Initialization Matters: Privacy-Utility Analysis of Overparameterized Neural Networks Jiayuan Y e

Neural Information Processing Systems 

Deep neural networks (DNNs) in the over-parameterized regime (i.e., more parameters than data) perform well in practice but the model predictions can easily leak private information about the