Pseudo-Private Data Guided Model Inversion Attacks

Neural Information Processing Systems 

In model inversion attacks (MIAs), adversaries attempt to recover the private training data by exploiting access to a well-trained target model.