Position Matters: Feature Inversion Attacks in ViT Split Inference with Token Reduction and Shuffling
cs.CR, cs.AI
Submitted: 2026-09-01
Updated: 2026-09-17
Terminology
Sources
- From Pixels to Privacy: Temporally Consistent Video Anonymization via Token Pruning for Privacy Preserving Action Recognition
- SoK: Let the Privacy Games Begin! A Unified Treatment of Data Inference Privacy in Machine Learning
- DINOv3
- Split learning for health: Distributed deep learning without sharing raw patient data
- Permutation Equivariance of Transformers and Its Applications
- Defending Model Inversion and Membership Inference Attacks via Prediction Purification
- Adaptive Token Merging for Efficient Transformer Semantic Communication at the Edge
- On the (In-)Security of the Shuffling Defense in the Transformer Secure Inference
- A Survey of Visual Transformers
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs