Amplifying Membership Exposure via Data Poisoning Y ufei Chen
–Neural Information Processing Systems
We first propose a generic dirty-label attack for supervised classification algorithms. We then propose an optimization-based clean-label attack in the transfer learning scenario, whereby the poisoning samples are correctly labeled and look "natural" to evade human moderation.
Neural Information Processing Systems
Nov-16-2025, 00:21:05 GMT
- Country:
- Asia > China
- Hong Kong (0.04)
- Shaanxi Province > Xi'an (0.04)
- North America
- Canada > Ontario
- Toronto (0.04)
- United States > California
- Santa Clara County > Palo Alto (0.04)
- Canada > Ontario
- Asia > China
- Genre:
- Research Report > New Finding (0.69)
- Industry:
- Health & Medicine (0.68)
- Information Technology > Security & Privacy (1.00)
- Technology: