{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T01:05:44Z","timestamp":1740099944610,"version":"3.37.3"},"publisher-location":"New York, NY, USA","reference-count":64,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,3,1]],"date-time":"2021-03-01T00:00:00Z","timestamp":1614556800000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["CNS-1704845,CNS-1943016"],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,3,3]]},"DOI":"10.1145\/3442188.3445894","type":"proceedings-article","created":{"date-parts":[[2021,3,3]],"date-time":"2021-03-03T01:26:24Z","timestamp":1614734784000},"page":"285-295","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":9,"title":["Leave-one-out Unfairness"],"prefix":"10.1145","author":[{"given":"Emily","family":"Black","sequence":"first","affiliation":[{"name":"Carnegie Mellon University"}]},{"given":"Matt","family":"Fredrikson","sequence":"additional","affiliation":[{"name":"Carnegie Mellon University"}]}],"member":"320","published-online":{"date-parts":[[2021,3]]},"reference":[{"key":"e_1_3_2_2_1_1","volume-title":"United States","author":"Henry","year":"1959","unstructured":"Henry v. United States , volume 361 U.S. 98. 1959 . Henry v. United States, volume 361 U.S. 98. 1959."},{"key":"e_1_3_2_2_2_1","volume-title":"https:\/\/www.fdic.gov\/regulations\/laws\/rules\/6500-200.html","author":"Equal","year":"2011","unstructured":"Equal credit opportunity act (regulation b). https:\/\/www.fdic.gov\/regulations\/laws\/rules\/6500-200.html , 2011 . Equal credit opportunity act (regulation b). https:\/\/www.fdic.gov\/regulations\/laws\/rules\/6500-200.html, 2011."},{"key":"e_1_3_2_2_3_1","volume-title":"regulation (eu) 2016\/679. https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/HTML\/?uri=CELEX:32016R0679&from=EN","author":"European","year":"2016","unstructured":"European parliament and council of european union ( 2016 ) regulation (eu) 2016\/679. https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/HTML\/?uri=CELEX:32016R0679&from=EN , 2016. European parliament and council of european union (2016) regulation (eu) 2016\/679. https:\/\/eur-lex.europa.eu\/legal-content\/EN\/TXT\/HTML\/?uri=CELEX:32016R0679&from=EN, 2016."},{"key":"e_1_3_2_2_4_1","volume-title":"Iberoamerican Congress on Pattern Recognition. Springer","author":"Acien Alejandro","year":"2018","unstructured":"Alejandro Acien , Aythami Morales , Ruben Vera-Rodriguez , Ivan Bartolome , and Julian Fierrez . Measuring the gender and ethnicity bias in deep models for face recognition . In Iberoamerican Congress on Pattern Recognition. Springer , 2018 . Alejandro Acien, Aythami Morales, Ruben Vera-Rodriguez, Ivan Bartolome, and Julian Fierrez. Measuring the gender and ethnicity bias in deep models for face recognition. In Iberoamerican Congress on Pattern Recognition. Springer, 2018."},{"key":"e_1_3_2_2_5_1","volume-title":"Risks","author":"Addo Peter","year":"2018","unstructured":"Peter Addo , Dominique Guegan , and Bertrand Hassani . Credit risk analysis using machine and deep learning models . Risks , Apr 2018 . Peter Addo, Dominique Guegan, and Bertrand Hassani. Credit risk analysis using machine and deep learning models. Risks, Apr 2018."},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.5555\/3305381.3305406"},{"key":"e_1_3_2_2_7_1","volume-title":"KDD","author":"Dmitrii","year":"2019","unstructured":"Dmitrii Babaev et al. Et-rnn: Applying deep learning to credit loan applications . In KDD , 2019 . Dmitrii Babaev et al. Et-rnn: Applying deep learning to credit loan applications. In KDD, 2019."},{"key":"e_1_3_2_2_8_1","doi-asserted-by":"publisher","DOI":"10.3390\/mti2030047"},{"key":"e_1_3_2_2_9_1","volume-title":"Insurance 2030: The impact of ai on the future of insurance","author":"Ramnath Balasubramanian","year":"2018","unstructured":"Ramnath Balasubramanian et al. Insurance 2030: The impact of ai on the future of insurance . McKinsey & Company , 2018 . Ramnath Balasubramanian et al. Insurance 2030: The impact of ai on the future of insurance. McKinsey & Company, 2018."},{"key":"e_1_3_2_2_10_1","volume-title":"Advances in neural information processing systems","author":"Bolukbasi Tolga","year":"2016","unstructured":"Tolga Bolukbasi , Kai-Wei Chang , James Y Zou , Venkatesh Saligrama , and Adam T Kalai . Man is to computer programmer as woman is to homemaker? debiasing word embeddings . In Advances in neural information processing systems , 2016 . Tolga Bolukbasi, Kai-Wei Chang, James Y Zou, Venkatesh Saligrama, and Adam T Kalai. Man is to computer programmer as woman is to homemaker? debiasing word embeddings. In Advances in neural information processing systems, 2016."},{"key":"e_1_3_2_2_11_1","volume-title":"Perturbation analysis of optimization problems","author":"Fr\u00e9d\u00e9ric Bonnans J","year":"2013","unstructured":"J Fr\u00e9d\u00e9ric Bonnans and Alexander Shapiro . Perturbation analysis of optimization problems . Springer Science & Business Media , 2013 . J Fr\u00e9d\u00e9ric Bonnans and Alexander Shapiro. Perturbation analysis of optimization problems. Springer Science & Business Media, 2013."},{"key":"e_1_3_2_2_12_1","volume-title":"Stability and generalization. Journal of machine learning research, 2(Mar):499--526","author":"Bousquet Olivier","year":"2002","unstructured":"Olivier Bousquet and Andr\u00e9 Elisseeff . Stability and generalization. Journal of machine learning research, 2(Mar):499--526 , 2002 . Olivier Bousquet and Andr\u00e9 Elisseeff. Stability and generalization. Journal of machine learning research, 2(Mar):499--526, 2002."},{"key":"e_1_3_2_2_13_1","volume-title":"Conference on fairness, accountability and transparency","author":"Buolamwini Joy","year":"2018","unstructured":"Joy Buolamwini and Timnit Gebru . Gender shades : Intersectional accuracy disparities in commercial gender classification . In Conference on fairness, accountability and transparency , 2018 . Joy Buolamwini and Timnit Gebru. Gender shades: Intersectional accuracy disparities in commercial gender classification. In Conference on fairness, accountability and transparency, 2018."},{"key":"e_1_3_2_2_14_1","volume-title":"Proceedings of the 36th International Conference on Machine Learning (ICML)","author":"Cohen Jeremy","year":"2019","unstructured":"Jeremy Cohen , Elan Rosenfeld , and Zico Kolter . Certified adversarial robustness via randomized smoothing . In Proceedings of the 36th International Conference on Machine Learning (ICML) , 2019 . Jeremy Cohen, Elan Rosenfeld, and Zico Kolter. Certified adversarial robustness via randomized smoothing. In Proceedings of the 36th International Conference on Machine Learning (ICML), 2019."},{"key":"e_1_3_2_2_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2959100.2959190"},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134097"},{"key":"e_1_3_2_2_17_1","volume-title":"UCI machine learning repository. https:\/ive.ics.uci.edu\/ml","author":"Dua Dheeru","year":"2017","unstructured":"Dheeru Dua and Efi Karra Taniskidou . UCI machine learning repository. https:\/ive.ics.uci.edu\/ml , 2017 . Dheeru Dua and Efi Karra Taniskidou. UCI machine learning repository. https:\/ive.ics.uci.edu\/ml, 2017."},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"publisher","DOI":"10.1007\/11787006_1"},{"key":"e_1_3_2_2_19_1","volume-title":"Fairness under composition. CoRR, abs\/1806.06122","author":"Dwork Cynthia","year":"2018","unstructured":"Cynthia Dwork and Christina Ilvento . Fairness under composition. CoRR, abs\/1806.06122 , 2018 . Cynthia Dwork and Christina Ilvento. Fairness under composition. CoRR, abs\/1806.06122, 2018."},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2090236.2090255"},{"key":"e_1_3_2_2_21_1","volume-title":"Medical Image Analysis","author":"Geert Litjens","year":"2017","unstructured":"Geert Litjens et. al. A survey on deep learning in medical image analysis . Medical Image Analysis , 2017 . Geert Litjens et. al. A survey on deep learning in medical image analysis. Medical Image Analysis, 2017."},{"key":"e_1_3_2_2_22_1","volume-title":"ICML","author":"Etmann Christian","year":"2019","unstructured":"Christian Etmann , Sebastian Lunz , Peter Maass , and Carola-Bibiane Sch\u00f6nlieb . On the connection between adversarial robustness and saliency map interpretability . In ICML , 2019 . Christian Etmann, Sebastian Lunz, Peter Maass, and Carola-Bibiane Sch\u00f6nlieb. On the connection between adversarial robustness and saliency map interpretability. In ICML, 2019."},{"key":"e_1_3_2_2_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/2783258.2783311"},{"key":"e_1_3_2_2_24_1","volume-title":"Does learning require memorization? A short tale about a long tail. CoRR, abs\/1906.05271","author":"Feldman Vitaly","year":"2019","unstructured":"Vitaly Feldman . Does learning require memorization? A short tale about a long tail. CoRR, abs\/1906.05271 , 2019 . Vitaly Feldman. Does learning require memorization? A short tale about a long tail. CoRR, abs\/1906.05271, 2019."},{"key":"e_1_3_2_2_25_1","volume-title":"The perpetual lineup","author":"Garvie Clare","year":"2016","unstructured":"Clare Garvie , Alvaro Bedoya , and Jonathan Frankle . The perpetual lineup , 2016 . Clare Garvie, Alvaro Bedoya, and Jonathan Frankle. The perpetual lineup, 2016."},{"key":"e_1_3_2_2_26_1","volume-title":"Advances in Neural Information Processing Systems","author":"Hardt Moritz","year":"2016","unstructured":"Moritz Hardt , Eric Price , and Nati Srebro . Equality of opportunity in supervised learning . In Advances in Neural Information Processing Systems , 2016 . Moritz Hardt, Eric Price, and Nati Srebro. Equality of opportunity in supervised learning. In Advances in Neural Information Processing Systems, 2016."},{"key":"e_1_3_2_2_27_1","volume-title":"Proceedings of the 33rd International Conference on International Conference on Machine Learning, ICML'16","author":"Hardt Moritz","year":"2016","unstructured":"Moritz Hardt , Benjamin Recht , and Yoram Singer . Train faster, generalize better: Stability of stochastic gradient descent . In Proceedings of the 33rd International Conference on International Conference on Machine Learning, ICML'16 , 2016 . Moritz Hardt, Benjamin Recht, and Yoram Singer. Train faster, generalize better: Stability of stochastic gradient descent. In Proceedings of the 33rd International Conference on International Conference on Machine Learning, ICML'16, 2016."},{"key":"e_1_3_2_2_28_1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"e_1_3_2_2_29_1","volume-title":"June, 24","author":"Hill Kashmir","year":"2020","unstructured":"Kashmir Hill . Wrongfully accused by an algorithm. The New York Times , June, 24 , 2020 . Kashmir Hill. Wrongfully accused by an algorithm. The New York Times, June, 24, 2020."},{"key":"e_1_3_2_2_30_1","volume-title":"Labeled faces in the wild: A database forstudying face recognition in unconstrained environments","author":"Huang Gary B","year":"2008","unstructured":"Gary B Huang , Marwan Mattar , Tamara Berg , and Eric Learned-Miller . Labeled faces in the wild: A database forstudying face recognition in unconstrained environments . 2008 . Gary B Huang, Marwan Mattar, Tamara Berg, and Eric Learned-Miller. Labeled faces in the wild: A database forstudying face recognition in unconstrained environments. 2008."},{"key":"e_1_3_2_2_31_1","volume-title":"Advances in Neural Information Processing Systems 32.","author":"Ilyas Andrew","year":"2019","unstructured":"Andrew Ilyas , Shibani Santurkar , Dimitris Tsipras , Logan Engstrom , Brandon Tran , and Aleksander Madry . Adversarial examples are not bugs, they are features . In Advances in Neural Information Processing Systems 32. 2019 . Andrew Ilyas, Shibani Santurkar, Dimitris Tsipras, Logan Engstrom, Brandon Tran, and Aleksander Madry. Adversarial examples are not bugs, they are features. In Advances in Neural Information Processing Systems 32. 2019."},{"key":"e_1_3_2_2_32_1","volume-title":"Advances in Neural Information Processing Systems","author":"Joseph Matthew","year":"2016","unstructured":"Matthew Joseph , Michael Kearns , Jamie H Morgenstern , and Aaron Roth . Fairness in learning: Classic and contextual bandits . In Advances in Neural Information Processing Systems , 2016 . Matthew Joseph, Michael Kearns, Jamie H Morgenstern, and Aaron Roth. Fairness in learning: Classic and contextual bandits. In Advances in Neural Information Processing Systems, 2016."},{"key":"e_1_3_2_2_33_1","first-page":"189","article-title":"The right to explanation, explained","volume":"34","author":"Kaminski Margot E","year":"2019","unstructured":"Margot E Kaminski . The right to explanation, explained . Berkeley Tech. LJ , 34 : 189 , 2019 . Margot E Kaminski. The right to explanation, explained. Berkeley Tech. LJ, 34: 189, 2019.","journal-title":"Berkeley Tech. LJ"},{"key":"e_1_3_2_2_34_1","volume-title":"Advances in Neural Information Processing Systems","author":"Kusner Matt J","year":"2017","unstructured":"Matt J Kusner , Joshua Loftus , Chris Russell , and Ricardo Silva . Counterfactual fairness . In Advances in Neural Information Processing Systems , 2017 . Matt J Kusner, Joshua Loftus, Chris Russell, and Ricardo Silva. Counterfactual fairness. In Advances in Neural Information Processing Systems, 2017."},{"key":"e_1_3_2_2_35_1","volume-title":"ICML","author":"Kuzborskij Ilja","year":"2018","unstructured":"Ilja Kuzborskij and Christoph H. Lampert . Data-dependent stability of stochastic gradient descent . In ICML , 2018 . Ilja Kuzborskij and Christoph H. Lampert. Data-dependent stability of stochastic gradient descent. In ICML, 2018."},{"key":"e_1_3_2_2_36_1","volume-title":"Learning algorithms for classification: A comparison on handwritten digit recognition. Neural networks: the statistical mechanics perspective, 261:276","author":"LeCun Yann","year":"1995","unstructured":"Yann LeCun , LD Jackel , L\u00e9on Bottou , Corinna Cortes , John S Denker , Harris Drucker , Isabelle Guyon , Urs A Muller , Eduard Sackinger , Patrice Simard , Learning algorithms for classification: A comparison on handwritten digit recognition. Neural networks: the statistical mechanics perspective, 261:276 , 1995 . Yann LeCun, LD Jackel, L\u00e9on Bottou, Corinna Cortes, John S Denker, Harris Drucker, Isabelle Guyon, Urs A Muller, Eduard Sackinger, Patrice Simard, et al. Learning algorithms for classification: A comparison on handwritten digit recognition. Neural networks: the statistical mechanics perspective, 261:276, 1995."},{"key":"e_1_3_2_2_37_1","volume-title":"Stolen memories: Leveraging model memorization for calibrated white-box membership inference","author":"Leino Klas","year":"2020","unstructured":"Klas Leino and Matt Fredrikson . Stolen memories: Leveraging model memorization for calibrated white-box membership inference . 2020 . Klas Leino and Matt Fredrikson. Stolen memories: Leveraging model memorization for calibrated white-box membership inference. 2020."},{"key":"e_1_3_2_2_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/3236386.3241340"},{"key":"e_1_3_2_2_39_1","volume-title":"Clearview ai ceo says 'over 2,400 police agencies' are using its facial recognition software","author":"Lopatto Elizabeth","year":"2020","unstructured":"Elizabeth Lopatto . Clearview ai ceo says 'over 2,400 police agencies' are using its facial recognition software , 2020 . Elizabeth Lopatto. Clearview ai ceo says 'over 2,400 police agencies' are using its facial recognition software, 2020."},{"key":"e_1_3_2_2_40_1","volume-title":"International Conference on Learning Representations","author":"Madry Aleksander","year":"2018","unstructured":"Aleksander Madry , Aleksandar Makelov , Ludwig Schmidt , Dimitris Tsipras , and Adrian Vladu . Towards deep learning models resistant to adversarial attacks . In International Conference on Learning Representations , 2018 . Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, and Adrian Vladu. Towards deep learning models resistant to adversarial attacks. In International Conference on Learning Representations, 2018."},{"key":"e_1_3_2_2_41_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2017.11"},{"key":"e_1_3_2_2_42_1","volume-title":"Financial Times","author":"Murgia Madhumita","year":"2019","unstructured":"Madhumita Murgia . Who's using your face? the ugly truth about facial recognition| . Financial Times , 2019 . Madhumita Murgia. Who's using your face? the ugly truth about facial recognition|. Financial Times, 2019."},{"key":"e_1_3_2_2_43_1","volume-title":"Does interpretability of neural networks imply adversarial robustness? CoRR, abs\/1912.03430","author":"Noack Adam","year":"2019","unstructured":"Adam Noack , Isaac Ahern , Dejing Dou , and Boyang Li . Does interpretability of neural networks imply adversarial robustness? CoRR, abs\/1912.03430 , 2019 . Adam Noack, Isaac Ahern, Dejing Dou, and Boyang Li. Does interpretability of neural networks imply adversarial robustness? CoRR, abs\/1912.03430, 2019."},{"key":"e_1_3_2_2_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/3351095.3372843"},{"key":"e_1_3_2_2_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.36"},{"key":"e_1_3_2_2_46_1","volume-title":"USA","author":"Raghavan Manish","year":"2020","unstructured":"Manish Raghavan , Solon Barocas , Jon Kleinberg , and Karen Levy . Mitigating bias in algorithmic hiring: Evaluating claims and practices. FAT* '20, New York, NY , USA , 2020 . Association for Computing Machinery. Manish Raghavan, Solon Barocas, Jon Kleinberg, and Karen Levy. Mitigating bias in algorithmic hiring: Evaluating claims and practices. FAT* '20, New York, NY, USA, 2020. Association for Computing Machinery."},{"key":"e_1_3_2_2_47_1","volume-title":"How facial recognition became a routine policing tool in america","author":"Schuppe J","year":"2019","unstructured":"J Schuppe . How facial recognition became a routine policing tool in america , 2019 . J Schuppe. How facial recognition became a routine policing tool in america, 2019."},{"key":"e_1_3_2_2_48_1","doi-asserted-by":"publisher","DOI":"10.1093\/idpl\/ipx022"},{"key":"e_1_3_2_2_49_1","first-page":"11","article-title":"Learnability, stability and uniform convergence","author":"Shalev-Shwartz Shai","year":"2010","unstructured":"Shai Shalev-Shwartz , Ohad Shamir , Nathan Srebro , and Karthik Sridharan . Learnability, stability and uniform convergence . Journal of Machine Learning Research , 11 , 2010 . Shai Shalev-Shwartz, Ohad Shamir, Nathan Srebro, and Karthik Sridharan. Learnability, stability and uniform convergence. Journal of Machine Learning Research, 11, 2010.","journal-title":"Journal of Machine Learning Research"},{"key":"e_1_3_2_2_50_1","volume-title":"ISDA","author":"Aditya","year":"2018","unstructured":"Aditya Shinde et al. Comparative study of regression models and deep learning models for insurance cost prediction . In ISDA , 2018 . Aditya Shinde et al. Comparative study of regression models and deep learning models for insurance cost prediction. In ISDA, 2018."},{"key":"e_1_3_2_2_51_1","volume-title":"Deep learning for mortgage risk. CoRR, abs\/1607.02470","author":"Sirignano Justin","year":"2016","unstructured":"Justin Sirignano , Apaar Sadhwani , and Kay Giesecke . Deep learning for mortgage risk. CoRR, abs\/1607.02470 , 2016 . Justin Sirignano, Apaar Sadhwani, and Kay Giesecke. Deep learning for mortgage risk. CoRR, abs\/1607.02470, 2016."},{"key":"e_1_3_2_2_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134077"},{"key":"e_1_3_2_2_53_1","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2019.00021"},{"key":"e_1_3_2_2_54_1","volume-title":"Intriguing properties of neural networks","author":"Szegedy Christian","year":"2013","unstructured":"Christian Szegedy , Wojciech Zaremba , Ilya Sutskever , Joan Bruna , Dumitru Erhan , Ian Goodfellow , and Rob Fergus . Intriguing properties of neural networks , 2013 . Christian Szegedy, Wojciech Zaremba, Ilya Sutskever, Joan Bruna, Dumitru Erhan, Ian Goodfellow, and Rob Fergus. Intriguing properties of neural networks, 2013."},{"key":"e_1_3_2_2_55_1","unstructured":"tensorflow-determinism Python package. Available at: https:\/\/pypi.org\/project\/tensorflow-determinism\/. Retrieved on 6\/5\/2020. tensorflow-determinism Python package. Available at: https:\/\/pypi.org\/project\/tensorflow-determinism\/. Retrieved on 6\/5\/2020."},{"key":"e_1_3_2_2_56_1","volume-title":"International Conference on Learning Representations","author":"Tsipras Dimitris","year":"2019","unstructured":"Dimitris Tsipras , Shibani Santurkar , Logan Engstrom , Alexander Turner , and Aleksander Madry . Robustness may be at odds with accuracy . In International Conference on Learning Representations , 2019 . Dimitris Tsipras, Shibani Santurkar, Logan Engstrom, Alexander Turner, and Aleksander Madry. Robustness may be at odds with accuracy. In International Conference on Learning Representations, 2019."},{"key":"e_1_3_2_2_57_1","volume-title":"The Verge","author":"Vincent James","year":"2020","unstructured":"James Vincent . Nypd used facial recognition to track down black lives matter activist . The Verge , August , 2020 . James Vincent. Nypd used facial recognition to track down black lives matter activist. The Verge, August, 2020."},{"key":"e_1_3_2_2_58_1","volume-title":"Proceedings of the 35th International Conference on Machine Learning (ICML)","author":"Wong Eric","year":"2018","unstructured":"Eric Wong and Zico Kolter . Provable defenses against adversarial examples via the convex outer adversarial polytope . In Proceedings of the 35th International Conference on Machine Learning (ICML) , 2018 . Eric Wong and Zico Kolter. Provable defenses against adversarial examples via the convex outer adversarial polytope. In Proceedings of the 35th International Conference on Machine Learning (ICML), 2018."},{"key":"e_1_3_2_2_59_1","volume-title":"Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms","author":"Xiao Han","year":"2017","unstructured":"Han Xiao , Kashif Rasul , and Roland Vollgraf . Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms , 2017 . Han Xiao, Kashif Rasul, and Roland Vollgraf. Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms, 2017."},{"key":"e_1_3_2_2_60_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2018.00027"},{"key":"e_1_3_2_2_61_1","doi-asserted-by":"publisher","DOI":"10.24963\/ijcai.2020\/61"},{"issue":"1","key":"e_1_3_2_2_62_1","article-title":"and malicious algorithms: A study of potential causes of privacy risk in machine learning","volume":"28","author":"Yeom Samuel","year":"2020","unstructured":"Samuel Yeom , Irene Giacomelli , Alan Menaged , Matt Fredrikson , and Somesh Jha . Overfitting, robustness , and malicious algorithms: A study of potential causes of privacy risk in machine learning . J. Comput. Secur. , 28 ( 1 ), 2020 . Samuel Yeom, Irene Giacomelli, Alan Menaged, Matt Fredrikson, and Somesh Jha. Overfitting, robustness, and malicious algorithms: A study of potential causes of privacy risk in machine learning. J. Comput. Secur., 28(1), 2020.","journal-title":"J. Comput. Secur."},{"key":"e_1_3_2_2_63_1","volume-title":"Understanding deep learning requires rethinking generalization. CoRR, abs\/1611.03530","author":"Zhang Chiyuan","year":"2016","unstructured":"Chiyuan Zhang , Samy Bengio , Moritz Hardt , Benjamin Recht , and Oriol Vinyals . Understanding deep learning requires rethinking generalization. CoRR, abs\/1611.03530 , 2016 . Chiyuan Zhang, Samy Bengio, Moritz Hardt, Benjamin Recht, and Oriol Vinyals. Understanding deep learning requires rethinking generalization. CoRR, abs\/1611.03530, 2016."},{"key":"e_1_3_2_2_64_1","volume-title":"International Conference on Machine Learning(ICML)","author":"Zhang Hongyang","year":"2019","unstructured":"Hongyang Zhang , Yaodong Yu , Jiantao Jiao , Eric Xing , Laurent El Ghaoui , and Michael Jordan . Theoretically principled trade-off between robustness and accuracy . In International Conference on Machine Learning(ICML) , 2019 . Hongyang Zhang, Yaodong Yu, Jiantao Jiao, Eric Xing, Laurent El Ghaoui, and Michael Jordan. Theoretically principled trade-off between robustness and accuracy. In International Conference on Machine Learning(ICML), 2019."}],"event":{"name":"FAccT '21: 2021 ACM Conference on Fairness, Accountability, and Transparency","sponsor":["ACM Association for Computing Machinery"],"location":"Virtual Event Canada","acronym":"FAccT '21"},"container-title":["Proceedings of the 2021 ACM Conference on Fairness, Accountability, and Transparency"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3442188.3445894","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3442188.3445894","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,2,2]],"date-time":"2023-02-02T19:45:30Z","timestamp":1675367130000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3442188.3445894"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,3]]},"references-count":64,"alternative-id":["10.1145\/3442188.3445894","10.1145\/3442188"],"URL":"https:\/\/doi.org\/10.1145\/3442188.3445894","relation":{},"subject":[],"published":{"date-parts":[[2021,3]]},"assertion":[{"value":"2021-03-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}