Membership Inference Attack for Beluga Whales Discrimination

To efficiently monitor the growth and evolution of a particular wildlife population, one of the main fundamental challenges to address in animal ecology is the re-identification of individuals that have been previously encountered but also the discrimination between known and unknown individuals (th...

Full description

Bibliographic Details
Main Authors: Araújo, Voncarlos Marcelo, Gambs, Sébastien, Chion, Clément, Michaud, Robert, Schneider, Léo, Lautraite, Hadrien
Format: Text
Language:unknown
Published: 2023
Subjects:
Online Access:http://arxiv.org/abs/2302.14769
id ftarxivpreprints:oai:arXiv.org:2302.14769
record_format openpolar
spelling ftarxivpreprints:oai:arXiv.org:2302.14769 2023-09-05T13:18:28+02:00 Membership Inference Attack for Beluga Whales Discrimination Araújo, Voncarlos Marcelo Gambs, Sébastien Chion, Clément Michaud, Robert Schneider, Léo Lautraite, Hadrien 2023-02-28 http://arxiv.org/abs/2302.14769 unknown http://arxiv.org/abs/2302.14769 Computer Science - Computer Vision and Pattern Recognition text 2023 ftarxivpreprints 2023-08-16T17:33:49Z To efficiently monitor the growth and evolution of a particular wildlife population, one of the main fundamental challenges to address in animal ecology is the re-identification of individuals that have been previously encountered but also the discrimination between known and unknown individuals (the so-called "open-set problem"), which is the first step to realize before re-identification. In particular, in this work, we are interested in the discrimination within digital photos of beluga whales, which are known to be among the most challenging marine species to discriminate due to their lack of distinctive features. To tackle this problem, we propose a novel approach based on the use of Membership Inference Attacks (MIAs), which are normally used to assess the privacy risks associated with releasing a particular machine learning model. More precisely, we demonstrate that the problem of discriminating between known and unknown individuals can be solved efficiently using state-of-the-art approaches for MIAs. Extensive experiments on three benchmark datasets related to whales, two different neural network architectures, and three MIA clearly demonstrate the performance of the approach. In addition, we have also designed a novel MIA strategy that we coined as ensemble MIA, which combines the outputs of different MIAs to increase the attack accuracy while diminishing the false positive rate. Overall, one of our main objectives is also to show that the research on privacy attacks can also be leveraged "for good" by helping to address practical challenges encountered in animal ecology. Comment: 15 pages Text Beluga Beluga* ArXiv.org (Cornell University Library)
institution Open Polar
collection ArXiv.org (Cornell University Library)
op_collection_id ftarxivpreprints
language unknown
topic Computer Science - Computer Vision and Pattern Recognition
spellingShingle Computer Science - Computer Vision and Pattern Recognition
Araújo, Voncarlos Marcelo
Gambs, Sébastien
Chion, Clément
Michaud, Robert
Schneider, Léo
Lautraite, Hadrien
Membership Inference Attack for Beluga Whales Discrimination
topic_facet Computer Science - Computer Vision and Pattern Recognition
description To efficiently monitor the growth and evolution of a particular wildlife population, one of the main fundamental challenges to address in animal ecology is the re-identification of individuals that have been previously encountered but also the discrimination between known and unknown individuals (the so-called "open-set problem"), which is the first step to realize before re-identification. In particular, in this work, we are interested in the discrimination within digital photos of beluga whales, which are known to be among the most challenging marine species to discriminate due to their lack of distinctive features. To tackle this problem, we propose a novel approach based on the use of Membership Inference Attacks (MIAs), which are normally used to assess the privacy risks associated with releasing a particular machine learning model. More precisely, we demonstrate that the problem of discriminating between known and unknown individuals can be solved efficiently using state-of-the-art approaches for MIAs. Extensive experiments on three benchmark datasets related to whales, two different neural network architectures, and three MIA clearly demonstrate the performance of the approach. In addition, we have also designed a novel MIA strategy that we coined as ensemble MIA, which combines the outputs of different MIAs to increase the attack accuracy while diminishing the false positive rate. Overall, one of our main objectives is also to show that the research on privacy attacks can also be leveraged "for good" by helping to address practical challenges encountered in animal ecology. Comment: 15 pages
format Text
author Araújo, Voncarlos Marcelo
Gambs, Sébastien
Chion, Clément
Michaud, Robert
Schneider, Léo
Lautraite, Hadrien
author_facet Araújo, Voncarlos Marcelo
Gambs, Sébastien
Chion, Clément
Michaud, Robert
Schneider, Léo
Lautraite, Hadrien
author_sort Araújo, Voncarlos Marcelo
title Membership Inference Attack for Beluga Whales Discrimination
title_short Membership Inference Attack for Beluga Whales Discrimination
title_full Membership Inference Attack for Beluga Whales Discrimination
title_fullStr Membership Inference Attack for Beluga Whales Discrimination
title_full_unstemmed Membership Inference Attack for Beluga Whales Discrimination
title_sort membership inference attack for beluga whales discrimination
publishDate 2023
url http://arxiv.org/abs/2302.14769
genre Beluga
Beluga*
genre_facet Beluga
Beluga*
op_relation http://arxiv.org/abs/2302.14769
_version_ 1776199416714100736