{"id":"https://openalex.org/W7138855234","doi":"https://doi.org/10.1109/globecom59602.2025.11432050","title":"Privacy Assessment of Text-to-Image Models via Enhanced Membership Inference Attack","display_name":"Privacy Assessment of Text-to-Image Models via Enhanced Membership Inference Attack","publication_year":2025,"publication_date":"2025-12-08","ids":{"openalex":"https://openalex.org/W7138855234","doi":"https://doi.org/10.1109/globecom59602.2025.11432050"},"language":null,"primary_location":{"id":"doi:10.1109/globecom59602.2025.11432050","is_oa":false,"landing_page_url":"https://doi.org/10.1109/globecom59602.2025.11432050","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"GLOBECOM 2025 - 2025 IEEE Global Communications Conference","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5036725114","display_name":"Ben Niu","orcid":"https://orcid.org/0000-0003-2898-7495"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Ben Niu","raw_affiliation_strings":["Chinese Academy of Sciences,Institute of Information Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Chinese Academy of Sciences,Institute of Information Engineering,P.R. China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5130011006","display_name":"Jiaqi Liu","orcid":null},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiaqi Liu","raw_affiliation_strings":["Chinese Academy of Sciences,Institute of Information Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Chinese Academy of Sciences,Institute of Information Engineering,P.R. China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108996912","display_name":"Likun Zhang","orcid":"https://orcid.org/0000-0001-9309-4541"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Likun Zhang","raw_affiliation_strings":["Chinese Academy of Sciences,Institute of Information Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Chinese Academy of Sciences,Institute of Information Engineering,P.R. China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039921045","display_name":"Yu Jiang","orcid":"https://orcid.org/0000-0003-4821-3585"},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yiming Jiang","raw_affiliation_strings":["Chinese Academy of Sciences,Institute of Information Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Chinese Academy of Sciences,Institute of Information Engineering,P.R. China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101287573","display_name":"Yuqiao Hou","orcid":null},"institutions":[{"id":"https://openalex.org/I19820366","display_name":"Chinese Academy of Sciences","ror":"https://ror.org/034t30j35","country_code":"CN","type":"government","lineage":["https://openalex.org/I19820366"]},{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuqiao Hou","raw_affiliation_strings":["Chinese Academy of Sciences,Institute of Information Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Chinese Academy of Sciences,Institute of Information Engineering,P.R. China","institution_ids":["https://openalex.org/I4210156404","https://openalex.org/I19820366"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101850333","display_name":"Jin Cao","orcid":"https://orcid.org/0000-0003-1372-7252"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jin Cao","raw_affiliation_strings":["Xidian University,School of Cyber Engineering,P.R. China"],"affiliations":[{"raw_affiliation_string":"Xidian University,School of Cyber Engineering,P.R. China","institution_ids":["https://openalex.org/I149594827"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5036725114"],"corresponding_institution_ids":["https://openalex.org/I19820366","https://openalex.org/I4210156404"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.88095488,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"2288","last_page":"2293"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.3668999969959259,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.3668999969959259,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12357","display_name":"Digital Media Forensic Detection","score":0.1404999941587448,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12859","display_name":"Cell Image Analysis Techniques","score":0.06310000270605087,"subfield":{"id":"https://openalex.org/subfields/1304","display_name":"Biophysics"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.7414000034332275},{"id":"https://openalex.org/keywords/metric","display_name":"Metric (unit)","score":0.4717000126838684},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.46059998869895935},{"id":"https://openalex.org/keywords/baseline","display_name":"Baseline (sea)","score":0.4066999852657318},{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.3928999900817871},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.37400001287460327},{"id":"https://openalex.org/keywords/discriminative-model","display_name":"Discriminative model","score":0.34209999442100525},{"id":"https://openalex.org/keywords/privacy-protection","display_name":"Privacy protection","score":0.31360000371932983}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7487000226974487},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.7414000034332275},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.5343999862670898},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5227000117301941},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5055000185966492},{"id":"https://openalex.org/C176217482","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Metric (unit)","level":2,"score":0.4717000126838684},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.46059998869895935},{"id":"https://openalex.org/C12725497","wikidata":"https://www.wikidata.org/wiki/Q810247","display_name":"Baseline (sea)","level":2,"score":0.4066999852657318},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.3928999900817871},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.37400001287460327},{"id":"https://openalex.org/C97931131","wikidata":"https://www.wikidata.org/wiki/Q5282087","display_name":"Discriminative model","level":2,"score":0.34209999442100525},{"id":"https://openalex.org/C3017597292","wikidata":"https://www.wikidata.org/wiki/Q25052250","display_name":"Privacy protection","level":2,"score":0.31360000371932983},{"id":"https://openalex.org/C30038468","wikidata":"https://www.wikidata.org/wiki/Q4354775","display_name":"Memorization","level":2,"score":0.31189998984336853},{"id":"https://openalex.org/C2780898871","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Performance metric","level":2,"score":0.3116999864578247},{"id":"https://openalex.org/C187191949","wikidata":"https://www.wikidata.org/wiki/Q1138496","display_name":"Profiling (computer programming)","level":2,"score":0.3095000088214874},{"id":"https://openalex.org/C12174686","wikidata":"https://www.wikidata.org/wiki/Q1058438","display_name":"Risk assessment","level":2,"score":0.3070000112056732},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.29910001158714294},{"id":"https://openalex.org/C33954974","wikidata":"https://www.wikidata.org/wiki/Q486494","display_name":"Sensor fusion","level":2,"score":0.2816999852657318},{"id":"https://openalex.org/C12590798","wikidata":"https://www.wikidata.org/wiki/Q3933199","display_name":"Replication (statistics)","level":2,"score":0.27950000762939453},{"id":"https://openalex.org/C67186912","wikidata":"https://www.wikidata.org/wiki/Q367664","display_name":"Data modeling","level":2,"score":0.25679999589920044},{"id":"https://openalex.org/C55037315","wikidata":"https://www.wikidata.org/wiki/Q5421151","display_name":"Experimental data","level":2,"score":0.2556000053882599}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/globecom59602.2025.11432050","is_oa":false,"landing_page_url":"https://doi.org/10.1109/globecom59602.2025.11432050","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"GLOBECOM 2025 - 2025 IEEE Global Communications Conference","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.5087260603904724}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":10,"referenced_works":["https://openalex.org/W2535690855","https://openalex.org/W2972112224","https://openalex.org/W3071470454","https://openalex.org/W4214622647","https://openalex.org/W4308410483","https://openalex.org/W4312933868","https://openalex.org/W4385269969","https://openalex.org/W4389195517","https://openalex.org/W4391697005","https://openalex.org/W4403792152"],"related_works":[],"abstract_inverted_index":{"Text-to-image":[0],"diffusion":[1],"models,":[2,50],"such":[3,35],"as":[4,36],"Stable":[5],"Diffusion":[6],"and":[7,12,126],"DALL-E,":[8],"can":[9],"generate":[10],"attractive":[11],"high-quality":[13],"images":[14],"for":[15,97],"various":[16],"applications.":[17],"However,":[18],"their":[19],"training":[20,40,45,123],"procedures":[21],"typically":[22],"depend":[23],"on":[24,87],"large-scale":[25],"image-text":[26],"paired":[27],"datasets,":[28],"raising":[29],"concerns":[30],"about":[31],"potential":[32],"privacy":[33,54,127,150],"leakage":[34,151],"test-time":[37],"replication":[38],"of":[39,60,106,122,153],"data.":[41],"To":[42],"quantify":[43],"the":[44,58,104,120,142],"data":[46,124],"memorization":[47],"in":[48,134],"text-to-image":[49,154],"we":[51,91],"introduce":[52],"a":[53,93],"assessment":[55,108],"framework":[56,116],"through":[57,72],"lens":[59],"an":[61],"enhanced":[62],"membership":[63,144],"inference":[64,145],"method.":[65],"It":[66],"involves":[67],"iteratively":[68],"refining":[69],"text":[70],"prompts":[71],"multiple":[73],"optimization":[74],"cycles":[75],"to":[76],"identify":[77],"input":[78],"formulations":[79],"that":[80,113],"yield":[81],"maximally":[82],"aligned":[83],"output":[84],"images.":[85],"Building":[86],"these":[88],"optimized":[89],"results,":[90],"propose":[92],"visual-semantic":[94],"fusion":[95],"metric":[96],"assessing":[98],"model":[99],"memorization.":[100],"We":[101],"extensively":[102],"evaluate":[103],"effectiveness":[105],"our":[107,114,138],"framework.":[109],"Experimental":[110],"results":[111],"demonstrate":[112],"evaluation":[115],"successfully":[117],"quantifies":[118],"both":[119],"extent":[121],"retention":[125],"risks,":[128],"achieving":[129],"overall":[130],"90%":[131],"detection":[132],"accuracy":[133],"validation":[135],"tests.":[136],"Meanwhile,":[137],"method":[139],"significantly":[140],"outperforms":[141],"baseline":[143],"methods,":[146],"which":[147],"largely":[148],"underestimate":[149],"risk":[152],"models.":[155]},"counts_by_year":[],"updated_date":"2026-03-20T20:54:20.808490","created_date":"2026-03-20T00:00:00"}
