Intermediate hidden states transmitted during collaborative LVLM inference leak enough information to reconstruct input images and text with near-perfect token accuracy.
Understanding Transformer-based Vision Models through Inversion
1 Pith paper cite this work. Polarity classification is still indexing.
abstract
Understanding the mechanisms underlying deep neural networks remains a fundamental challenge in machine learning and computer vision. One promising, yet only preliminarily explored approach, is feature inversion, which attempts to reconstruct images from intermediate representations using trained inverse neural networks. In this study, we revisit feature inversion, introducing a novel, modular variation that enables significantly more efficient application of the technique. We demonstrate how our method can be systematically applied to the large-scale transformer-based vision models, Detection Transformer and Vision Transformer, and how reconstructed images can be qualitatively interpreted in a meaningful way. We further quantitatively evaluate our method, thereby uncovering underlying mechanisms of representing image features that emerge in the two transformer architectures. Our analysis reveals key insights into how these models encode contextual shape and image details, how their layers correlate, and their robustness against color perturbations. These findings contribute to a deeper understanding of transformer-based vision models and their internal representations. The code for reproducing our experiments is available at github.com/wiskott-lab/inverse-tvm.
citation-role summary
citation-polarity summary
fields
cs.CR 1years
2026 1verdicts
CONDITIONAL 1roles
background 1polarities
background 1representative citing papers
citing papers explorer
-
Inverting the Hidden: Unveiling Multimodal Privacy Leakage in Collaborative LVLM Inference
Intermediate hidden states transmitted during collaborative LVLM inference leak enough information to reconstruct input images and text with near-perfect token accuracy.