{"id":"https://openalex.org/W4388186312","doi":"https://doi.org/10.1145/3581783.3612072","title":"Model Inversion Attack via Dynamic Memory Learning","display_name":"Model Inversion Attack via Dynamic Memory Learning","publication_year":2023,"publication_date":"2023-10-26","ids":{"openalex":"https://openalex.org/W4388186312","doi":"https://doi.org/10.1145/3581783.3612072"},"language":"en","primary_location":{"id":"doi:10.1145/3581783.3612072","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3581783.3612072","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st ACM International Conference on Multimedia","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5017490346","display_name":"Gege Qi","orcid":"https://orcid.org/0000-0002-0032-6786"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Gege Qi","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039044021","display_name":"Yuefeng Chen","orcid":"https://orcid.org/0000-0001-9027-3421"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"YueFeng Chen","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051298007","display_name":"Xiaofeng Mao","orcid":"https://orcid.org/0000-0003-4486-556X"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaofeng Mao","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5080628250","display_name":"Binyuan Hui","orcid":"https://orcid.org/0000-0002-2160-7595"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Binyuan Hui","raw_affiliation_strings":["Alibaba Group, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Beijing, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016216372","display_name":"Xiaodan Li","orcid":"https://orcid.org/0000-0002-4997-2252"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaodan Li","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5060943372","display_name":"Rong Zhang","orcid":"https://orcid.org/0000-0002-8482-8686"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Rong Zhang","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100337747","display_name":"Hui Xue","orcid":"https://orcid.org/0000-0002-2093-2839"},"institutions":[{"id":"https://openalex.org/I45928872","display_name":"Alibaba Group (China)","ror":"https://ror.org/00k642b80","country_code":"CN","type":"company","lineage":["https://openalex.org/I45928872"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Hui Xue","raw_affiliation_strings":["Alibaba Group, Hang Zhou, China"],"affiliations":[{"raw_affiliation_string":"Alibaba Group, Hang Zhou, China","institution_ids":["https://openalex.org/I45928872"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5017490346"],"corresponding_institution_ids":["https://openalex.org/I45928872"],"apc_list":null,"apc_paid":null,"fwci":1.0438,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.81789661,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"5614","last_page":"5622"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10751","display_name":"Forensic and Genetic Research","score":0.9789999723434448,"subfield":{"id":"https://openalex.org/subfields/1311","display_name":"Genetics"},"field":{"id":"https://openalex.org/fields/13","display_name":"Biochemistry, Genetics and Molecular Biology"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}},{"id":"https://openalex.org/T11307","display_name":"Domain Adaptation and Few-Shot Learning","score":0.9768999814987183,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/discriminative-model","display_name":"Discriminative model","score":0.8505268096923828},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8090101480484009},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.7011938095092773},{"id":"https://openalex.org/keywords/high-fidelity","display_name":"High fidelity","score":0.5978702306747437},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.5709234476089478},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.565189778804779},{"id":"https://openalex.org/keywords/fidelity","display_name":"Fidelity","score":0.5324652791023254},{"id":"https://openalex.org/keywords/generative-grammar","display_name":"Generative grammar","score":0.5048328042030334},{"id":"https://openalex.org/keywords/inversion","display_name":"Inversion (geology)","score":0.4940391182899475},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.4900718927383423},{"id":"https://openalex.org/keywords/representation","display_name":"Representation (politics)","score":0.481412410736084},{"id":"https://openalex.org/keywords/feature-learning","display_name":"Feature learning","score":0.46372219920158386},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.4526098966598511},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.4163103699684143},{"id":"https://openalex.org/keywords/external-data-representation","display_name":"External Data Representation","score":0.41131383180618286}],"concepts":[{"id":"https://openalex.org/C97931131","wikidata":"https://www.wikidata.org/wiki/Q5282087","display_name":"Discriminative model","level":2,"score":0.8505268096923828},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8090101480484009},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.7011938095092773},{"id":"https://openalex.org/C113364801","wikidata":"https://www.wikidata.org/wiki/Q26674","display_name":"High fidelity","level":2,"score":0.5978702306747437},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5709234476089478},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.565189778804779},{"id":"https://openalex.org/C2776459999","wikidata":"https://www.wikidata.org/wiki/Q2119376","display_name":"Fidelity","level":2,"score":0.5324652791023254},{"id":"https://openalex.org/C39890363","wikidata":"https://www.wikidata.org/wiki/Q36108","display_name":"Generative grammar","level":2,"score":0.5048328042030334},{"id":"https://openalex.org/C1893757","wikidata":"https://www.wikidata.org/wiki/Q3653001","display_name":"Inversion (geology)","level":3,"score":0.4940391182899475},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.4900718927383423},{"id":"https://openalex.org/C2776359362","wikidata":"https://www.wikidata.org/wiki/Q2145286","display_name":"Representation (politics)","level":3,"score":0.481412410736084},{"id":"https://openalex.org/C59404180","wikidata":"https://www.wikidata.org/wiki/Q17013334","display_name":"Feature learning","level":2,"score":0.46372219920158386},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.4526098966598511},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.4163103699684143},{"id":"https://openalex.org/C116409475","wikidata":"https://www.wikidata.org/wiki/Q1385056","display_name":"External Data Representation","level":2,"score":0.41131383180618286},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C109007969","wikidata":"https://www.wikidata.org/wiki/Q749565","display_name":"Structural basin","level":2,"score":0.0},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C94625758","wikidata":"https://www.wikidata.org/wiki/Q7163","display_name":"Politics","level":2,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3581783.3612072","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3581783.3612072","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st ACM International Conference on Multimedia","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":27,"referenced_works":["https://openalex.org/W1834627138","https://openalex.org/W2024922353","https://openalex.org/W2051267297","https://openalex.org/W2096733369","https://openalex.org/W2108598243","https://openalex.org/W2132083787","https://openalex.org/W2183341477","https://openalex.org/W2194775991","https://openalex.org/W2325939864","https://openalex.org/W2512472178","https://openalex.org/W2560647685","https://openalex.org/W2736572352","https://openalex.org/W2895805829","https://openalex.org/W2962770929","https://openalex.org/W2963446712","https://openalex.org/W2963671728","https://openalex.org/W2978098801","https://openalex.org/W2986349107","https://openalex.org/W3034600949","https://openalex.org/W3034720584","https://openalex.org/W3035574324","https://openalex.org/W3035616549","https://openalex.org/W3104718349","https://openalex.org/W4206426144","https://openalex.org/W4214567027","https://openalex.org/W4226117300","https://openalex.org/W4229820657"],"related_works":["https://openalex.org/W3211393740","https://openalex.org/W3208049411","https://openalex.org/W3022908591","https://openalex.org/W4285706568","https://openalex.org/W2952512863","https://openalex.org/W3134504629","https://openalex.org/W2938696877","https://openalex.org/W4323911413","https://openalex.org/W1982536061","https://openalex.org/W4286796787"],"abstract_inverted_index":{"Model":[0,68],"Inversion":[1,69],"(MI)":[2],"attacks":[3],"aim":[4],"to":[5,43,46,72,84,94,125],"recover":[6],"the":[7,12,21,56,82,96,119],"private":[8],"training":[9],"data":[10],"from":[11],"target":[13,57],"model,":[14],"which":[15,77,140],"has":[16,135],"raised":[17],"security":[18],"concerns":[19],"about":[20,98],"deployment":[22],"of":[23,92],"DNNs":[24],"in":[25,29,38],"practice.":[26],"Recent":[27],"advances":[28],"generative":[30],"adversarial":[31],"models":[32],"have":[33],"rendered":[34],"them":[35],"particularly":[36],"effective":[37],"MI":[39,159],"attacks,":[40],"primarily":[41],"due":[42],"their":[44],"ability":[45],"generate":[47],"high-fidelity":[48],"and":[49,113,144],"perceptually":[50],"realistic":[51],"images":[52],"that":[53,153],"closely":[54],"resemble":[55],"data.":[58],"In":[59],"this":[60],"work,":[61],"we":[62],"propose":[63],"a":[64,131,136],"novel":[65],"Dynamic":[66],"Memory":[67],"Attack":[70],"(DMMIA)":[71],"leverage":[73],"historically":[74,99],"learned":[75,100,123],"knowledge,":[76],"interacts":[78],"with":[79],"samples":[80,121],"(during":[81],"training)":[83],"induce":[85],"diverse":[86,143],"generations.":[87],"DMMIA":[88,134,154],"constructs":[89],"two":[90],"types":[91],"prototypes":[93,124],"inject":[95],"information":[97],"knowledge:":[101],"Intra-class":[102],"Multicentric":[103],"Representation":[104,116],"(IMR)":[105],"representing":[106],"target-related":[107],"concepts":[108],"by":[109],"multiple":[110,150],"learnable":[111],"prototypes,":[112],"Inter-class":[114],"Discriminative":[115],"(IDR)":[117],"characterizing":[118],"memorized":[120],"as":[122],"capture":[126],"more":[127,137,142],"privacy-related":[128],"information.":[129],"As":[130],"result,":[132],"our":[133],"informative":[138],"representation,":[139],"brings":[141],"discriminative":[145],"generated":[146],"results.":[147],"Experiments":[148],"on":[149],"benchmarks":[151],"show":[152],"performs":[155],"better":[156],"than":[157],"state-of-the-art":[158],"attack":[160],"methods.":[161]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":1}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
