Explainable artificial intelligence (XAI) provides more information to help users to understand model decisions, yet this extra knowledge exposes additional risks for privacy attacks . We study this risk for image-based modelinversion attacks and identified several attack architectures with increasingperformance to reconstruct private image data from model explanations . These threats highlight the urgent and significant privacy risks of explanations and calls attention for new privacy preservation techniques that balance the dual requirement forAI explainability and privacy .

Author(s) : Xuejun Zhao, Wencan Zhang, Xiaokui Xiao, Brian Y. Lim

