notesum.ai
Published at November 13Trap-MID: Trapdoor-based Defense against Model Inversion Attacks
cs.CR
cs.AI
cs.CV
cs.LG
Released Date: November 13, 2024
Authors: Zhen-Ting Liu1, Shang-Tse Chen1
Aff.: 1National Taiwan University

| Defense | Acc | AA-1 | AA-5 | KNN Dist | FID |
|---|---|---|---|---|---|
| GMI | |||||
| - | 86.21 0.91 | 14.29 0.63 | 32.64 0.67 | 1798.23 3.57 | 31.01 1.06 |
| MID | 77.89 0.70 | 9.88 0.89 | 23.58 2.09 | 1894.38 25.02 | 35.60 0.73 |
| BiDO | 78.97 0.44 | 4.92 0.32 | 14.03 0.96 | 2020.05 13.10 | 46.79 1.42 |
| NegLS | 81.99 0.45 | 7.80 0.55 | 23.10 0.74 | 1797.49 9.29 | 40.92 1.53 |
| Trap-MID | 81.37 1.04 | 0.24 0.19 | 1.16 0.83 | 2411.39 80.80 | 153.73 62.84 |
| KED-MI | |||||
| - | 86.21 0.91 | 56.46 2.56 | 82.84 1.66 | 1404.85 11.96 | 17.10 1.09 |
| MID | 77.89 0.70 | 53.24 4.46 | 80.08 3.55 | 1413.49 33.05 | 18.45 1.29 |
| BiDO | 78.97 0.44 | 34.84 1.27 | 62.42 1.42 | 1530.94 9.53 | 20.95 0.83 |
| NegLS | 81.99 0.45 | 32.45 1.81 | 62.13 2.64 | 1543.70 7.36 | 39.02 4.87 |
| Trap-MID | 81.37 1.04 | 9.24 9.36 | 19.24 18.65 | 2056.00 311.59 | 87.39 66.40 |
| PLG-MI | |||||
| - | 86.21 0.91 | 95.81 1.63 | 99.43 0.26 | 1174.13 31.82 | 12.77 0.59 |
| MID | 77.89 0.70 | 92.72 1.64 | 98.64 0.40 | 1149.64 19.26 | 14.36 2.26 |
| BiDO | 78.97 0.44 | 89.18 1.59 | 97.64 0.41 | 1242.04 21.25 | 16.82 1.62 |
| NegLS | 81.99 0.45 | 89.38 3.35 | 97.81 0.94 | 1412.19 56.72 | 69.02 10.94 |
| Trap-MID | 81.37 1.04 | 6.23 5.60 | 13.15 10.30 | 2055.96 147.67 | 57.82 23.41 |