{"id":"https://openalex.org/W4414034769","doi":"https://doi.org/10.1145/3705328.3748155","title":"Rethinking the Privacy of Text Embeddings: A Reproducibility Study of \u201cText Embeddings Reveal (Almost) As Much As Text\u201d","display_name":"Rethinking the Privacy of Text Embeddings: A Reproducibility Study of \u201cText Embeddings Reveal (Almost) As Much As Text\u201d","publication_year":2025,"publication_date":"2025-09-06","ids":{"openalex":"https://openalex.org/W4414034769","doi":"https://doi.org/10.1145/3705328.3748155"},"language":"en","primary_location":{"id":"doi:10.1145/3705328.3748155","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705328.3748155","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705328.3748155","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM Conference on Recommender Systems","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3705328.3748155","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5027149297","display_name":"Dominykas \u0160eputis","orcid":null},"institutions":[{"id":"https://openalex.org/I4210135670","display_name":"Amsterdam University of the Arts","ror":"https://ror.org/04dde1554","country_code":"NL","type":"education","lineage":["https://openalex.org/I4210135670"]},{"id":"https://openalex.org/I887064364","display_name":"University of Amsterdam","ror":"https://ror.org/04dkp9463","country_code":"NL","type":"education","lineage":["https://openalex.org/I887064364"]}],"countries":["NL"],"is_corresponding":true,"raw_author_name":"Dominykas Seputis","raw_affiliation_strings":["University of Amsterdam, Amsterdam, Netherlands"],"raw_orcid":"https://orcid.org/0009-0004-9720-1788","affiliations":[{"raw_affiliation_string":"University of Amsterdam, Amsterdam, Netherlands","institution_ids":["https://openalex.org/I4210135670","https://openalex.org/I887064364"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100727698","display_name":"Yongkang Li","orcid":"https://orcid.org/0000-0001-6837-6184"},"institutions":[{"id":"https://openalex.org/I4210135670","display_name":"Amsterdam University of the Arts","ror":"https://ror.org/04dde1554","country_code":"NL","type":"education","lineage":["https://openalex.org/I4210135670"]},{"id":"https://openalex.org/I887064364","display_name":"University of Amsterdam","ror":"https://ror.org/04dkp9463","country_code":"NL","type":"education","lineage":["https://openalex.org/I887064364"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Yongkang Li","raw_affiliation_strings":["University of Amsterdam, Amsterdam, Netherlands"],"raw_orcid":"https://orcid.org/0000-0001-6837-6184","affiliations":[{"raw_affiliation_string":"University of Amsterdam, Amsterdam, Netherlands","institution_ids":["https://openalex.org/I4210135670","https://openalex.org/I887064364"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5119556657","display_name":"Karsten Langerak","orcid":null},"institutions":[{"id":"https://openalex.org/I4210135670","display_name":"Amsterdam University of the Arts","ror":"https://ror.org/04dde1554","country_code":"NL","type":"education","lineage":["https://openalex.org/I4210135670"]},{"id":"https://openalex.org/I887064364","display_name":"University of Amsterdam","ror":"https://ror.org/04dkp9463","country_code":"NL","type":"education","lineage":["https://openalex.org/I887064364"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Karsten Langerak","raw_affiliation_strings":["University of Amsterdam, Amsterdam, Netherlands"],"raw_orcid":"https://orcid.org/0009-0008-6673-0846","affiliations":[{"raw_affiliation_string":"University of Amsterdam, Amsterdam, Netherlands","institution_ids":["https://openalex.org/I4210135670","https://openalex.org/I887064364"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5114328760","display_name":"Serghei Mihailov","orcid":null},"institutions":[{"id":"https://openalex.org/I4210135670","display_name":"Amsterdam University of the Arts","ror":"https://ror.org/04dde1554","country_code":"NL","type":"education","lineage":["https://openalex.org/I4210135670"]},{"id":"https://openalex.org/I887064364","display_name":"University of Amsterdam","ror":"https://ror.org/04dkp9463","country_code":"NL","type":"education","lineage":["https://openalex.org/I887064364"]}],"countries":["NL"],"is_corresponding":false,"raw_author_name":"Serghei Mihailov","raw_affiliation_strings":["University of Amsterdam, Amsterdam, Netherlands"],"raw_orcid":"https://orcid.org/0009-0005-4245-497X","affiliations":[{"raw_affiliation_string":"University of Amsterdam, Amsterdam, Netherlands","institution_ids":["https://openalex.org/I4210135670","https://openalex.org/I887064364"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5027149297"],"corresponding_institution_ids":["https://openalex.org/I4210135670","https://openalex.org/I887064364"],"apc_list":null,"apc_paid":null,"fwci":2.1537,"has_fulltext":true,"cited_by_count":1,"citation_normalized_percentile":{"value":0.90216955,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"822","last_page":"831"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.9995999932289124,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12262","display_name":"Hate Speech and Cyberbullying Detection","score":0.9886999726295471,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9860000014305115,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6688441038131714},{"id":"https://openalex.org/keywords/reproducibility","display_name":"Reproducibility","score":0.5037207007408142},{"id":"https://openalex.org/keywords/information-retrieval","display_name":"Information retrieval","score":0.4753177762031555},{"id":"https://openalex.org/keywords/natural-language-processing","display_name":"Natural language processing","score":0.4213802218437195},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.335257351398468},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.15617087483406067},{"id":"https://openalex.org/keywords/statistics","display_name":"Statistics","score":0.12307164072990417}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6688441038131714},{"id":"https://openalex.org/C9893847","wikidata":"https://www.wikidata.org/wiki/Q1425625","display_name":"Reproducibility","level":2,"score":0.5037207007408142},{"id":"https://openalex.org/C23123220","wikidata":"https://www.wikidata.org/wiki/Q816826","display_name":"Information retrieval","level":1,"score":0.4753177762031555},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.4213802218437195},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.335257351398468},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.15617087483406067},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.12307164072990417}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3705328.3748155","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705328.3748155","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705328.3748155","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM Conference on Recommender Systems","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2507.07700","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2507.07700","pdf_url":"https://arxiv.org/pdf/2507.07700","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"doi:10.1145/3705328.3748155","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3705328.3748155","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3705328.3748155","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Nineteenth ACM Conference on Recommender Systems","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G5665784013","display_name":null,"funder_award_id":"202308440220","funder_id":"https://openalex.org/F4320322725","funder_display_name":"China Scholarship Council"}],"funders":[{"id":"https://openalex.org/F4320321008","display_name":"Universiteit van Amsterdam","ror":"https://ror.org/04dkp9463"},{"id":"https://openalex.org/F4320322725","display_name":"China Scholarship Council","ror":"https://ror.org/04atp4p48"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4414034769.pdf","grobid_xml":"https://content.openalex.org/works/W4414034769.grobid-xml"},"referenced_works_count":41,"referenced_works":["https://openalex.org/W1915485278","https://openalex.org/W1981208470","https://openalex.org/W2019578814","https://openalex.org/W2101105183","https://openalex.org/W2186354314","https://openalex.org/W2250539671","https://openalex.org/W2396881363","https://openalex.org/W2470818894","https://openalex.org/W2509893387","https://openalex.org/W2742272831","https://openalex.org/W2792588455","https://openalex.org/W2798329376","https://openalex.org/W2798658104","https://openalex.org/W2912924812","https://openalex.org/W2953287808","https://openalex.org/W2963341956","https://openalex.org/W2963699608","https://openalex.org/W2963989815","https://openalex.org/W2990138404","https://openalex.org/W3021397474","https://openalex.org/W3043243165","https://openalex.org/W3096738375","https://openalex.org/W3099700870","https://openalex.org/W3099977667","https://openalex.org/W3155368131","https://openalex.org/W3165327186","https://openalex.org/W3201295503","https://openalex.org/W4285224048","https://openalex.org/W4385571915","https://openalex.org/W4385572432","https://openalex.org/W4385573970","https://openalex.org/W4389520346","https://openalex.org/W4400526199","https://openalex.org/W4402671794","https://openalex.org/W4402671846","https://openalex.org/W4403345327","https://openalex.org/W4405143982","https://openalex.org/W4406549454","https://openalex.org/W4408144954","https://openalex.org/W4409166617","https://openalex.org/W4412377840"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2413717610","https://openalex.org/W1973270181","https://openalex.org/W2417696084","https://openalex.org/W2368782778","https://openalex.org/W2087830269","https://openalex.org/W3106281778","https://openalex.org/W3204019825"],"abstract_inverted_index":{"Text":[0],"embeddings":[1,24,227],"are":[2,246],"fundamental":[3],"to":[4,63,124,188],"many":[5],"natural":[6],"language":[7],"processing":[8],"(NLP)":[9],"tasks,":[10],"extensively":[11],"applied":[12],"in":[13,112,224],"domains":[14],"such":[15,36,127],"as":[16,32,37,128,157],"recommendation":[17],"systems":[18],"and":[19,72,86,97,115,131,153,197,213,228,243],"information":[20],"retrieval":[21],"(IR).Traditionally,":[22],"transmitting":[23],"instead":[25],"of":[26,75,147,172,232],"raw":[27],"text":[28,226],"has":[29],"been":[30],"seen":[31],"privacy-preserving.However,":[33],"recent":[34],"methods":[35],"Vec2Text":[38,60,84,165],"challenge":[39],"this":[40,79],"assumption":[41],"by":[42,59,138,206],"demonstrating":[43],"that":[44,164,177,194],"controlled":[45],"decoding":[46],"can":[47,200],"successfully":[48,106],"reconstruct":[49],"original":[50,95,109],"texts":[51],"from":[52,89],"black-box":[53],"embeddings.The":[54],"unexpectedly":[55],"strong":[56],"results":[57,111,162,245],"reported":[58],"motivated":[61],"us":[62],"conduct":[64],"further":[65,233],"verification,":[66],"particularly":[67],"considering":[68],"the":[69,83,94,100,108,136,145,202,220,230],"typically":[70],"non-intuitive":[71],"opaque":[73],"structure":[74],"highdimensional":[76],"embedding":[77,155],"spaces.In":[78],"work,":[80],"we":[81,105,134,181],"reproduce":[82],"framework":[85],"evaluate":[87],"it":[88],"two":[90],"perspectives:":[91],"(1)":[92],"validating":[93],"claims,":[96],"(2)":[98],"extending":[99],"study":[101,137],"through":[102],"targeted":[103],"experiments.First,":[104],"replicate":[107],"key":[110,183],"both":[113],"in-domain":[114],"out-of-domain":[116],"settings,":[117],"with":[118,208],"only":[119],"minor":[120],"discrepancies":[121],"arising":[122],"due":[123],"missing":[125],"artifacts,":[126],"model":[129],"checkpoints":[130],"dataset":[132],"splits.Furthermore,":[133],"extend":[135],"conducting":[139],"a":[140,158,211],"parameter":[141],"sensitivity":[142,187],"analysis,":[143],"evaluating":[144],"feasibility":[146],"reconstructing":[148,173],"sensitive":[149],"inputs":[150],"(e.g.,":[151],"passwords),":[152],"exploring":[154],"quantization":[156,198,209],"lightweight":[159],"privacy":[160,203],"defense.Our":[161],"show":[163],"is":[166],"effective":[167],"under":[168],"ideal":[169],"conditions,":[170],"capable":[171],"even":[174],"password-like":[175],"sequences":[176],"lack":[178],"clear":[179],"semantics.However,":[180],"identify":[182],"limitations,":[184],"including":[185],"its":[186],"input":[189],"sequence":[190],"length.We":[191],"also":[192],"find":[193],"Gaussian":[195],"noise":[196],"techniques":[199],"mitigate":[201],"risks":[204],"posed":[205],"Vec2Text,":[207],"offering":[210],"simpler":[212],"more":[214],"widely":[215],"applicable":[216],"solution.Our":[217],"findings":[218],"emphasize":[219],"need":[221],"for":[222,239],"caution":[223],"using":[225],"highlight":[229],"importance":[231],"research":[234],"into":[235],"robust":[236],"defense":[237],"mechanisms":[238],"NLP":[240],"systems.Our":[241],"code":[242],"experiment":[244],"available":[247],"at":[248],"https://github.com/dqmis/vec2text-repro.":[249]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2026-04-26T08:31:28.666265","created_date":"2025-10-10T00:00:00"}
