{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2023:NRGZGHQSS2TZZPD5ZNP23FCPJ4","short_pith_number":"pith:NRGZGHQS","schema_version":"1.0","canonical_sha256":"6c4d931e1296a79cbc7dcb5fad944f4f32e4defeeb52433add2a54cad5775987","source":{"kind":"arxiv","id":"2311.05808","version":3},"attestation_state":"computed","paper":{"title":"Scale-MIA: A Scalable Model Inversion Attack against Secure Federated Learning via Latent Space Reconstruction","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Chaoyu Zhang, Ning Wang, Shanghao Shi, Wenjing Lou, Yang Xiao, Yi Shi, Y.Thomas Hou","submitted_at":"2023-11-10T00:53:22Z","abstract_excerpt":"Federated learning is known for its capability to safeguard the participants' data privacy. However, recently emerged model inversion attacks (MIAs) have shown that a malicious parameter server can reconstruct individual users' local data samples from model updates. The state-of-the-art attacks either rely on computation-intensive iterative optimization methods to reconstruct each input batch, making scaling difficult, or involve the malicious parameter server adding extra modules before the global model architecture, rendering the attacks too conspicuous and easily detectable.\n  To overcome t"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2311.05808","kind":"arxiv","version":3},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2023-11-10T00:53:22Z","cross_cats_sorted":[],"title_canon_sha256":"30a8d1d7946467c87231ade1c48ff0da6e6c5a83380afe149232045f3325e3e4","abstract_canon_sha256":"e5121219afbb7f095e83dea9dcc1d242cab5a96a2a168cb28755d76825114309"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T09:41:29.633479Z","signature_b64":"/uH1WCH8rSK4oAx4WMzqOFn9bITdm8Uo+HdkNOps2JMqS7bvSX4rG09LlvDftCsPjlXaKhfydzKL1uADq9VMAw==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"6c4d931e1296a79cbc7dcb5fad944f4f32e4defeeb52433add2a54cad5775987","last_reissued_at":"2026-07-05T09:41:29.633043Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T09:41:29.633043Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"Scale-MIA: A Scalable Model Inversion Attack against Secure Federated Learning via Latent Space Reconstruction","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.LG","authors_text":"Chaoyu Zhang, Ning Wang, Shanghao Shi, Wenjing Lou, Yang Xiao, Yi Shi, Y.Thomas Hou","submitted_at":"2023-11-10T00:53:22Z","abstract_excerpt":"Federated learning is known for its capability to safeguard the participants' data privacy. However, recently emerged model inversion attacks (MIAs) have shown that a malicious parameter server can reconstruct individual users' local data samples from model updates. The state-of-the-art attacks either rely on computation-intensive iterative optimization methods to reconstruct each input batch, making scaling difficult, or involve the malicious parameter server adding extra modules before the global model architecture, rendering the attacks too conspicuous and easily detectable.\n  To overcome t"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2311.05808","kind":"arxiv","version":3},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2311.05808/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2311.05808","created_at":"2026-07-05T09:41:29.633097+00:00"},{"alias_kind":"arxiv_version","alias_value":"2311.05808v3","created_at":"2026-07-05T09:41:29.633097+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2311.05808","created_at":"2026-07-05T09:41:29.633097+00:00"},{"alias_kind":"pith_short_12","alias_value":"NRGZGHQSS2TZ","created_at":"2026-07-05T09:41:29.633097+00:00"},{"alias_kind":"pith_short_16","alias_value":"NRGZGHQSS2TZZPD5","created_at":"2026-07-05T09:41:29.633097+00:00"},{"alias_kind":"pith_short_8","alias_value":"NRGZGHQS","created_at":"2026-07-05T09:41:29.633097+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.20553","citing_title":"From Efficiency to Leakage -- Privacy Backdoor in Federated Language Model Fine-Tuning","ref_index":55,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4","json":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4.json","graph_json":"https://pith.science/api/pith-number/NRGZGHQSS2TZZPD5ZNP23FCPJ4/graph.json","events_json":"https://pith.science/api/pith-number/NRGZGHQSS2TZZPD5ZNP23FCPJ4/events.json","paper":"https://pith.science/paper/NRGZGHQS"},"agent_actions":{"view_html":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4","download_json":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4.json","view_paper":"https://pith.science/paper/NRGZGHQS","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2311.05808&json=true","fetch_graph":"https://pith.science/api/pith-number/NRGZGHQSS2TZZPD5ZNP23FCPJ4/graph.json","fetch_events":"https://pith.science/api/pith-number/NRGZGHQSS2TZZPD5ZNP23FCPJ4/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4/action/timestamp_anchor","attest_storage":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4/action/storage_attestation","attest_author":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4/action/author_attestation","sign_citation":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4/action/citation_signature","submit_replication":"https://pith.science/pith/NRGZGHQSS2TZZPD5ZNP23FCPJ4/action/replication_record"}},"created_at":"2026-07-05T09:41:29.633097+00:00","updated_at":"2026-07-05T09:41:29.633097+00:00"}