BookmarkSubscribeRSS Feed

SMOTE and Mirrors: Exposing Privacy Leakage from Synthetic Minority Oversampling

Started ‎03-03-2026 by
Modified ‎03-03-2026 by
Views 241

In this work, presented at the ICLR 2026 Conference, the authors share the first systematic study showing that the Synthetic Minority Over-sampling Technique (SMOTE), despite its widespread use, is inherently non-private and can leak sensitive information. They demonstrate that standard evaluation practices fail to detect this leakage. Also introduced are two new attacks, DistinSMOTE and ReconSMOTE, that can perfectly distinguish or even reconstruct real minority records. Theoretical guarantees are provided for these attacks. The findings highlight the need to reconsider the use of SMOTE in privacy-sensitive applications. Read more.

 

SAS Authors: Georgi Ganev, Reza Nazari, Rees Davison, Amir Dizche, Xinmin Wu, Ralph Abbey, and Jorge Silva

Outside SAS Author: Emiliano De Cristofaro (UC Riverside)

Contributors
Version history
Last update:
‎03-03-2026 01:44 PM
Updated by:
Article Labels
From The DO Loop
Want more? Visit our blog for more articles like these.
Article Tags