trailofbits / PrivacyRaven

Privacy Testing for Deep Learning
Apache License 2.0
184 stars 16 forks source link

Create an aggregated embedding for membership inference hot spots #41

Open suhacker1 opened 4 years ago

suhacker1 commented 4 years ago

Is your feature request related to a problem? Please describe. We need a clarifying visual to showcase the privacy risks of membership inference, especially as it varies between classes.

Describe the solution you'd like. An aggregated embedding similar to Figure 4 of Understanding and Visualizing Data Iteration in Machine Learning would be useful. Highlight the worst case.

Describe alternatives you've considered. Please comment any alternatives.