Sign In

SMI: Statistical Membership Inference for Reliable Unlearned Model Auditing

Created by
  • Haebom
Category
Empty

์ €์ž

Jialong Sun, Zeming Wei, Jiaxuan Zou, Jiacheng Gong, Jie Fu, Chengyang Dong, Heng Xu, Jialong Li, Bo Liu

๐Ÿ’ก ๊ฐœ์š”

๋ณธ ์—ฐ๊ตฌ๋Š” ๋จธ์‹ ๋Ÿฌ๋‹ ๋ชจ๋ธ์—์„œ ๋ฐ์ดํ„ฐ ์‚ญ์ œ ๊ถŒ๋ฆฌ๋ฅผ ๋ณด์žฅํ•˜๊ธฐ ์œ„ํ•œ ํ•ต์‹ฌ ๊ณผ์ œ์ธ '์–ธ๋Ÿฌ๋‹'์˜ ์‹ ๋ขฐํ•  ์ˆ˜ ์žˆ๋Š” ๊ฐ์‚ฌ ๋ฐฉ๋ฒ•์„ ์ œ์•ˆํ•ฉ๋‹ˆ๋‹ค. ๊ธฐ์กด์˜ ๋ฉค๋ฒ„์‹ญ ์ถ”๋ก  ๊ณต๊ฒฉ(MIA)์€ ์‚ญ์ œ๋œ ๋ฐ์ดํ„ฐ์— ๋Œ€ํ•œ ๋ฉค๋ฒ„์‹ญ ํƒ์ง€๋ฅผ ์‹คํŒจํ•˜๋ฉด ์„ฑ๊ณต์ ์œผ๋กœ ์‚ญ์ œ๋˜์—ˆ๋‹ค๊ณ  ๊ฐ€์ •ํ•˜์ง€๋งŒ, ์ด ๊ฐ€์ •์ด ๊ทผ๋ณธ์ ์œผ๋กœ ์ž˜๋ชป๋˜์—ˆ์Œ์„ ์ฆ๋ช…ํ•ฉ๋‹ˆ๋‹ค. ์ œ์•ˆํ•˜๋Š” ํ†ต๊ณ„์  ๋ฉค๋ฒ„์‹ญ ์ถ”๋ก (SMI)์€ ํ›ˆ๋ จ ์—†์ด ์–ธ๋Ÿฌ๋‹๋œ ๋ชจ๋ธ์˜ ํŠน์ง• ๊ณต๊ฐ„ ๋ถ„ํฌ์—์„œ ๋น„๋ฉค๋ฒ„ ๋ฐ์ดํ„ฐ์˜ ๋น„์œจ์„ ์ถ”์ •ํ•˜๋Š” ์ƒˆ๋กœ์šด ์ ‘๊ทผ ๋ฐฉ์‹์„ ํ†ตํ•ด ๊ฐ์‚ฌ ์‹ ๋ขฐ๋„๋ฅผ ์ •๋Ÿ‰ํ™”ํ•ฉ๋‹ˆ๋‹ค.

๐Ÿ”‘ ์‹œ์‚ฌ์  ๋ฐ ํ•œ๊ณ„

โ€ข
๊ธฐ์กด ๋ฉค๋ฒ„์‹ญ ์ถ”๋ก  ๊ณต๊ฒฉ(MIA)์˜ ๊ฐ์‚ฌ ์„ฑ๋Šฅ ๊ณผ๋Œ€ํ‰๊ฐ€ ๋ฌธ์ œ๋ฅผ ํ•ด๊ฒฐํ•˜๋ฉฐ, ์–ธ๋Ÿฌ๋‹๋œ ์ƒ˜ํ”Œ๊ณผ ๋น„๋ฉค๋ฒ„ ์ƒ˜ํ”Œ ๊ฐ„์˜ ํŠน์ง• ๊ณต๊ฐ„ ์ •๋ ฌ ํŽธํ–ฅ์œผ๋กœ ์ธํ•ด ๋ฐœ์ƒํ•˜๋Š” ๊ทผ๋ณธ์ ์ธ ํ•œ๊ณ„๋ฅผ ์ง€์ ํ•ฉ๋‹ˆ๋‹ค.
โ€ข
ํ›ˆ๋ จ์ด ํ•„์š” ์—†๋Š” ํ†ต๊ณ„์  ๋ฉค๋ฒ„์‹ญ ์ถ”๋ก (SMI) ํ”„๋ ˆ์ž„์›Œํฌ๋ฅผ ์ œ์•ˆํ•˜์—ฌ, ์„€๋„์šฐ ๋ชจ๋ธ ํ›ˆ๋ จ์— ๋“œ๋Š” ๋ง‰๋Œ€ํ•œ ๊ณ„์‚ฐ ๋น„์šฉ์„ ์ ˆ๊ฐํ•˜๋ฉด์„œ๋„ MIA ๊ธฐ๋ฐ˜ ๋ฐฉ๋ฒ•๋ณด๋‹ค ์ผ๊ด€์ ์œผ๋กœ ์šฐ์ˆ˜ํ•œ ๊ฐ์‚ฌ ์„ฑ๋Šฅ์„ ๋ณด์ž…๋‹ˆ๋‹ค.
โ€ข
SMI๋Š” ๊ฐ์‚ฌ ์‹ ๋ขฐ๋„๋ฅผ ์ •๋Ÿ‰ํ™”ํ•˜๊ธฐ ์œ„ํ•œ ๋ถ€ํŠธ์ŠคํŠธ๋žฉ ์ฐธ์กฐ ๋ฒ”์œ„๋ฅผ ์ œ๊ณตํ•˜์—ฌ, ์ด๋ก ์  ๋ณด์žฅ๊ณผ ๊ฐ•๋ ฅํ•œ ์‹ค์ฆ์  ์„ฑ๋Šฅ์„ ๋ชจ๋‘ ๊ฐ–์ถ˜ ์›์น™์ ์ด๊ณ  ํšจ์œจ์ ์ธ ๋Œ€์•ˆ์„ ์ œ์‹œํ•ฉ๋‹ˆ๋‹ค.
โ€ข
SMI์˜ ํšจ๊ณผ๊ฐ€ ํŠน์ • ๋ชจ๋ธ ์•„ํ‚คํ…์ฒ˜๋‚˜ ์–ธ๋Ÿฌ๋‹ ์•Œ๊ณ ๋ฆฌ์ฆ˜์— ๋”ฐ๋ผ ์–ด๋–ป๊ฒŒ ๋‹ฌ๋ผ์งˆ ์ˆ˜ ์žˆ๋Š”์ง€์— ๋Œ€ํ•œ ์ถ”๊ฐ€์ ์ธ ์—ฐ๊ตฌ๊ฐ€ ํ•„์š”ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค.
๐Ÿ‘