Skip to content

Author

Karsten Mueller

We have 2 of 6 papers

We haven’t gathered this author’s papers yet. Follow them and we’ll fetch their work.

Not the right person? Other researchers publish under this name.

Preprint Aug 2026

A Privacy Study of Sparse Collaborative Inference

Collaborative inference (CI) splits a model between an edge device and a server, whereby the client computes an intermediate activation, transmits it, and the server completes the computation. This raises two concerns, the communication cost of the transmission and the risk that it reveals private information about the input. Recent work reduces this cost by sparsifying activations and entropy-coding the result. Sparsity has also been argued to improve privacy, on the intuition that transmitting fewer values reveals less about the input. We test this claim by decomposing the sparse activation into the retained values and the set of positions they occupy, and by reconstructing inputs from each component in isolation. We find that sparsification reduces the leakage far less than it reduces the transmission cost, and that the remaining risk shifts to the positions, which prior analyses treat as side information for decoding. Across natural-image and face datasets, the positions alone constitute a serious privacy risk, enabling high-fidelity reconstructions and re-identification of individuals. The leakage from the positions persists even when both the transmission cost and the task utility are low. We conclude that the positions of sparse activations should be treated as sensitive transmitted data and audited carefully in the context of collaborative inference. Code is available at https://github.com/an7123/Privacy-Study-Sparse-CI.

Maximilian Andreas Hoefler, Karsten Mueller, Wojciech Samek · 0 citations
Jul 2026

Collaborative Synthetic Data Generation for Knowledge Transfer in Federated Learning

FedKT-CSD (Federated Knowledge Transfer via Collaborative Synthetic Data), a framework inspired by neural image compression that closes the gap in jointly achieving low communication, robustness to heterogeneity, and rigorous privacy by leveraging publicly pretrained autoencoders as a shared latent space.

Maximilian Andreas Hoefler, Karsten Mueller, Wojciech Samek · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.