DISCO: Dynamic and Invariant Sensitive Channel Obfuscation for deep neural networks

12/20/2020
by   Abhishek Singh, et al.
18

Recent deep learning models have shown remarkable performance in image classification. While these deep learning systems are getting closer to practical deployment, the common assumption made about data is that it does not carry any sensitive information. This assumption may not hold for many practical cases, especially in the domain where an individual's personal information is involved, like healthcare and facial recognition systems. We posit that selectively removing features in this latent space can protect the sensitive information and provide a better privacy-utility trade-off. Consequently, we propose DISCO which learns a dynamic and data driven pruning filter to selectively obfuscate sensitive information in the feature space. We propose diverse attack schemes for sensitive inputs & attributes and demonstrate the effectiveness of DISCO against state-of-the-art methods through quantitative and qualitative evaluation. Finally, we also release an evaluation benchmark dataset of 1 million sensitive representations to encourage rigorous exploration of novel attack schemes.

READ FULL TEXT

page 3

page 5

page 8

page 13

research
07/03/2018

Securing Input Data of Deep Learning Inference Systems via Partitioned Enclave Execution

Deep learning systems have been widely deployed as backend engines of ar...
research
02/27/2022

Vertical Machine Unlearning: Selectively Removing Sensitive Information From Latent Feature Space

Recently, the enactment of privacy regulations has promoted the rise of ...
research
04/12/2019

Distributed Layer-Partitioned Training for Privacy-Preserved Deep Learning

Deep Learning techniques have achieved remarkable results in many domain...
research
06/18/2019

On the Robustness of the Backdoor-based Watermarking in Deep Neural Networks

Obtaining the state of the art performance of deep learning models impos...
research
06/18/2021

A Survey of Privacy Vulnerabilities of Mobile Device Sensors

The number of mobile devices, such as smartphones and smartwatches, is r...
research
04/05/2021

Perceptual Indistinguishability-Net (PI-Net): Facial Image Obfuscation with Manipulable Semantics

With the growing use of camera devices, the industry has many image data...
research
08/04/2022

Privacy Safe Representation Learning via Frequency Filtering Encoder

Deep learning models are increasingly deployed in real-world application...

Please sign up or login with your details

Forgot password? Click here to reset