# Report handler examples

Install leakpro as ``` pip install -e /path/to/leakpro ```

### Synthetic examples

In [1]:
import os
import sys

import pandas as pd

sys.path.append("../..")

from leakpro.synthetic_data_attacks.anomalies import return_anomalies
from leakpro.synthetic_data_attacks.inference_utils import inference_risk_evaluation
from leakpro.synthetic_data_attacks.linkability_utils import linkability_risk_evaluation
from leakpro.synthetic_data_attacks.singling_out_utils import singling_out_risk_evaluation

#Get ori and syn
n_samples = 100
DATA_PATH = "../synthetic_data/datasets/"
ori = pd.read_csv(os.path.join(DATA_PATH, "adults_ori.csv"), nrows=n_samples)
syn = pd.read_csv(os.path.join(DATA_PATH, "adults_syn.csv"), nrows=n_samples)

  from .autonotebook import tqdm as notebook_tqdm


In [2]:
# syn_anom = return_anomalies(df=syn, n_estimators=1000, n_jobs=-1, verbose=True)
# print("Syn anom shape",syn_anom.shape)

In [3]:
# # Create a singling-out result
# sin_out_res = singling_out_risk_evaluation(
#     dataset = "adults",
#     ori = ori,
#     syn = syn_anom,
#     n_attacks = syn_anom.shape[0]
# )

In [4]:
# # Create linkability result
# link_res = linkability_risk_evaluation(
#     dataset = "adults",
#     ori = ori,
#     syn = syn_anom,
#     n_samples = syn_anom.shape[0],
#     n_attacks = 100
# )

In [5]:
# # # Create base-case inference result
# inf_res = inference_risk_evaluation(
#     dataset = "adults",
#     ori = ori,
#     syn = syn_anom,
#     worst_case_flag = False,
#     n_attacks = syn_anom.shape[0]
# )

# # # Create worst-case inference result
# inf_res_worst = inference_risk_evaluation(
#     dataset = "adults",
#     ori = ori,
#     syn = syn_anom,
#     worst_case_flag = True,
#     n_attacks = syn_anom.shape[0]
# )

### Gradient inversion example

In [6]:
sys.path.append("../gia/inverting_cifar10_1_image/")
from cifar import get_cifar10_loader
from model import ResNet
from torchvision.models.resnet import BasicBlock

from leakpro.attacks.gia_attacks.invertinggradients import InvertingConfig
from leakpro.metrics.attack_result import GIAResults
from leakpro.fl_utils.gia_train import train
from leakpro.run import run_inverting

model = ResNet(BasicBlock, [5, 5, 5], num_classes=10, base_width=16 * 10)
client_dataloader, data_mean, data_std = get_cifar10_loader(num_images=1, batch_size=1, num_workers=2)

# Meta train function designed to work with GIA
train_fn = train

# Baseline config
configs = InvertingConfig()
configs.at_iterations = 1000 # Decreased from 8000 to avoid GPU memory crash

name = "my_gia_results"
GIA_result_generator = run_inverting(model, client_dataloader, train_fn, data_mean, data_std, configs, experiment_name=name, save=False)

Files already downloaded and verified


2025-03-15 01:28:25,068 INFO     Inverting gradient initialized.


In [7]:
GIA_tuple_list = list(GIA_result_generator)


2025-03-15 01:28:27,087 INFO     New best loss: 0.024570995941758156 on round: 0
2025-03-15 01:28:27,088 INFO     Iteration 0, loss 0.024570995941758156
2025-03-15 01:28:27,702 INFO     New best loss: 0.022067168727517128 on round: 1
2025-03-15 01:28:27,800 INFO     New best loss: 0.020865725353360176 on round: 2
2025-03-15 01:28:27,888 INFO     New best loss: 0.01939081959426403 on round: 3
2025-03-15 01:28:27,976 INFO     New best loss: 0.018961915746331215 on round: 4
2025-03-15 01:28:28,071 INFO     New best loss: 0.01810409687459469 on round: 5
2025-03-15 01:28:28,161 INFO     New best loss: 0.01730719394981861 on round: 6
2025-03-15 01:28:28,249 INFO     New best loss: 0.016484901309013367 on round: 7
2025-03-15 01:28:28,336 INFO     New best loss: 0.01630985550582409 on round: 8
2025-03-15 01:28:28,423 INFO     New best loss: 0.01609499379992485 on round: 9
2025-03-15 01:28:28,596 INFO     New best loss: 0.015846582129597664 on round: 11
2025-03-15 01:28:28,683 INFO     New best

tensor([[[[ 1.9636,  1.9318,  1.9477,  ..., -0.8304, -0.2747, -0.8462],
          [ 2.0112,  1.9953,  1.9953,  ..., -0.5129, -0.0525, -0.9891],
          [ 1.9795,  1.9636,  1.9636,  ..., -0.6240, -0.6557, -1.0050],
          ...,
          [ 0.6301,  0.7889,  0.9476,  ..., -1.5923, -1.6400, -1.6717],
          [ 0.6142,  0.5825,  0.8047,  ..., -1.4336, -1.4971, -1.5923],
          [ 0.5507,  0.3920,  0.7730,  ..., -1.1161, -1.2431, -1.3860]],

         [[ 2.0302,  1.9979,  2.0140,  ..., -0.3696,  0.2585, -0.3696],
          [ 2.0785,  2.0624,  2.0624,  ...,  0.0169,  0.5001, -0.5468],
          [ 2.0463,  2.0302,  2.0302,  ..., -0.1442, -0.1603, -0.6112],
          ...,
          [ 0.7417,  0.8866,  1.0316,  ..., -1.3682, -1.4648, -1.5293],
          [ 0.7256,  0.6772,  0.9188,  ..., -1.1266, -1.2394, -1.4004],
          [ 0.7256,  0.5323,  0.8866,  ..., -0.7723, -0.8528, -1.0944]],

         [[ 2.0259,  1.9959,  2.0109,  ..., -0.6726, -0.2528, -0.6276],
          [ 2.0708,  2.0558,  

In [8]:
GIA_result_generator = run_inverting(model, client_dataloader, train_fn, data_mean, data_std, configs, experiment_name=name, save=False)
i_list, score_list, GIA_result_list = zip(*GIA_result_generator)


2025-03-15 01:29:57,614 INFO     Inverting gradient initialized.
2025-03-15 01:29:58,118 INFO     New best loss: 0.02474435418844223 on round: 0
2025-03-15 01:29:58,119 INFO     Iteration 0, loss 0.02474435418844223
2025-03-15 01:29:58,759 INFO     New best loss: 0.022004755213856697 on round: 1
2025-03-15 01:29:58,858 INFO     New best loss: 0.020693885162472725 on round: 2
2025-03-15 01:29:58,949 INFO     New best loss: 0.01852142997086048 on round: 3
2025-03-15 01:29:59,046 INFO     New best loss: 0.018029706552624702 on round: 4
2025-03-15 01:29:59,149 INFO     New best loss: 0.017125161364674568 on round: 5
2025-03-15 01:29:59,234 INFO     New best loss: 0.015970155596733093 on round: 6
2025-03-15 01:29:59,319 INFO     New best loss: 0.015638530254364014 on round: 7
2025-03-15 01:29:59,404 INFO     New best loss: 0.01507510244846344 on round: 8
2025-03-15 01:29:59,487 INFO     New best loss: 0.015072434209287167 on round: 9
2025-03-15 01:29:59,659 INFO     New best loss: 0.0146583

tensor([[[[ 1.9636,  1.9318,  1.9477,  ..., -0.8304, -0.2747, -0.8462],
          [ 2.0112,  1.9953,  1.9953,  ..., -0.5129, -0.0525, -0.9891],
          [ 1.9795,  1.9636,  1.9636,  ..., -0.6240, -0.6557, -1.0050],
          ...,
          [ 0.6301,  0.7889,  0.9476,  ..., -1.5923, -1.6400, -1.6717],
          [ 0.6142,  0.5825,  0.8047,  ..., -1.4336, -1.4971, -1.5923],
          [ 0.5507,  0.3920,  0.7730,  ..., -1.1161, -1.2431, -1.3860]],

         [[ 2.0302,  1.9979,  2.0140,  ..., -0.3696,  0.2585, -0.3696],
          [ 2.0785,  2.0624,  2.0624,  ...,  0.0169,  0.5001, -0.5468],
          [ 2.0463,  2.0302,  2.0302,  ..., -0.1442, -0.1603, -0.6112],
          ...,
          [ 0.7417,  0.8866,  1.0316,  ..., -1.3682, -1.4648, -1.5293],
          [ 0.7256,  0.6772,  0.9188,  ..., -1.1266, -1.2394, -1.4004],
          [ 0.7256,  0.5323,  0.8866,  ..., -0.7723, -0.8528, -1.0944]],

         [[ 2.0259,  1.9959,  2.0109,  ..., -0.6726, -0.2528, -0.6276],
          [ 2.0708,  2.0558,  

In [None]:
# Will collect all None-valued intermediate GIAResults and merge them into one GIAResults 
GIA_result_generator = run_inverting(model, client_dataloader, train_fn, data_mean, data_std, configs, experiment_name=name, save=False)
GIAResults = GIAResults.collect_generator(GIA_result_generator)

2025-03-15 01:31:25,333 INFO     Inverting gradient initialized.
2025-03-15 01:31:25,837 INFO     New best loss: 0.02357185259461403 on round: 0
2025-03-15 01:31:25,838 INFO     Iteration 0, loss 0.02357185259461403
2025-03-15 01:31:26,486 INFO     New best loss: 0.02044619806110859 on round: 1
2025-03-15 01:31:26,594 INFO     New best loss: 0.018948474898934364 on round: 2
2025-03-15 01:31:26,686 INFO     New best loss: 0.017994344234466553 on round: 3
2025-03-15 01:31:26,785 INFO     New best loss: 0.017447372898459435 on round: 4
2025-03-15 01:31:26,867 INFO     New best loss: 0.01720760390162468 on round: 5
2025-03-15 01:31:26,944 INFO     New best loss: 0.016976356506347656 on round: 6
2025-03-15 01:31:27,022 INFO     New best loss: 0.016591984778642654 on round: 7
2025-03-15 01:31:27,115 INFO     New best loss: 0.015606915578246117 on round: 8
2025-03-15 01:31:27,200 INFO     New best loss: 0.015183021314442158 on round: 9
2025-03-15 01:31:27,286 INFO     New best loss: 0.0148516

tensor([[[[ 1.9636,  1.9318,  1.9477,  ..., -0.8304, -0.2747, -0.8462],
          [ 2.0112,  1.9953,  1.9953,  ..., -0.5129, -0.0525, -0.9891],
          [ 1.9795,  1.9636,  1.9636,  ..., -0.6240, -0.6557, -1.0050],
          ...,
          [ 0.6301,  0.7889,  0.9476,  ..., -1.5923, -1.6400, -1.6717],
          [ 0.6142,  0.5825,  0.8047,  ..., -1.4336, -1.4971, -1.5923],
          [ 0.5507,  0.3920,  0.7730,  ..., -1.1161, -1.2431, -1.3860]],

         [[ 2.0302,  1.9979,  2.0140,  ..., -0.3696,  0.2585, -0.3696],
          [ 2.0785,  2.0624,  2.0624,  ...,  0.0169,  0.5001, -0.5468],
          [ 2.0463,  2.0302,  2.0302,  ..., -0.1442, -0.1603, -0.6112],
          ...,
          [ 0.7417,  0.8866,  1.0316,  ..., -1.3682, -1.4648, -1.5293],
          [ 0.7256,  0.6772,  0.9188,  ..., -1.1266, -1.2394, -1.4004],
          [ 0.7256,  0.5323,  0.8866,  ..., -0.7723, -0.8528, -1.0944]],

         [[ 2.0259,  1.9959,  2.0109,  ..., -0.6726, -0.2528, -0.6276],
          [ 2.0708,  2.0558,  

AssertionError: 

### Membership Inference Attack, CIFAR example

In [None]:
# import os
# import sys
# import yaml

# project_root = os.path.abspath(os.path.join(os.getcwd(), "../../.."))
# sys.path.append(project_root)

In [None]:
# from mia_utils.utils.cifar_data_preparation import get_cifar_dataloader
# from mia_utils.utils.cifar_model_preparation import ResNet18, create_trained_model_and_metadata


# # Load the config.yaml file
# with open('mia_utils/train_config.yaml', 'r') as file:
#     train_config = yaml.safe_load(file)

# # Generate the dataset and dataloaders
# path = os.path.join(os.getcwd(), train_config["data"]["data_dir"])

# train_loader, test_loader = get_cifar_dataloader(path, train_config)

In [None]:
# # Train the model
# if not os.path.exists("target"):
#     os.makedirs("target")
# if train_config["data"]["dataset"] == "cifar10":
#     num_classes = 10
# elif train_config["data"]["dataset"] == "cifar100":
#     num_classes = 100
# else:
#     raise ValueError("Invalid dataset name")

# model = ResNet18(num_classes = num_classes)
# train_acc, train_loss, test_acc, test_loss = create_trained_model_and_metadata(model, 
#                                                                                train_loader, 
#                                                                                test_loader, 
#                                                                                train_config)

##### Run the MIA attack

In [None]:
# from mia_utils.cifar_handler import CifarInputHandler

# from leakpro import LeakPro

# # Read the config file
# config_path = "mia_utils/audit.yaml"

# # Prepare leakpro object
# leakpro = LeakPro(CifarInputHandler, config_path)

# # Run the audit 
# mia_results = leakpro.run_audit(return_results=True)

In [None]:
# Import and initialize ReportHandler
from leakpro.reporting.report_handler import ReportHandler

# Set report_dir to "./leakpro_output/results" to the results to a local results folder
#    or don't use the report_dir argument to let the ReportHandler find an already
#    existing results folder
report_handler = ReportHandler(report_dir="./leakpro_output/results")

# Save Synthetic results using the ReportHandler
report_handler.save_results(attack_name="singling_out", result_data=sin_out_res)
report_handler.save_results(attack_name="linkability_risk", result_data=link_res)
report_handler.save_results(attack_name="inference_risk_base", result_data=inf_res)
report_handler.save_results(attack_name="inference_risk_worst", result_data=inf_res_worst)

# Save GIA results using report handler
report_handler.save_results(attack_name="gia", result_data=GIA_result)

# Save MIA resuls using report handler
for res in mia_results:
    report_handler.save_results(attack_name=res.attack_name, result_data=res, config=res.configs)

2024-12-18 01:00:10,883 INFO     Initializing report handler...
2024-12-18 01:00:10,885 INFO     report_dir set to: ./leakpro_output/results


In [2]:
# Simply create a report by collecting and compiling latex text
report_handler.create_report()

2024-12-18 01:00:22,740 INFO     No results of type GIAResults found.
2024-12-18 01:00:22,743 INFO     No results of type SinglingOutResults found.
2024-12-18 01:00:22,744 INFO     No results of type InferenceResults found.
2024-12-18 01:00:22,745 INFO     No results of type LinkabilityResults found.
2024-12-18 01:00:31,133 INFO     PDF compiled


<Figure size 640x480 with 0 Axes>

In [None]:
#### Have more granular control

# Use the ReportHandler and load all the saved results
report_handler.load_results()

# Create results and collect corresponding latex texts. Use different methods to create results for a specific type
# report_handler.create_results_mia()
# report_handler.create_results_gia()
# report_handler.create_results_syn()
report_handler.create_results_all()

# Create the report by compiling the latex text
report_handler.create_report()

2024-12-18 01:00:42,989 INFO     No results of type GIAResults found.
2024-12-18 01:00:42,992 INFO     No results of type SinglingOutResults found.
2024-12-18 01:00:42,993 INFO     No results of type InferenceResults found.
2024-12-18 01:00:42,994 INFO     No results of type LinkabilityResults found.
2024-12-18 01:00:51,396 INFO     PDF compiled


<Figure size 640x480 with 0 Axes>