{"id":"https://openalex.org/W7150865998","doi":"https://doi.org/10.48550/arxiv.2604.03199","title":"Learning the Signature of Memorization in Autoregressive Language Models","display_name":"Learning the Signature of Memorization in Autoregressive Language Models","publication_year":2026,"publication_date":"2026-04-03","ids":{"openalex":"https://openalex.org/W7150865998","doi":"https://doi.org/10.48550/arxiv.2604.03199"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2604.03199","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.03199","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2604.03199","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5108976251","display_name":"David Ili\u0107","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ili\u0107, David","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5059595574","display_name":"Kostadin Cvejoski","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cvejoski, Kostadin","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034459911","display_name":"David Stanojevi\u0107","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Stanojevi\u0107, David","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5106342784","display_name":"Evgeny Grigorenko","orcid":"https://orcid.org/0009-0001-5724-9363"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Grigorenko, Evgeny","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.4230000078678131,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10028","display_name":"Topic Modeling","score":0.4230000078678131,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.1761000007390976,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10181","display_name":"Natural Language Processing Techniques","score":0.04899999871850014,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.5846999883651733},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5748000144958496},{"id":"https://openalex.org/keywords/natural-language","display_name":"Natural language","score":0.45660001039505005},{"id":"https://openalex.org/keywords/heuristics","display_name":"Heuristics","score":0.44350001215934753},{"id":"https://openalex.org/keywords/memorization","display_name":"Memorization","score":0.3986000120639801},{"id":"https://openalex.org/keywords/overfitting","display_name":"Overfitting","score":0.38499999046325684},{"id":"https://openalex.org/keywords/language-model","display_name":"Language model","score":0.3610999882221222},{"id":"https://openalex.org/keywords/feature-learning","display_name":"Feature learning","score":0.3246999979019165}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.656000018119812},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.6330000162124634},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.5846999883651733},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5748000144958496},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.5342000126838684},{"id":"https://openalex.org/C195324797","wikidata":"https://www.wikidata.org/wiki/Q33742","display_name":"Natural language","level":2,"score":0.45660001039505005},{"id":"https://openalex.org/C204321447","wikidata":"https://www.wikidata.org/wiki/Q30642","display_name":"Natural language processing","level":1,"score":0.4544999897480011},{"id":"https://openalex.org/C127705205","wikidata":"https://www.wikidata.org/wiki/Q5748245","display_name":"Heuristics","level":2,"score":0.44350001215934753},{"id":"https://openalex.org/C30038468","wikidata":"https://www.wikidata.org/wiki/Q4354775","display_name":"Memorization","level":2,"score":0.3986000120639801},{"id":"https://openalex.org/C22019652","wikidata":"https://www.wikidata.org/wiki/Q331309","display_name":"Overfitting","level":3,"score":0.38499999046325684},{"id":"https://openalex.org/C137293760","wikidata":"https://www.wikidata.org/wiki/Q3621696","display_name":"Language model","level":2,"score":0.3610999882221222},{"id":"https://openalex.org/C59404180","wikidata":"https://www.wikidata.org/wiki/Q17013334","display_name":"Feature learning","level":2,"score":0.3246999979019165},{"id":"https://openalex.org/C2777601683","wikidata":"https://www.wikidata.org/wiki/Q6499736","display_name":"Vocabulary","level":2,"score":0.3043999969959259},{"id":"https://openalex.org/C45942800","wikidata":"https://www.wikidata.org/wiki/Q245652","display_name":"Ensemble learning","level":2,"score":0.30090001225471497},{"id":"https://openalex.org/C2779696439","wikidata":"https://www.wikidata.org/wiki/Q7512811","display_name":"Signature (topology)","level":2,"score":0.3003000020980835},{"id":"https://openalex.org/C70437156","wikidata":"https://www.wikidata.org/wiki/Q7228652","display_name":"Pooling","level":2,"score":0.29989999532699585},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.2946000099182129},{"id":"https://openalex.org/C8521452","wikidata":"https://www.wikidata.org/wiki/Q203790","display_name":"Connectionism","level":3,"score":0.2874000072479248},{"id":"https://openalex.org/C159877910","wikidata":"https://www.wikidata.org/wiki/Q2202883","display_name":"Autoregressive model","level":2,"score":0.2858999967575073},{"id":"https://openalex.org/C23224414","wikidata":"https://www.wikidata.org/wiki/Q176769","display_name":"Hidden Markov model","level":2,"score":0.2856999933719635},{"id":"https://openalex.org/C2779439875","wikidata":"https://www.wikidata.org/wiki/Q1078276","display_name":"Natural language understanding","level":3,"score":0.2824999988079071},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.27630001306533813},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.2734000086784363},{"id":"https://openalex.org/C155092808","wikidata":"https://www.wikidata.org/wiki/Q182557","display_name":"Computational linguistics","level":2,"score":0.25380000472068787}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2604.03199","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.03199","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2604.03199","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2604.03199","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"display_name":"Quality Education","id":"https://metadata.un.org/sdg/4","score":0.713191568851471}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"All":[0],"prior":[1],"membership":[2,47,60,103,196],"inference":[3,61,104,197],"attacks":[4],"for":[5],"fine-tuned":[6],"language":[7,85,232],"models":[8,86],"use":[9],"hand-crafted":[10],"heuristics":[11],"(e.g.,":[12],"loss":[13],"thresholding,":[14],"Min-K\\%,":[15],"reference":[16],"calibration),":[17],"each":[18],"bounded":[19],"by":[20,32,50,194],"the":[21,26,33,54,63,175,180,216],"designer's":[22],"intuition.":[23],"We":[24,81,100],"introduce":[25],"first":[27],"transferable":[28],"learned":[29],"attack,":[30],"enabled":[31],"observation":[34],"that":[35,83],"fine-tuning":[36,84],"any":[37,40],"model":[38,56],"on":[39,107,146,164,230],"corpus":[41],"yields":[42],"unlimited":[43],"labeled":[44],"data,":[45],"since":[46],"is":[48,161],"known":[49],"construction.":[51],"This":[52],"removes":[53],"shadow":[55],"bottleneck":[57],"and":[58,79,97,119,126,135,235],"brings":[59],"into":[62],"deep":[64],"learning":[65,67],"era:":[66],"what":[68],"matters":[69],"rather":[70],"than":[71,215],"designing":[72],"it,":[73],"with":[74],"generalization":[75],"through":[76],"training":[77,228],"diversity":[78],"scale.":[80],"discover":[82],"produces":[87],"an":[88,133],"invariant":[89],"signature":[90,176],"of":[91,179],"memorization":[92],"detectable":[93],"across":[94],"architectural":[95],"families":[96,153],"data":[98],"domains.":[99],"train":[101],"a":[102],"classifier":[105,237],"exclusively":[106],"transformer-based":[108],"models.":[109],"It":[110],"transfers":[111,222],"zero-shot":[112],"to":[113,223],"Mamba":[114],"(state-space),":[115],"RWKV-4":[116],"(linear":[117],"attention),":[118],"RecurrentGemma":[120],"(gated":[121],"recurrence),":[122],"achieving":[123],"0.963,":[124],"0.972,":[125],"0.936":[127],"AUC":[128],"respectively.":[129],"Each":[130],"evaluation":[131],"combines":[132],"architecture":[134],"dataset":[136],"never":[137],"seen":[138],"during":[139],"training,":[140],"yet":[141],"all":[142],"three":[143],"exceed":[144],"performance":[145],"held-out":[147],"transformers":[148],"(0.908":[149],"AUC).":[150],"These":[151],"four":[152],"share":[154],"no":[155],"computational":[156],"mechanisms,":[157],"their":[158],"only":[159,229],"commonality":[160],"gradient":[162],"descent":[163],"cross-entropy":[165],"loss.":[166],"Even":[167],"simple":[168],"likelihood-based":[169],"methods":[170],"exhibit":[171],"strong":[172],"transfer,":[173],"confirming":[174],"exists":[177],"independently":[178],"detection":[181],"method.":[182],"Our":[183],"method,":[184],"Learned":[185],"Transfer":[186],"MIA":[187],"(LT-MIA),":[188],"captures":[189],"this":[190],"signal":[191],"most":[192],"effectively":[193],"reframing":[195],"as":[198],"sequence":[199],"classification":[200],"over":[201],"per-token":[202],"distributional":[203],"statistics.":[204],"On":[205],"transformers,":[206],"LT-MIA":[207],"achieves":[208],"2.8$\\times$":[209],"higher":[210],"TPR":[211],"at":[212,239],"0.1\\%":[213],"FPR":[214],"strongest":[217],"baseline.":[218],"The":[219],"method":[220],"also":[221],"code":[224],"(0.865":[225],"AUC)":[226],"despite":[227],"natural":[231],"texts.":[233],"Code":[234],"trained":[236],"available":[238],"https://github.com/JetBrains-Research/learned-mia.":[240]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-04-07T00:00:00"}
