Attacks on Private Training Data

Attacks on Private Training Data

(Figure courtesy of Dr Ali Hatamizadeh, the author of GradViT) Recent studies have shown that training samples can be recovered from the corresponding gradients. This phenomenon is called Gradient Inversion (GradInv) attacks. The principle behind GradInv is to learn...