PrivColl: Practical Privacy-Preserving Collaborative Machine Learning

被引:17
作者
Zhang, Yanjun [1 ]
Bai, Guangdong [1 ]
Li, Xue [1 ]
Curtis, Caitlin [1 ]
Chen, Chen [1 ]
Ko, Ryan K. L. [1 ]
机构
[1] Univ Queensland, St Lucia, Qld, Australia
来源
COMPUTER SECURITY - ESORICS 2020, PT I | 2020年 / 12308卷
关键词
Privacy; Machine learning; Collaborative learning;
D O I
10.1007/978-3-030-58951-6_20
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Collaborative learning enables two or more participants, each with their own training dataset, to collaboratively learn a joint model. It is desirable that the collaboration should not cause the disclosure of either the raw datasets of each individual owner or the local model parameters trained on them. This privacy-preservation requirement has been approached through differential privacy mechanisms, homomorphic encryption (HE) and secure multiparty computation (MPC), but existing attempts may either introduce the loss of model accuracy or imply significant computational and/or communicational overhead. In this work, we address this problem with the lightweight additive secret sharing technique. We propose PrivColl, a framework for protecting local data and local models while ensuring the correctness of training processes. PrivColl employs secret sharing technique for securely evaluating addition operations in a multiparty computation environment, and achieves practicability by employing only the homomorphic addition operations. We formally prove that it guarantees privacy preservation even though the majority (n - 2 out of n) of participants are corrupted. With experiments on real-world datasets, we further demonstrate that PrivColl retains high efficiency. It achieves a speedup of more than 45X over the state-of-the-art MPC-/HE-based schemes for training linear/logistic regression, and 216X faster for training neural network.
引用
收藏
页码:399 / 418
页数:20
相关论文
共 50 条
[31]   Deriving an Optimal Noise Adding Mechanism for Privacy-Preserving Machine Learning [J].
Kumar, Mohit ;
Rossbory, Michael ;
Moser, Bernhard A. ;
Freudenthaler, Bernhard .
DATABASE AND EXPERT SYSTEMS APPLICATIONS (DEXA 2019), 2019, 1062 :108-118
[32]   Privacy-Preserving Machine Learning Based Data Analytics on Edge Devices [J].
Zhao, Jianxin ;
Mortier, Richard ;
Crowcroft, Jon ;
Wang, Liang .
PROCEEDINGS OF THE 2018 AAAI/ACM CONFERENCE ON AI, ETHICS, AND SOCIETY (AIES'18), 2018, :341-346
[33]   Privacy-preserving Collaborative Learning with Scalable Image Transformation and Autoencoder [J].
Ma, Yuting ;
Yao, Yuanzhi ;
Liu, Xiaowei ;
Yu, Nenghai .
2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, :1031-1036
[34]   FedLD: Federated Learning for Privacy-Preserving Collaborative Landslide Detection [J].
Tang, Xiaochuan ;
Yan, Xiaochuang ;
Yuan, Xiaojun ;
Liu, Xin ;
Lu, Zhong ;
Wang, Yu ;
Zhong, Hao ;
Li, Dongfen ;
Catani, Filippo .
IEEE GEOSCIENCE AND REMOTE SENSING LETTERS, 2024, 21
[35]   On Lightweight Privacy-preserving Collaborative Learning for Internet of Things by Independent Random Projections [J].
Jiang, Linshan ;
Tan, Rui ;
Lou, Xin ;
Lin, Guosheng .
ACM TRANSACTIONS ON INTERNET OF THINGS, 2021, 2 (02)
[36]   Privacy-preserving collaborative social networks [J].
Zhan, Justin ;
Blosser, Gary ;
Yang, Chris ;
Singh, Lisa .
INTELLIGENCE AND SECURITY INFORMATICS, PROCEEDINGS, 2008, 5075 :114-+
[37]   Privacy-preserving distributed collaborative filtering [J].
Boutet, Antoine ;
Frey, Davide ;
Guerraoui, Rachid ;
Jegou, Arnaud ;
Kermarrec, Anne-Marie .
COMPUTING, 2016, 98 (08) :827-846
[38]   Privacy-preserving collaborative data mining [J].
Zhan, J ;
Chang, LW ;
Matwin, S .
FOUNDATIONS AND NOVEL APPROACHES IN DATA MINING, 2006, 9 :213-+
[39]   Privacy-Preserving Deep Learning and Inference [J].
Riazi, M. Sadegh ;
Koushanfar, Farinaz .
2018 IEEE/ACM INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN (ICCAD) DIGEST OF TECHNICAL PAPERS, 2018,
[40]   Privacy-preserving distributed collaborative filtering [J].
Antoine Boutet ;
Davide Frey ;
Rachid Guerraoui ;
Arnaud Jégou ;
Anne-Marie Kermarrec .
Computing, 2016, 98 :827-846