Skip to main content

Showing 1–5 of 5 results for author: Testa, B

.
  1. arXiv:2402.09316  [pdf, other

    cs.CV cs.LG

    Only My Model On My Data: A Privacy Preserving Approach Protecting one Model and Deceiving Unauthorized Black-Box Models

    Authors: Weiheng Chai, Brian Testa, Huantao Ren, Asif Salekin, Senem Velipasalar

    Abstract: Deep neural networks are extensively applied to real-world tasks, such as face recognition and medical image classification, where privacy and data protection are critical. Image data, if not protected, can be exploited to infer personal or contextual information. Existing privacy preservation methods, like encryption, generate perturbed images that are unrecognizable to even humans. Adversarial a… ▽ More

    Submitted 14 February, 2024; originally announced February 2024.

  2. arXiv:2306.15790  [pdf, other

    cs.LG cs.CR

    Probing the Transition to Dataset-Level Privacy in ML Models Using an Output-Specific and Data-Resolved Privacy Profile

    Authors: Tyler LeBlond, Joseph Munoz, Fred Lu, Maya Fuchs, Elliott Zaresky-Williams, Edward Raff, Brian Testa

    Abstract: Differential privacy (DP) is the prevailing technique for protecting user data in machine learning models. However, deficits to this framework include a lack of clarity for selecting the privacy budget $ε$ and a lack of quantification for the privacy leakage for a particular data row by a particular trained model. We make progress toward these limitations and a new perspective by which to visualiz… ▽ More

    Submitted 27 June, 2023; originally announced June 2023.

    Comments: Approved for Public Release; Distribution Unlimited. PA #:AFRL-2022-3639

  3. arXiv:2304.12429  [pdf, ps, other

    cs.LG cs.CR

    Sparse Private LASSO Logistic Regression

    Authors: Amol Khanna, Fred Lu, Edward Raff, Brian Testa

    Abstract: LASSO regularized logistic regression is particularly useful for its built-in feature selection, allowing coefficients to be removed from deployment and producing sparse solutions. Differentially private versions of LASSO logistic regression have been developed, but generally produce dense solutions, reducing the intrinsic utility of the LASSO penalty. In this paper, we present a differentially pr… ▽ More

    Submitted 28 April, 2023; v1 submitted 24 April, 2023; originally announced April 2023.

    Comments: 20 pages, 5 figures

  4. arXiv:2211.09273  [pdf, other

    cs.LG cs.CR cs.SD eess.AS

    Privacy against Real-Time Speech Emotion Detection via Acoustic Adversarial Evasion of Machine Learning

    Authors: Brian Testa, Yi Xiao, Harshit Sharma, Avery Gump, Asif Salekin

    Abstract: Smart speaker voice assistants (VAs) such as Amazon Echo and Google Home have been widely adopted due to their seamless integration with smart home devices and the Internet of Things (IoT) technologies. These VA services raise privacy concerns, especially due to their access to our speech. This work considers one such use case: the unaccountable and unauthorized surveillance of a user's emotion vi… ▽ More

    Submitted 18 December, 2023; v1 submitted 16 November, 2022; originally announced November 2022.

  5. arXiv:2210.08643  [pdf, other

    cs.LG cs.CR

    A General Framework for Auditing Differentially Private Machine Learning

    Authors: Fred Lu, Joseph Munoz, Maya Fuchs, Tyler LeBlond, Elliott Zaresky-Williams, Edward Raff, Francis Ferraro, Brian Testa

    Abstract: We present a framework to statistically audit the privacy guarantee conferred by a differentially private machine learner in practice. While previous works have taken steps toward evaluating privacy loss through poisoning attacks or membership inference, they have been tailored to specific models or have demonstrated low statistical power. Our work develops a general methodology to empirically eva… ▽ More

    Submitted 6 January, 2023; v1 submitted 16 October, 2022; originally announced October 2022.

    Comments: NeurIPS 2022