summaryrefslogtreecommitdiff
path: root/ACSAC/tables/tab_summary.tex
diff options
context:
space:
mode:
authorJan Aalmoes <jan.aalmoes@inria.fr>2024-09-13 00:07:42 +0200
committerJan Aalmoes <jan.aalmoes@inria.fr>2024-09-13 00:07:42 +0200
commitfaa07a8f3337c5d191597ea9b9587cc0969d663c (patch)
treea46440db847ce447917abecb7971d90db4a1f150 /ACSAC/tables/tab_summary.tex
parent7fc151d6a198d13dc9e1374522ec396d72905d3f (diff)
avnacé aia, remerciement notations, notes
Diffstat (limited to 'ACSAC/tables/tab_summary.tex')
-rw-r--r--ACSAC/tables/tab_summary.tex32
1 files changed, 32 insertions, 0 deletions
diff --git a/ACSAC/tables/tab_summary.tex b/ACSAC/tables/tab_summary.tex
new file mode 100644
index 0000000..f9598a4
--- /dev/null
+++ b/ACSAC/tables/tab_summary.tex
@@ -0,0 +1,32 @@
+\setlength\tabcolsep{3pt}
+\begin{table*}[!htb]
+\caption{Comparison of prior \aia{s}: attack vector exploited (e.g., $\targetmodel(X(\omega))$, $X(\omega)$, $Y(\omega)$, distribution over $S$ ($P_S$) and confusion matrix $C(Y,\targetmodel\circ X)$), whether $S$ is censored, i.e., included in $\traindata$ and inputs, whether \aia{s} account for class imbalance in $S$, whether \adv is active or passive and whether the threat model is blackbox or whitebox.}
+\begin{center}
+\footnotesize
+% \resizebox{\textwidth}{!}{%
+\begin{tabular}{ |c|c|c|c|c|c| }
+ \hline
+ \rowcolor{LightCyan}
+ \textbf{Literature} & \textbf{Attack Vector} & \textbf{Is $S$ censored?} & \textbf{Imbalance in $S$?} & \textbf{\adv} & \textbf{Threat Model} \\
+ \hline
+ \rowcolor{LightCyan}
+ \multicolumn{6}{|c|}{\textbf{Imputation-based Attacks}}\\
+ \hline
+ \textbf{Fredrikson et al.}~\cite{fredrikson2} & $X$, $Y$, $\targetmodel\circ X$, \textbf{$P_S$}, $C(Y,\targetmodel\circ X$) & $\checkmark$ & $\times$ & Passive & Blackbox\\
+ \textbf{Yeom et al.}~\cite{yeom} & $X$, $Y$, $\targetmodel$, \textbf{$P_S$} & $\checkmark$ & $\times$ & Passive & Blackbox\\
+ \textbf{Mehnaz et al.}~\cite{MehnazAttInf} & $X$, $Y$, $\targetmodel$, \textbf{$P_S$}, $C(Y,\targetmodel\circ X)$ & $\checkmark$ & $\times$ & Passive & Blackbox\\
+ \textbf{Jayaraman and Evans}~\cite{jayaraman2022attribute} & $X$, $Y$, $\targetmodel$, $P_S$, $C(Y,\targetmodel\circ X)$ & $\times$, $\checkmark$ & $\times$ & Passive & Whitebox\\
+ \hline
+ \rowcolor{LightCyan}
+ \multicolumn{6}{|c|}{\textbf{Representation-based Attacks}}\\
+ \hline
+ \textbf{Song et al.}~\cite{Song2020Overlearning} & $\targetmodel\circ X$ & $\times$ & $\times$ & Passive & Both\\
+ \textbf{Mahajan et al.}~\cite{Mahajan2020DoesLS} & $\targetmodel\circ X$ & $\checkmark$ & $\times$ & Passive & Blackbox\\
+ \textbf{Malekzadeh et al.}~\cite{malekzadeh2021honestbutcurious} & $\targetmodel\circ X$ & $\times$ & $\times$ & Active & Blackbox\\
+ % \textbf{Our Work} & $\targetmodel\circ X$ & $\times$, $\checkmark$ & $\checkmark$ & Passive & Blackbox \\
+ \hline
+\end{tabular}
+% }
+\end{center}
+\label{tab:summary}
+\end{table*} \ No newline at end of file