Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
119 tokens/sec
GPT-4o
56 tokens/sec
Gemini 2.5 Pro Pro
43 tokens/sec
o3 Pro
6 tokens/sec
GPT-4.1 Pro
47 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Membership Inference Attack Susceptibility of Clinical Language Models (2104.08305v1)

Published 16 Apr 2021 in cs.CL

Abstract: Deep Neural Network (DNN) models have been shown to have high empirical privacy leakages. Clinical LLMs (CLMs) trained on clinical data have been used to improve performance in biomedical natural language processing tasks. In this work, we investigate the risks of training-data leakage through white-box or black-box access to CLMs. We design and employ membership inference attacks to estimate the empirical privacy leaks for model architectures like BERT and GPT2. We show that membership inference attacks on CLMs lead to non-trivial privacy leakages of up to 7%. Our results show that smaller models have lower empirical privacy leakages than larger ones, and masked LMs have lower leakages than auto-regressive LMs. We further show that differentially private CLMs can have improved model utility on clinical domain while ensuring low empirical privacy leakage. Lastly, we also study the effects of group-level membership inference and disease rarity on CLM privacy leakages.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (3)
  1. Abhyuday Jagannatha (10 papers)
  2. Bhanu Pratap Singh Rawat (8 papers)
  3. Hong Yu (114 papers)
Citations (53)

Summary

We haven't generated a summary for this paper yet.