Skip to content

Autoencoder defence #10

@TTitcombe

Description

@TTitcombe

Assuming the hypothesis that a smaller intermediate tensor makes the attack more difficult, develop a PoC for using an autoencoder to generate a small intermediate tensor. The training process would be:

  1. Train an autoencoder (should be performed by data holder, otherwise server still can invert the autoencoder as well)
  2. Train the encoder + server model on the proper task

Metadata

Metadata

Assignees

No one assigned

    Labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions