AI-powered
podcast player
Listen to all your favourite podcasts with AI-powered features
The Ultimate Problem of Adversarial Examples
A lot of people working on adversarial examples and my first actual internship at Google Brain was we wanted to look at the privacy of machine learning models. Sometimes this data doesn't matter what you train on. Like we're training on MNIST. This is a data set of handwritten digits that people were paid to like write numbers on a piece of paper and then they scanned them and collected them in the 90s. But there are lots ofMachine Learning models today where they're trained on sensitive data. People's text messages, emails, medical images, these kinds of things. And so it turns out that given access to the model, oftentimes the model leaks information about the individual people who are