{"id":"https://openalex.org/W4388886966","doi":"https://doi.org/10.1145/3605764.3623904","title":"Probing the Transition to Dataset-Level Privacy in ML Models Using an Output-Specific and Data-Resolved Privacy Profile","display_name":"Probing the Transition to Dataset-Level Privacy in ML Models Using an Output-Specific and Data-Resolved Privacy Profile","publication_year":2023,"publication_date":"2023-11-21","ids":{"openalex":"https://openalex.org/W4388886966","doi":"https://doi.org/10.1145/3605764.3623904"},"language":"en","primary_location":{"id":"doi:10.1145/3605764.3623904","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3605764.3623904","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th ACM Workshop on Artificial Intelligence and Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5083099750","display_name":"Tyler LeBlond","orcid":"https://orcid.org/0000-0003-0652-9485"},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Tyler LeBlond","raw_affiliation_strings":["Booz Allen Hamilton, Annapolis Junction, MD, USA"],"raw_orcid":"https://orcid.org/0000-0003-0652-9485","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Annapolis Junction, MD, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056822444","display_name":"Joseph Mu\u00f1oz","orcid":"https://orcid.org/0000-0002-4573-3879"},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Joseph Munoz","raw_affiliation_strings":["Booz Allen Hamilton, Annapolis Junction, MD, USA"],"raw_orcid":"https://orcid.org/0000-0002-4573-3879","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Annapolis Junction, MD, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024385868","display_name":"Fred Lu","orcid":"https://orcid.org/0000-0003-1026-5734"},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Fred Lu","raw_affiliation_strings":["Booz Allen Hamilton, Annapolis Junction, MD, USA"],"raw_orcid":"https://orcid.org/0000-0003-1026-5734","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Annapolis Junction, MD, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5043932284","display_name":"Maya Fuchs","orcid":"https://orcid.org/0000-0002-0771-2647"},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Maya Fuchs","raw_affiliation_strings":["Booz Allen Hamilton, Annapolis Junction, MD, USA"],"raw_orcid":"https://orcid.org/0000-0002-0771-2647","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Annapolis Junction, MD, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5093313297","display_name":"Elliot Zaresky-Williams","orcid":null},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Elliot Zaresky-Williams","raw_affiliation_strings":["Booz Allen Hamilton, Annapolis Junction, MD, USA"],"raw_orcid":"https://orcid.org/0000-0003-4023-3880","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Annapolis Junction, MD, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068036546","display_name":"Edward Raff","orcid":"https://orcid.org/0000-0002-9900-1972"},"institutions":[{"id":"https://openalex.org/I1322124587","display_name":"Booz Allen Hamilton (United States)","ror":"https://ror.org/051rcp357","country_code":"US","type":"company","lineage":["https://openalex.org/I1322124587"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Edward Raff","raw_affiliation_strings":["Booz Allen Hamilton, Jamesville, NY, USA"],"raw_orcid":"https://orcid.org/0000-0002-9900-1972","affiliations":[{"raw_affiliation_string":"Booz Allen Hamilton, Jamesville, NY, USA","institution_ids":["https://openalex.org/I1322124587"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5029945943","display_name":"Brian Testa","orcid":"https://orcid.org/0000-0003-2349-9564"},"institutions":[{"id":"https://openalex.org/I1280414376","display_name":"United States Air Force Research Laboratory","ror":"https://ror.org/02e2egq70","country_code":"US","type":"facility","lineage":["https://openalex.org/I1280414376","https://openalex.org/I1330347796","https://openalex.org/I4210102105","https://openalex.org/I4389425425"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Brian Testa","raw_affiliation_strings":["Air Force Research Laboratory, Rome, NY, USA"],"raw_orcid":"https://orcid.org/0000-0003-2349-9564","affiliations":[{"raw_affiliation_string":"Air Force Research Laboratory, Rome, NY, USA","institution_ids":["https://openalex.org/I1280414376"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5083099750"],"corresponding_institution_ids":["https://openalex.org/I1322124587"],"apc_list":null,"apc_paid":null,"fwci":0.1704,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.5832916,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"23","last_page":"33"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11704","display_name":"Mobile Crowdsensing and Crowdsourcing","score":0.9672999978065491,"subfield":{"id":"https://openalex.org/subfields/1706","display_name":"Computer Science Applications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9639000296592712,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.8336241245269775},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7980838418006897},{"id":"https://openalex.org/keywords/clarity","display_name":"CLARITY","score":0.6193026304244995},{"id":"https://openalex.org/keywords/metric","display_name":"Metric (unit)","score":0.6085299849510193},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.6015259027481079},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.4968421757221222},{"id":"https://openalex.org/keywords/profiling","display_name":"Profiling (computer programming)","score":0.45342350006103516},{"id":"https://openalex.org/keywords/data-anonymization","display_name":"Data anonymization","score":0.44844964146614075},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.42689594626426697},{"id":"https://openalex.org/keywords/training-set","display_name":"Training set","score":0.4237106740474701},{"id":"https://openalex.org/keywords/masking","display_name":"Masking (illustration)","score":0.41983282566070557},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3296172022819519},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.28831446170806885},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2323666512966156}],"concepts":[{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.8336241245269775},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7980838418006897},{"id":"https://openalex.org/C2777146004","wikidata":"https://www.wikidata.org/wiki/Q14949826","display_name":"CLARITY","level":2,"score":0.6193026304244995},{"id":"https://openalex.org/C176217482","wikidata":"https://www.wikidata.org/wiki/Q860554","display_name":"Metric (unit)","level":2,"score":0.6085299849510193},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.6015259027481079},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.4968421757221222},{"id":"https://openalex.org/C187191949","wikidata":"https://www.wikidata.org/wiki/Q1138496","display_name":"Profiling (computer programming)","level":2,"score":0.45342350006103516},{"id":"https://openalex.org/C2776945810","wikidata":"https://www.wikidata.org/wiki/Q17006654","display_name":"Data anonymization","level":3,"score":0.44844964146614075},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.42689594626426697},{"id":"https://openalex.org/C51632099","wikidata":"https://www.wikidata.org/wiki/Q3985153","display_name":"Training set","level":2,"score":0.4237106740474701},{"id":"https://openalex.org/C2777402240","wikidata":"https://www.wikidata.org/wiki/Q6783436","display_name":"Masking (illustration)","level":2,"score":0.41983282566070557},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3296172022819519},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.28831446170806885},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2323666512966156},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C153349607","wikidata":"https://www.wikidata.org/wiki/Q36649","display_name":"Visual arts","level":1,"score":0.0},{"id":"https://openalex.org/C142362112","wikidata":"https://www.wikidata.org/wiki/Q735","display_name":"Art","level":0,"score":0.0},{"id":"https://openalex.org/C21547014","wikidata":"https://www.wikidata.org/wiki/Q1423657","display_name":"Operations management","level":1,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3605764.3623904","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3605764.3623904","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th ACM Workshop on Artificial Intelligence and Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":21,"referenced_works":["https://openalex.org/W2056935019","https://openalex.org/W2119874464","https://openalex.org/W2473418344","https://openalex.org/W2515654213","https://openalex.org/W2582825155","https://openalex.org/W2795435272","https://openalex.org/W2886153332","https://openalex.org/W2899386664","https://openalex.org/W2941170896","https://openalex.org/W2946326821","https://openalex.org/W2947819652","https://openalex.org/W2950943617","https://openalex.org/W2963935003","https://openalex.org/W2990138404","https://openalex.org/W3008145398","https://openalex.org/W3015786640","https://openalex.org/W3099542802","https://openalex.org/W3155915750","https://openalex.org/W4205228770","https://openalex.org/W4288346602","https://openalex.org/W6657138077"],"related_works":["https://openalex.org/W3038283795","https://openalex.org/W2604501336","https://openalex.org/W1992286709","https://openalex.org/W2086526348","https://openalex.org/W3023085526","https://openalex.org/W2978783953","https://openalex.org/W2604278997","https://openalex.org/W4387005985","https://openalex.org/W2777883117","https://openalex.org/W2086584178"],"abstract_inverted_index":{"Differential":[0],"privacy":[1,28,38,69,119,132,139],"(DP)":[2],"is":[3,87,164],"the":[4,27,37,73,92,111,118,124,138,155,170,175],"prevailing":[5],"technique":[6],"for":[7,25,36,40],"protecting":[8],"user":[9],"data":[10,43],"in":[11,110,127,154],"machine":[12],"learning":[13],"models.":[14],"However,":[15],"deficits":[16],"to":[17,62,75,105,116,144,149,179],"this":[18,102],"framework":[19],"include":[20],"a":[21,32,41,46,57,68,77,81,84,131,165],"lack":[22,33],"of":[23,34,91,120,172,182],"clarity":[24],"selecting":[26],"budget":[29],"\u03b5":[30,159,173],"and":[31,56,113],"quantification":[35],"leakage":[39],"particular":[42,47],"row":[44],"by":[45,60,66,89,174],"trained":[48,79],"model.":[49],"We":[50,100,134],"make":[51,180],"progress":[52],"toward":[53],"these":[54],"limitations":[55],"new":[58],"perspective":[59],"which":[61,76,161],"visualize":[63],"DP":[64,85],"results":[65],"studying":[67],"metric":[70,104],"that":[71,137,151,167],"quantifies":[72],"extent":[74],"model":[78],"on":[80,97],"dataset":[82],"using":[83],"mechanism":[86],"''covered''":[88],"each":[90],"distributions":[93,157],"resulting":[94],"from":[95,123],"training":[96,125],"neighboring":[98,156],"datasets.":[99],"connect":[101],"coverage":[103],"what":[106,128],"has":[107],"been":[108],"established":[109],"literature":[112],"use":[114,181],"it":[115],"rank":[117],"individual":[121],"samples":[122],"set":[126],"we":[129,162],"call":[130],"profile.":[133],"additionally":[135],"show":[136],"profile":[140],"can":[141,168],"be":[142],"used":[143],"probe":[145],"an":[146],"observed":[147],"transition":[148],"indistinguishability":[150],"takes":[152],"place":[153],"as":[158],"decreases,":[160],"suggest":[163],"tool":[166],"enable":[169],"selection":[171],"ML":[176],"practitioner":[177],"wishing":[178],"DP.":[183]},"counts_by_year":[{"year":2024,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
