Skip to content

A question about the black-box MIA? #1

@scottshufe

Description

@scottshufe

Hi, thanks for your excellent work and codes first.

I have read the code in src/MIA/black-box/Shadow/graphsage_Cora and I have a question about it:

Usually, when we launch MIAs, we use an auxiliary dataset that completely disjoints with the target dataset to train the shadow model (as you claimed in your article - 'the datasets are assumed to be non-overlapping, i.e, 𝐺𝑡𝑟𝑎𝑖𝑛 ∩𝐺𝑎𝑢𝑥 = 𝜙'). But it seems that you didn't follow this setting in your experiments. When training the target model and the shadow model, you randomly sampled a set of nodes from the full graph, respectively, but didn't make sure that these two node sets are non-overlapping.

I feel confused about this problem and sincerely look forward to your reply. :)

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions