{"id":"https://openalex.org/W4413926018","doi":"https://doi.org/10.1109/tdsc.2025.3605268","title":"Uncovering Risks of Data-Free Feature Vector Inversion Attacks Against Vector Databases","display_name":"Uncovering Risks of Data-Free Feature Vector Inversion Attacks Against Vector Databases","publication_year":2025,"publication_date":"2025-09-02","ids":{"openalex":"https://openalex.org/W4413926018","doi":"https://doi.org/10.1109/tdsc.2025.3605268"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2025.3605268","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3605268","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5065013066","display_name":"Shengyang Qin","orcid":null},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Shengyang Qin","raw_affiliation_strings":["College of Computer Science, Chongqing University, Chongqing, China"],"raw_orcid":"https://orcid.org/0009-0008-1992-7902","affiliations":[{"raw_affiliation_string":"College of Computer Science, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013666525","display_name":"Xinyu Lei","orcid":"https://orcid.org/0000-0001-8799-7875"},"institutions":[{"id":"https://openalex.org/I11957088","display_name":"Michigan Technological University","ror":"https://ror.org/0036rpn28","country_code":"US","type":"education","lineage":["https://openalex.org/I11957088"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xinyu Lei","raw_affiliation_strings":["Department of Computer Science, Michigan Technological University, Houghton, MI, USA"],"raw_orcid":"https://orcid.org/0000-0001-8799-7875","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Michigan Technological University, Houghton, MI, USA","institution_ids":["https://openalex.org/I11957088"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5085538046","display_name":"Nankun Mu","orcid":"https://orcid.org/0000-0002-8126-8126"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Nankun Mu","raw_affiliation_strings":["College of Computer Science, Chongqing University, Chongqing, China"],"raw_orcid":"https://orcid.org/0000-0002-8126-8126","affiliations":[{"raw_affiliation_string":"College of Computer Science, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Hongyu Huang","orcid":"https://orcid.org/0000-0001-9052-4868"},"institutions":[{"id":"https://openalex.org/I158842170","display_name":"Chongqing University","ror":"https://ror.org/023rhb549","country_code":"CN","type":"education","lineage":["https://openalex.org/I158842170"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hongyu Huang","raw_affiliation_strings":["College of Computer Science, Chongqing University, Chongqing, China"],"raw_orcid":"https://orcid.org/0000-0001-9052-4868","affiliations":[{"raw_affiliation_string":"College of Computer Science, Chongqing University, Chongqing, China","institution_ids":["https://openalex.org/I158842170"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5067723727","display_name":"Tian Xie","orcid":"https://orcid.org/0000-0003-1309-6091"},"institutions":[{"id":"https://openalex.org/I121980950","display_name":"Utah State University","ror":"https://ror.org/00h6set76","country_code":"US","type":"education","lineage":["https://openalex.org/I121980950"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tian Xie","raw_affiliation_strings":["Department of Computer Science, Utah State University, Logan, UT, USA"],"raw_orcid":"https://orcid.org/0000-0003-1309-6091","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Utah State University, Logan, UT, USA","institution_ids":["https://openalex.org/I121980950"]}]},{"author_position":"last","author":{"id":null,"display_name":"Xiao Zhang","orcid":"https://orcid.org/0000-0002-7392-3477"},"institutions":[{"id":"https://openalex.org/I4210130704","display_name":"University of Michigan\u2013Dearborn","ror":"https://ror.org/035wtm547","country_code":"US","type":"education","lineage":["https://openalex.org/I4210130704"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiao Zhang","raw_affiliation_strings":["College of Engineering and Computer Science, University of Michigan- Dearborn, Dearborn, MI, USA","College of Engineering and Computer Science, University of Michigan-Dearborn, Dearborn, MI, USA"],"raw_orcid":"https://orcid.org/0000-0002-7392-3477","affiliations":[{"raw_affiliation_string":"College of Engineering and Computer Science, University of Michigan- Dearborn, Dearborn, MI, USA","institution_ids":["https://openalex.org/I4210130704"]},{"raw_affiliation_string":"College of Engineering and Computer Science, University of Michigan-Dearborn, Dearborn, MI, USA","institution_ids":["https://openalex.org/I4210130704"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5065013066"],"corresponding_institution_ids":["https://openalex.org/I158842170"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.11581109,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"23","issue":"1","first_page":"193","last_page":"208"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9970999956130981,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9970999956130981,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11512","display_name":"Anomaly Detection Techniques and Applications","score":0.9962000250816345,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9945999979972839,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7035937905311584},{"id":"https://openalex.org/keywords/inversion","display_name":"Inversion (geology)","score":0.5966312289237976},{"id":"https://openalex.org/keywords/feature-vector","display_name":"Feature vector","score":0.5059437155723572},{"id":"https://openalex.org/keywords/vector","display_name":"Vector (molecular biology)","score":0.4803379774093628},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.46394988894462585},{"id":"https://openalex.org/keywords/support-vector-machine","display_name":"Support vector machine","score":0.44716840982437134},{"id":"https://openalex.org/keywords/distributed-database","display_name":"Distributed database","score":0.4107484221458435},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.3929959535598755},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.25727277994155884},{"id":"https://openalex.org/keywords/geology","display_name":"Geology","score":0.11646997928619385},{"id":"https://openalex.org/keywords/biology","display_name":"Biology","score":0.07726582884788513}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7035937905311584},{"id":"https://openalex.org/C1893757","wikidata":"https://www.wikidata.org/wiki/Q3653001","display_name":"Inversion (geology)","level":3,"score":0.5966312289237976},{"id":"https://openalex.org/C83665646","wikidata":"https://www.wikidata.org/wiki/Q42139305","display_name":"Feature vector","level":2,"score":0.5059437155723572},{"id":"https://openalex.org/C92087593","wikidata":"https://www.wikidata.org/wiki/Q427389","display_name":"Vector (molecular biology)","level":4,"score":0.4803379774093628},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.46394988894462585},{"id":"https://openalex.org/C12267149","wikidata":"https://www.wikidata.org/wiki/Q282453","display_name":"Support vector machine","level":2,"score":0.44716840982437134},{"id":"https://openalex.org/C70061542","wikidata":"https://www.wikidata.org/wiki/Q989016","display_name":"Distributed database","level":2,"score":0.4107484221458435},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.3929959535598755},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.25727277994155884},{"id":"https://openalex.org/C127313418","wikidata":"https://www.wikidata.org/wiki/Q1069","display_name":"Geology","level":0,"score":0.11646997928619385},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.07726582884788513},{"id":"https://openalex.org/C109007969","wikidata":"https://www.wikidata.org/wiki/Q749565","display_name":"Structural basin","level":2,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C40767141","wikidata":"https://www.wikidata.org/wiki/Q285697","display_name":"Recombinant DNA","level":3,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/tdsc.2025.3605268","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2025.3605268","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},{"id":"pmh:oai:digitalcommons.mtu.edu:michigantech-p2-3099","is_oa":false,"landing_page_url":"https://digitalcommons.mtu.edu/michigantech-p2/2043","pdf_url":null,"source":{"id":"https://openalex.org/S4377196391","display_name":"Digital Commons - Michigan Tech (Michigan Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I11957088","host_organization_name":"Michigan Technological University","host_organization_lineage":["https://openalex.org/I11957088"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Michigan Tech Publications","raw_type":"text"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1169459699","display_name":null,"funder_award_id":"62272073","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W2090763504","https://openalex.org/W148178222","https://openalex.org/W2104657898","https://openalex.org/W1948992892","https://openalex.org/W1886884218","https://openalex.org/W1910826599","https://openalex.org/W2012353789","https://openalex.org/W2530420969","https://openalex.org/W2051187167","https://openalex.org/W1980100242"],"abstract_inverted_index":{"The":[0],"vector":[1,20,25,90],"database":[2],"stores":[3],"data":[4,42,108,165],"as":[5,152],"high-dimensional":[6],"feature":[7,19,45],"vectors.":[8],"Some":[9],"recently":[10],"proposed":[11,163,183,215],"attack":[12,35,121,185,198],"techniques":[13],"enable":[14],"an":[15,30,33,52,106],"adversary":[16,31],"to":[17,37,57,113,126,171,195],"launch":[18,172],"inversion":[21],"(FVI)":[22],"attacks":[23,71,88,202],"against":[24,89,213],"databases.":[26],"In":[27,77,124],"FVI":[28,34,70,87,120,184,201],"attacks,":[29],"trains":[32],"network":[36,122],"reconstruct":[38],"the":[39,49,58,82,93,98,119,128,137,146,153,162,173,182,188,197,204,214],"original":[40],"private":[41],"from":[43],"their":[44],"vectors":[46],"based":[47],"on":[48,86],"assumption":[50,64],"that":[51,111,161,181],"auxiliary":[53],"dataset":[54],"is":[55,65],"available":[56],"adversary.":[59],"However,":[60],"such":[61,69],"a":[62],"data-available":[63],"too":[66],"strong,":[67],"making":[68],"unrealistic":[72],"in":[73,92,187,203],"many":[74],"real-world":[75],"scenarios.":[76],"this":[78,157],"paper,":[79],"we":[80,104,135,159,179,208],"make":[81],"first":[83],"systematic":[84],"study":[85,211],"databases":[91],"data-free":[94,189],"setting.":[95,206],"To":[96],"tackle":[97],"issue":[99],"of":[100,131,156,200],"no":[101],"training":[102,149],"data,":[103],"develop":[105,136],"output-to-input":[107,164],"generation":[109,166],"technique":[110,167,186],"helps":[112],"generate":[114],"synthetic":[115],"fake":[116,133],"samples":[117],"for":[118],"training.":[123],"addition,":[125],"ensure":[127],"high":[129],"quality":[130],"generated":[132],"samples,":[134],"accelerable":[138],"complete":[139],"bipartite":[140],"graph":[141],"(CBG)":[142],"search":[143],"strategy":[144],"and":[145,210],"downstream-classifier-aided":[147],"generator":[148],"strategy.":[150],"Furthermore,":[151],"key":[154],"insight":[155],"work,":[158],"find":[160,180],"can":[168,191],"be":[169,192],"employed":[170,194],"other":[174],"three":[175],"ML":[176],"attacks.":[177,216],"Intriguingly,":[178],"setting":[190],"directly":[193],"boost":[196],"performance":[199],"auxiliary-dataset-available":[205],"Finally,":[207],"propose":[209],"defenses":[212]},"counts_by_year":[],"updated_date":"2026-01-19T04:01:09.351973","created_date":"2025-10-10T00:00:00"}
