no code implementations • 11 Sep 2020 • Jason W. Bentley, Daniel Gibney, Gary Hoppenworth, Sumit Kumar Jha
We demonstrate how a target model's generalization gap leads directly to an effective deterministic black box membership inference attack (MIA).