ATLASAML.T0024.000
ATLAS index
AML.T0024.000

Infer Training Data Membership

Adversaries may infer the membership of a data sample or global characteristics of the data in its training set, which raises privacy concerns. Some strategies make use of a shadow model that could be obtained via Train Proxy via Replication, others use statistics of model prediction scores. This can cause the victim m

Framework
MITRE ATLAS
Maturity
Feasible
Platforms
Predictive AI, Generative AI, Agentic AI
Release
2026.05

Overview

Adversaries may infer the membership of a data sample or global characteristics of the data in its training set, which raises privacy concerns. Some strategies make use of a shadow model that could be obtained via Train Proxy via Replication, others use statistics of model prediction scores.

This can cause the victim model to leak private information, such as PII of those in the training set or other forms of protected IP.

Sources

  1. MITRE ATLAS AML.T0024.000: Infer Training Data Membership — MITRE