{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:QFLZ6HYM65OEV5ODCBXIZLQ46E","short_pith_number":"pith:QFLZ6HYM","schema_version":"1.0","canonical_sha256":"81579f1f0cf75c4af5c3106e8cae1cf1358822a5857aa50eb0b7c21db2c94157","source":{"kind":"arxiv","id":"2407.09972","version":2},"attestation_state":"computed","paper":{"title":"MedLeak: Multimodal Medical Data Leakage in Secure Federated Learning with Crafted Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR","eess.IV"],"primary_cat":"cs.LG","authors_text":"Abhijeet Parida, Chaoyu Zhang, Marius George Linguraru, Md Shahedul Haque, Shanghao Shi, Syed Muhammad Anwar, Wenjing Lou, Y.Thomas Hou","submitted_at":"2024-07-13T18:31:35Z","abstract_excerpt":"Federated learning (FL) allows participants to collaboratively train machine learning models while keeping their data local, making it ideal for collaborations among healthcare institutions on sensitive data. However, in this paper, we propose a novel privacy attack called MedLeak, which allows a malicious FL server to recover high-quality site-specific private medical data from the client model updates. MedLeak works by introducing an adversarially crafted model during the FL training process. Honest clients, unaware of the insidious changes in the published models, continue to send back thei"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2407.09972","kind":"arxiv","version":2},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.LG","submitted_at":"2024-07-13T18:31:35Z","cross_cats_sorted":["cs.CR","eess.IV"],"title_canon_sha256":"23c110ece446e04f6a42a52a6b897a51a6055a98c24f49f41673f83c6853c4be","abstract_canon_sha256":"b2262ccc8af393c32b7e4510fe52a0059efa5094c204790c52047d32ca532e18"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:29:00.350150Z","signature_b64":"GU0PT9H+Rg0gy6DxZsTheVI/QDNpmqMokceRFpy6lUBbuWqfIQHy+3a7T70mq0e/LtggIk/8Us8nD/VBp+8zAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"81579f1f0cf75c4af5c3106e8cae1cf1358822a5857aa50eb0b7c21db2c94157","last_reissued_at":"2026-07-05T11:29:00.349645Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:29:00.349645Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"MedLeak: Multimodal Medical Data Leakage in Secure Federated Learning with Crafted Models","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":["cs.CR","eess.IV"],"primary_cat":"cs.LG","authors_text":"Abhijeet Parida, Chaoyu Zhang, Marius George Linguraru, Md Shahedul Haque, Shanghao Shi, Syed Muhammad Anwar, Wenjing Lou, Y.Thomas Hou","submitted_at":"2024-07-13T18:31:35Z","abstract_excerpt":"Federated learning (FL) allows participants to collaboratively train machine learning models while keeping their data local, making it ideal for collaborations among healthcare institutions on sensitive data. However, in this paper, we propose a novel privacy attack called MedLeak, which allows a malicious FL server to recover high-quality site-specific private medical data from the client model updates. MedLeak works by introducing an adversarially crafted model during the FL training process. Honest clients, unaware of the insidious changes in the published models, continue to send back thei"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2407.09972","kind":"arxiv","version":2},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2407.09972/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2407.09972","created_at":"2026-07-05T11:29:00.349709+00:00"},{"alias_kind":"arxiv_version","alias_value":"2407.09972v2","created_at":"2026-07-05T11:29:00.349709+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2407.09972","created_at":"2026-07-05T11:29:00.349709+00:00"},{"alias_kind":"pith_short_12","alias_value":"QFLZ6HYM65OE","created_at":"2026-07-05T11:29:00.349709+00:00"},{"alias_kind":"pith_short_16","alias_value":"QFLZ6HYM65OEV5OD","created_at":"2026-07-05T11:29:00.349709+00:00"},{"alias_kind":"pith_short_8","alias_value":"QFLZ6HYM","created_at":"2026-07-05T11:29:00.349709+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":1,"internal_anchor_count":1,"sample":[{"citing_arxiv_id":"2412.00687","citing_title":"Towards Privacy-Preserving Medical Imaging: Federated Learning with Differential Privacy and Secure Aggregation Using a Modified ResNet Architecture","ref_index":25,"is_internal_anchor":true}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E","json":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E.json","graph_json":"https://pith.science/api/pith-number/QFLZ6HYM65OEV5ODCBXIZLQ46E/graph.json","events_json":"https://pith.science/api/pith-number/QFLZ6HYM65OEV5ODCBXIZLQ46E/events.json","paper":"https://pith.science/paper/QFLZ6HYM"},"agent_actions":{"view_html":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E","download_json":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E.json","view_paper":"https://pith.science/paper/QFLZ6HYM","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2407.09972&json=true","fetch_graph":"https://pith.science/api/pith-number/QFLZ6HYM65OEV5ODCBXIZLQ46E/graph.json","fetch_events":"https://pith.science/api/pith-number/QFLZ6HYM65OEV5ODCBXIZLQ46E/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E/action/timestamp_anchor","attest_storage":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E/action/storage_attestation","attest_author":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E/action/author_attestation","sign_citation":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E/action/citation_signature","submit_replication":"https://pith.science/pith/QFLZ6HYM65OEV5ODCBXIZLQ46E/action/replication_record"}},"created_at":"2026-07-05T11:29:00.349709+00:00","updated_at":"2026-07-05T11:29:00.349709+00:00"}