Similarity Distribution based Membership Inference Attack on Person Re-identification

11/29/2022
by   Junyao Gao, et al.
0

While person Re-identification (Re-ID) has progressed rapidly due to its wide real-world applications, it also causes severe risks of leaking personal information from training data. Thus, this paper focuses on quantifying this risk by membership inference (MI) attack. Most of the existing MI attack algorithms focus on classification models, while Re-ID follows a totally different training and inference paradigm. Re-ID is a fine-grained recognition task with complex feature embedding, and model outputs commonly used by existing MI like logits and losses are not accessible during inference. Since Re-ID focuses on modelling the relative relationship between image pairs instead of individual semantics, we conduct a formal and empirical analysis which validates that the distribution shift of the inter-sample similarity between training and test set is a critical criterion for Re-ID membership inference. As a result, we propose a novel membership inference attack method based on the inter-sample similarity distribution. Specifically, a set of anchor images are sampled to represent the similarity distribution conditioned on a target image, and a neural network with a novel anchor selection module is proposed to predict the membership of the target image. Our experiments validate the effectiveness of the proposed approach on both the Re-ID task and conventional classification task.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/04/2022

User-Level Membership Inference Attack against Metric Embedding Learning

Membership inference (MI) determines if a sample was part of a victim mo...
research
11/20/2022

Invisible Backdoor Attack with Dynamic Triggers against Person Re-identification

In recent years, person Re-identification (ReID) has rapidly progressed ...
research
10/30/2019

Universal Adversarial Perturbations Against Person Re-Identification

Person re-identification (re-ID) has made great progress and achieved hi...
research
07/27/2018

Adversarial Open-World Person Re-Identification

In a typical real-world application of re-id, a watch-list (gallery set)...
research
03/10/2022

Annotation Efficient Person Re-Identification with Diverse Cluster-Based Pair Selection

Person Re-identification (Re-ID) has attracted great attention due to it...
research
04/07/2020

Unsupervised Person Re-identification via Softened Similarity Learning

Person re-identification (re-ID) is an important topic in computer visio...
research
06/10/2021

The 2021 Hotel-ID to Combat Human Trafficking Competition Dataset

Hotel recognition is an important task for human trafficking investigati...

Please sign up or login with your details

Forgot password? Click here to reset