Information Laundering for Model Privacy
Xinran Wang, Yu Xiang, Jun Gao, Jie Ding
Abstract
In this work, we propose information laundering, a novel framework for enhancing model privacy. Unlike data privacy that concerns the protection of raw data information, model privacy aims to protect an already-learned model that is to be deployed for public use. The private model can be obtained from general learning methods, and its deployment means that it will return a deterministic or random response for a given input query. An information-laundered model consists of probabilistic components that deliberately maneuver the intended input and output for queries to the model, so the model's adversarial acquisition is less likely. Under the proposed framework, we develop an information-theoretic principle to quantify the fundamental tradeoffs between model utility and privacy leakage and derive the optimal design.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 126d36f9-1593-4b4a-904f-dc400e651eb8Cited by top-tier papers4
- Self-Aware Personalized Federated LearningHuili Chen, Jie Ding, Eric W. Tramel, Shuang Wu et al.NeurIPS 2022 · 37 citations
- Assisted Learning: A Framework for Multi-Organization LearningXun Xian, Xinran Wang, Jie Ding, Reza GhanadanNeurIPS 2020 · 37 citations
- GAL: Gradient Assisted Learning for Decentralized Multi-Organization CollaborationsEnmao Diao, Jie Ding, Vahid TarokhNeurIPS 2022 · 17 citations
- Model Stealing for Any Low-Rank Language ModelAllen Liu, Ankur MoitraSTOC 2025 · 1 citation
Builds on1
Related papers
- Trade-offs and Guarantees of Adversarial Representation Learning for Information ObfuscationHan Zhao, Jianfeng Chi, Yuan Tian, Geoffrey J. GordonNeurIPS 2020 · 29 citations
- Learning Robust and Privacy-Preserving Representations via Information TheoryBinghui Zhang, Sayedeh Leila Noorbakhsh, Yun Dong, Yuan Hong et al.AAAI 2025 · 4 citations
- CLOAK: Contrastive Guidance for Latent Diffusion-Based Data ObfuscationXin Yang, Omid ArdakanianUbiComp 2026
- The Privacy Onion Effect: Memorization is RelativeNicholas Carlini, Matthew Jagielski, Chiyuan Zhang, Nicolas Papernot et al.NeurIPS 2022 · 175 citations
- Adversarial Learning of Privacy-Preserving and Task-Oriented RepresentationsTaihong Xiao, Yi-Hsuan Tsai, Kihyuk Sohn, Manmohan Chandraker et al.AAAI 2020 · 87 citations
