{"id":"https://openalex.org/W4413977843","doi":"https://doi.org/10.1109/tdsc.2025.3601844","title":"Untargeted Poisoning Membership Inference With Sample Selection and Enhancement","display_name":"Untargeted Poisoning Membership Inference With Sample Selection and Enhancement","publication_year":2025,"publication_date":"2025-09-04","ids":{"openalex":"https://openalex.org/W4413977843","doi":"https://doi.org/10.1109/tdsc.2025.3601844"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2025.3601844","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3601844","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100432337","display_name":"Jian Li","orcid":"https://orcid.org/0009-0009-2559-9674"},"institutions":[{"id":"https://openalex.org/I9224756","display_name":"Northeastern University","ror":"https://ror.org/03awzbc87","country_code":"CN","type":"education","lineage":["https://openalex.org/I9224756"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Jian Li","raw_affiliation_strings":["School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China","institution_ids":["https://openalex.org/I9224756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5079763362","display_name":"Xiaochun Yang","orcid":"https://orcid.org/0000-0002-6184-4771"},"institutions":[{"id":"https://openalex.org/I9224756","display_name":"Northeastern University","ror":"https://ror.org/03awzbc87","country_code":"CN","type":"education","lineage":["https://openalex.org/I9224756"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaochun Yang","raw_affiliation_strings":["School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China","institution_ids":["https://openalex.org/I9224756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011383481","display_name":"Wanlun Ma","orcid":"https://orcid.org/0000-0002-6305-1740"},"institutions":[{"id":"https://openalex.org/I57093077","display_name":"Swinburne University of Technology","ror":"https://ror.org/031rekg67","country_code":"AU","type":"education","lineage":["https://openalex.org/I57093077"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Wanlun Ma","raw_affiliation_strings":["School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I57093077"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100372342","display_name":"Bin Wang","orcid":"https://orcid.org/0000-0002-2694-1023"},"institutions":[{"id":"https://openalex.org/I9224756","display_name":"Northeastern University","ror":"https://ror.org/03awzbc87","country_code":"CN","type":"education","lineage":["https://openalex.org/I9224756"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Bin Wang","raw_affiliation_strings":["School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China"],"affiliations":[{"raw_affiliation_string":"School of Computer Science and Engineering, Northeastern University, Shenyang, Liaoning, China","institution_ids":["https://openalex.org/I9224756"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076576641","display_name":"Sheng Wen","orcid":"https://orcid.org/0000-0003-0655-666X"},"institutions":[{"id":"https://openalex.org/I57093077","display_name":"Swinburne University of Technology","ror":"https://ror.org/031rekg67","country_code":"AU","type":"education","lineage":["https://openalex.org/I57093077"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Sheng Wen","raw_affiliation_strings":["School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I57093077"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100666554","display_name":"Yang Xiang","orcid":"https://orcid.org/0000-0001-5252-0831"},"institutions":[{"id":"https://openalex.org/I57093077","display_name":"Swinburne University of Technology","ror":"https://ror.org/031rekg67","country_code":"AU","type":"education","lineage":["https://openalex.org/I57093077"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Yang Xiang","raw_affiliation_strings":["School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia"],"affiliations":[{"raw_affiliation_string":"School of Science, Computing and Engineering Technologies, Swinburne University of Technology, Melbourne, VIC, Australia","institution_ids":["https://openalex.org/I57093077"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5100432337"],"corresponding_institution_ids":["https://openalex.org/I9224756"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.12235911,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"23","issue":"1","first_page":"386","last_page":"402"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.48500001430511475,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.48500001430511475,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T13095","display_name":"Plant-based Medicinal Research","score":0.43959999084472656,"subfield":{"id":"https://openalex.org/subfields/3004","display_name":"Pharmacology"},"field":{"id":"https://openalex.org/fields/30","display_name":"Pharmacology, Toxicology and Pharmaceutics"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}},{"id":"https://openalex.org/T10800","display_name":"Forensic Toxicology and Drug Analysis","score":0.42100000381469727,"subfield":{"id":"https://openalex.org/subfields/3005","display_name":"Toxicology"},"field":{"id":"https://openalex.org/fields/30","display_name":"Pharmacology, Toxicology and Pharmaceutics"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6404722332954407},{"id":"https://openalex.org/keywords/selection","display_name":"Selection (genetic algorithm)","score":0.6288063526153564},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.6044780015945435},{"id":"https://openalex.org/keywords/sample","display_name":"Sample (material)","score":0.5827688574790955},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3771487772464752},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.34283748269081116},{"id":"https://openalex.org/keywords/chemistry","display_name":"Chemistry","score":0.07272779941558838}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6404722332954407},{"id":"https://openalex.org/C81917197","wikidata":"https://www.wikidata.org/wiki/Q628760","display_name":"Selection (genetic algorithm)","level":2,"score":0.6288063526153564},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.6044780015945435},{"id":"https://openalex.org/C198531522","wikidata":"https://www.wikidata.org/wiki/Q485146","display_name":"Sample (material)","level":2,"score":0.5827688574790955},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3771487772464752},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.34283748269081116},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.07272779941558838},{"id":"https://openalex.org/C43617362","wikidata":"https://www.wikidata.org/wiki/Q170050","display_name":"Chromatography","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tdsc.2025.3601844","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3601844","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":48,"referenced_works":["https://openalex.org/W2473418344","https://openalex.org/W2535690855","https://openalex.org/W2795435272","https://openalex.org/W2930926105","https://openalex.org/W2946363484","https://openalex.org/W2962763344","https://openalex.org/W2963378725","https://openalex.org/W2963857521","https://openalex.org/W2966342255","https://openalex.org/W3034414373","https://openalex.org/W3087391814","https://openalex.org/W3100213383","https://openalex.org/W3135347465","https://openalex.org/W3187979413","https://openalex.org/W3214437258","https://openalex.org/W4225004701","https://openalex.org/W4285602113","https://openalex.org/W4288057780","https://openalex.org/W4296499651","https://openalex.org/W4308643663","https://openalex.org/W4312331363","https://openalex.org/W4313547874","https://openalex.org/W4367046777","https://openalex.org/W4380362251","https://openalex.org/W4382024108","https://openalex.org/W4382450048","https://openalex.org/W4384204449","https://openalex.org/W4385679801","https://openalex.org/W4385885222","https://openalex.org/W4387303170","https://openalex.org/W4387353472","https://openalex.org/W4387741967","https://openalex.org/W4390204291","https://openalex.org/W4390871881","https://openalex.org/W4391620743","https://openalex.org/W4391974554","https://openalex.org/W4392932155","https://openalex.org/W4400275557","https://openalex.org/W4404293760","https://openalex.org/W4404418444","https://openalex.org/W4406098816","https://openalex.org/W4406610709","https://openalex.org/W4407008852","https://openalex.org/W4407236106","https://openalex.org/W4407733279","https://openalex.org/W4410252675","https://openalex.org/W4410394431","https://openalex.org/W4411408927"],"related_works":["https://openalex.org/W2055243143","https://openalex.org/W4205762803","https://openalex.org/W2535856026","https://openalex.org/W2265065644","https://openalex.org/W1986418932","https://openalex.org/W2357796999","https://openalex.org/W4321636575","https://openalex.org/W1185300216","https://openalex.org/W2741131631","https://openalex.org/W2045526782"],"abstract_inverted_index":{"Untargeted":[0],"poisoning":[1],"membership":[2,102],"inference":[3,103],"(PMI)":[4],"attacks":[5],"are":[6,45,223],"a":[7,37,132,168],"newly":[8],"emerging":[9],"privacy":[10,21,56,216],"threat":[11],"that":[12,66,81,108,171,183,211],"evaluates":[13],"the":[14,20,25,49,64,73,99,127,138,151,161,164,176,188,199,207],"impact":[15],"of":[16,101,163,201],"poisoned":[17,42,68,121],"samples":[18,34,85,111,122,154,222],"on":[19],"leakage":[22,57,217],"risk":[23],"in":[24,54,115],"model's":[26],"training":[27,50],"dataset.":[28,51],"Existing":[29],"approaches":[30],"typically":[31],"select":[32,150],"target":[33,84,110,139,153,178,221],"randomly":[35,82],"from":[36,89],"candidate":[38],"dataset":[39],"to":[40,72,93,119,126,149,175,198],"generate":[41,120],"samples,":[43,96],"which":[44,97],"then":[46,106],"injected":[47],"into":[48],"While":[52],"effective":[53],"amplifying":[55],"risks,":[58],"this":[59,76],"random":[60],"selection":[61,141],"strategy":[62],"overlooks":[63],"fact":[65],"each":[67],"sample":[69,140],"contributes":[70,123],"unequally":[71],"attack.":[74,128],"In":[75],"paper,":[77],"we":[78,130,145,166],"first":[79],"observe":[80],"selected":[83,177,224],"may":[86],"be":[87],"distant":[88],"and":[90,142,229],"dispersed":[91],"relative":[92],"high-confidence":[94],"benign":[95],"restricts":[98],"effectiveness":[100,162,228],"attacks.":[104],"We":[105],"show":[107],"selecting":[109],"with":[112],"high":[113],"confidence":[114],"their":[116],"ground-truth":[117],"class":[118],"more":[124],"significantly":[125,186],"Therefore,":[129],"propose":[131],"novel":[133],"untargeted":[134],"PMI":[135],"attack":[136,189],"incorporating":[137],"enhancement.":[143],"Specifically,":[144],"train":[146],"shadow":[147],"models":[148],"highest-confidence":[152],"for":[155],"poison":[156],"generation.":[157],"To":[158],"further":[159],"enhance":[160],"attack,":[165],"introduce":[167],"noise":[169,213],"generator":[170,214],"adds":[172],"adversarial":[173],"perturbations":[174],"samples.":[179],"Experimental":[180],"results":[181],"demonstrate":[182],"our":[184,212],"approach":[185],"improves":[187],"success":[190],"rate":[191],"(e.g.,":[192],"<inline-formula":[193,202],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[194,203],"xmlns:xlink=\"http://www.w3.org/1999/xlink\"><tex-math":[195,204],"notation=\"LaTeX\">$85.6\\%$</tex-math></inline-formula>":[196],"compared":[197],"baseline":[200],"notation=\"LaTeX\">$71.9\\%$</tex-math></inline-formula>).":[205],"Notably,":[206],"ablation":[208],"study":[209],"shows":[210],"enhances":[215],"risks":[218],"even":[219],"when":[220],"randomly,":[225],"highlighting":[226],"its":[227],"broad":[230],"applicability.":[231]},"counts_by_year":[],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
