The Privacy Onion Effect: Memorization is Relative
–Neural Information Processing Systems
Machine learning models trained on private datasets have been shown to leak their private data. While recent work has found that the average data point is rarely leaked, the outlier samples are frequently subject to memorization and, consequently, privacy leakage.
Neural Information Processing Systems
Aug-14-2025, 22:52:16 GMT