{"id":"https://openalex.org/W4405143982","doi":"https://doi.org/10.1145/3673791.3698414","title":"Understanding and Mitigating the Threat of Vec2Text to Dense Retrieval Systems","display_name":"Understanding and Mitigating the Threat of Vec2Text to Dense Retrieval Systems","publication_year":2024,"publication_date":"2024-12-08","ids":{"openalex":"https://openalex.org/W4405143982","doi":"https://doi.org/10.1145/3673791.3698414"},"language":"en","primary_location":{"id":"doi:10.1145/3673791.3698414","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3673791.3698414","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3673791.3698414","source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 Annual International ACM SIGIR Conference on Research and Development in Information Retrieval in the Asia Pacific Region","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3673791.3698414","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5012958162","display_name":"Shengyao Zhuang","orcid":"https://orcid.org/0000-0002-6711-0955"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"Shengyao Zhuang","raw_affiliation_strings":["CSIRO, Brisbane, Australia"],"raw_orcid":"https://orcid.org/0000-0002-6711-0955","affiliations":[{"raw_affiliation_string":"CSIRO, Brisbane, Australia","institution_ids":["https://openalex.org/I1292875679"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5087733750","display_name":"Bevan Koopman","orcid":"https://orcid.org/0000-0001-5577-3391"},"institutions":[{"id":"https://openalex.org/I1292875679","display_name":"Commonwealth Scientific and Industrial Research Organisation","ror":"https://ror.org/03qn8fb07","country_code":"AU","type":"government","lineage":["https://openalex.org/I1292875679","https://openalex.org/I2801453606","https://openalex.org/I4387156119"]},{"id":"https://openalex.org/I165143802","display_name":"The University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Bevan Koopman","raw_affiliation_strings":["CSIRO &amp; The University of Queensland, Brisbane, Australia"],"raw_orcid":"https://orcid.org/0000-0001-5577-3391","affiliations":[{"raw_affiliation_string":"CSIRO &amp; The University of Queensland, Brisbane, Australia","institution_ids":["https://openalex.org/I1292875679","https://openalex.org/I165143802"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5093976028","display_name":"Xiaoran Chu","orcid":null},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"The University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Xiaoran Chu","raw_affiliation_strings":["The University of Queensland, Brisbane, Australia"],"raw_orcid":"https://orcid.org/0009-0003-5265-6749","affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, Australia","institution_ids":["https://openalex.org/I165143802"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5076031002","display_name":"Guido Zuccon","orcid":"https://orcid.org/0000-0003-0271-5563"},"institutions":[{"id":"https://openalex.org/I165143802","display_name":"The University of Queensland","ror":"https://ror.org/00rqy9422","country_code":"AU","type":"education","lineage":["https://openalex.org/I165143802"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Guido Zuccon","raw_affiliation_strings":["The University of Queensland, Brisbane, Australia"],"raw_orcid":"https://orcid.org/0000-0003-0271-5563","affiliations":[{"raw_affiliation_string":"The University of Queensland, Brisbane, Australia","institution_ids":["https://openalex.org/I165143802"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5012958162"],"corresponding_institution_ids":["https://openalex.org/I1292875679"],"apc_list":null,"apc_paid":null,"fwci":1.6665,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.85889893,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"259","last_page":"268"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10627","display_name":"Advanced Image and Video Retrieval Techniques","score":0.9973000288009644,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10627","display_name":"Advanced Image and Video Retrieval Techniques","score":0.9973000288009644,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12016","display_name":"Web Data Mining and Analysis","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11719","display_name":"Data Quality and Management","score":0.979200005531311,"subfield":{"id":"https://openalex.org/subfields/1803","display_name":"Management Science and Operations Research"},"field":{"id":"https://openalex.org/fields/18","display_name":"Decision Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6243510246276855},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.33323660492897034}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6243510246276855},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.33323660492897034}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3673791.3698414","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3673791.3698414","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3673791.3698414","source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 Annual International ACM SIGIR Conference on Research and Development in Information Retrieval in the Asia Pacific Region","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3673791.3698414","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3673791.3698414","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3673791.3698414","source":null,"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2024 Annual International ACM SIGIR Conference on Research and Development in Information Retrieval in the Asia Pacific Region","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4405143982.pdf"},"referenced_works_count":13,"referenced_works":["https://openalex.org/W2101105183","https://openalex.org/W2124509324","https://openalex.org/W2912924812","https://openalex.org/W3137305332","https://openalex.org/W3180230246","https://openalex.org/W4382239620","https://openalex.org/W4384823501","https://openalex.org/W4386576685","https://openalex.org/W4388955484","https://openalex.org/W4389520346","https://openalex.org/W4389921502","https://openalex.org/W4393223139","https://openalex.org/W4404782892"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"The":[0],"emergence":[1],"of":[2,103,114,129],"Vec2Text":[3,97,165],"---":[4,11],"a":[5,40,100,111,145,168],"method":[6],"for":[7,17,39,135],"text":[8,23,66,124],"embedding":[9,61,85,88,147],"inversion":[10],"has":[12],"raised":[13],"serious":[14],"privacy":[15],"concerns":[16],"dense":[18,130,139,172],"retrieval":[19,127,131,140,173],"systems":[20],"which":[21,90],"use":[22],"embeddings,":[24],"such":[25,73,183],"as":[26,74],"those":[27],"offered":[28],"by":[29],"OpenAI":[30],"and":[31,87,126],"Cohere.":[32],"This":[33],"threat":[34,169],"comes":[35],"from":[36],"the":[37,49,95,115,120,123,157],"ability":[38],"malicious":[41],"attacker":[42],"with":[43,82],"access":[44],"to":[45,47,60,109,170,181],"embeddings":[46],"reconstruct":[48],"original":[50,96],"text.":[51],"In":[52],"this":[53,161],"paper,":[54],"we":[55],"investigate":[56],"various":[57],"factors":[58,72],"related":[59],"models":[62],"that":[63,118,150,164],"may":[64],"impact":[65],"recoverability":[67,125,158],"via":[68],"Vec2Text.":[69],"We":[70,142],"explore":[71],"distance":[75],"metrics,":[76],"pooling":[77],"functions,":[78],"bottleneck":[79],"pre-training,":[80],"training":[81],"noise":[83],"addition,":[84],"quantization,":[86],"dimensions,":[89],"were":[91],"not":[92],"considered":[93],"in":[94],"paper.":[98],"Through":[99],"comprehensive":[101],"analysis":[102],"these":[104],"factors,":[105],"our":[106],"objective":[107],"is":[108],"gain":[110],"deeper":[112],"understanding":[113],"key":[116],"elements":[117],"affect":[119],"trade-offs":[121],"between":[122],"effectiveness":[128,154],"systems,":[132,174],"offering":[133],"insights":[134],"practitioners":[136],"designing":[137],"privacy-aware":[138],"systems.":[141,184],"also":[143],"propose":[144],"simple":[146],"transformation":[148],"fix":[149],"guarantees":[151],"equal":[152],"ranking":[153],"while":[155],"mitigating":[156],"risk.":[159],"Overall,":[160],"study":[162],"reveals":[163],"could":[166],"pose":[167],"current":[171],"but":[175],"there":[176],"are":[177],"some":[178],"effective":[179],"methods":[180],"patch":[182]},"counts_by_year":[{"year":2025,"cited_by_count":7}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
