The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Aug. 04, 2020

Filed:

Jul. 10, 2018
Applicant:

International Business Machines Corporation, Armonk, NY (US);

Inventors:

Frederico Araujo, White Plains, NY (US);

Jialong Zhang, White Plains, NY (US);

Teryl Taylor, Danbury, CT (US);

Marc P. Stoecklin, White Plains, NY (US);

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); G06N 3/08 (2006.01); H04L 29/06 (2006.01); G06N 3/04 (2006.01);
U.S. Cl.
CPC ...
G06F 21/554 (2013.01); G06N 3/0454 (2013.01); G06N 3/08 (2013.01); H04L 63/1491 (2013.01); G06F 2221/034 (2013.01);
Abstract

Mechanisms are provided for protecting a neural network model against model inversion attacks. The mechanisms generate a decoy dataset comprising decoy data for each class recognized by a neural network model. The mechanisms further configure the neural network model to generate a modified output based on the decoy dataset that directs a gradient of the modified output to the decoy dataset. The neural network model receives and process input data to generate an actual output. The neural network model modifies one or more actual elements of the actual output to be one or more corresponding modified elements of the modified output, and returns the one or more corresponding modified elements, instead of the one or more actual elements, to the source computing device.


Find Patent Forward Citations

Loading…