Don't Trust the AI Ecosystem: Analyzing Privacy Leakage in Compromised Open-Source Components
Jin-Seong Kim, Han-Ju Lee, Seok-Won Hong, Takeshi Takahashi, Chansu Han, Tomohiro Morikawa, Seok-Hwan Choi
cs.CR
Submitted: 2026-07-30
Comments: Extended version of the paper to appear in ACM CCS 2026 (17 pages, 10 figures)
Code: https://github.com/KimJinSeong-Git/GradLock
License: http://arxiv.org/licenses/nonexclusive-distrib/1.0/
Terminology
Sources
- Towards Deep Network Steganography: From Networks to Networks
- Very Deep Convolutional Networks for Large-Scale Image Recognition
- Dreaming to Distill: Data-free Knowledge Transfer via DeepInversion
- iDLG: Improved Deep Leakage from Gradients
- Model Inversion Attacks: A Survey of Approaches and Countermeasures
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs