hyhmia / BlindMI

MIT License
22 stars 6 forks source link

About how to test BlindMI on defense like MemGuard? #1

Open kitaharasetusna opened 1 year ago

kitaharasetusna commented 1 year ago

Hi! hyhmia. It turns out defense you mentioned like MemGuard split data differently like your paper(e.g. in CH-MNIST dataset, target dataset is whole dataset in your paper while in MemGuard, they used only 2000 data as the targer dataset), if it's possible, can you help me find out how you test BlindMI on CH-MNIST dataset as an example? Thank you so much!

kitaharasetusna commented 1 year ago

It will be much appreciated if there can be some sample codes for testing it on MemGuard.