestamp":1750186834000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3560830.3563731"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,11,7]]},"references-count":19,"alternative-id":["10.1145\/3560830.3563731","10.1145\/3560830"],"URL":"https:\/\/doi.org\/10.1145\/3560830.3563731","relation":{},"subject":[],"published":{"date-parts":[[2022,11,7]]},"assertion":[{"value":"2022-11-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}