Skip to main content
This is a research prototype. The data and analyses are preliminary and not yet validated — we'd welcome your .

Attribute inference attack

AI Risk Atlas

IBM (2025)

Sub-category
Risk Domain

Vulnerabilities that can be exploited in AI systems, software development toolchains, and hardware, resulting in unauthorized access, data and privacy breaches, or system manipulation causing unsafe outputs or behavior.

"An attribute inference attack repeatedly queries a model to detect whether certain sensitive features can be inferred about individuals who participated in training a model. These attacks occur when an adversary has some prior knowledge about the training data and uses that knowledge to infer the sensitive data."

Supporting Evidence (1)

1.
"With a successful attack, the attacker can gain valuable information such as sensitive personal information or intellectual property."

Other risks from IBM (2025) (63)