English

Decoupling Generalizability and Membership Privacy Risks in Neural Networks

Machine Learning 2026-02-10 v2 Artificial Intelligence Cryptography and Security

Abstract

A deep learning model usually has to sacrifice some utilities when it acquires some other abilities or characteristics. Privacy preservation has such trade-off relationships with utilities. The loss disparity between various defense approaches implies the potential to decouple generalizability and privacy risks to maximize privacy gain. In this paper, we identify that the model's generalization and privacy risks exist in different regions in deep neural network architectures. Based on the observations that we investigate, we propose Privacy-Preserving Training Principle (PPTP) to protect model components from privacy risks while minimizing the loss in generalizability. Through extensive evaluations, our approach shows significantly better maintenance in model generalizability while enhancing privacy preservation.

Keywords

Cite

@article{arxiv.2602.02296,
  title  = {Decoupling Generalizability and Membership Privacy Risks in Neural Networks},
  author = {Xingli Fang and Jung-Eun Kim},
  journal= {arXiv preprint arXiv:2602.02296},
  year   = {2026}
}
R2 v1 2026-07-01T09:32:15.149Z