Tight Differential Privacy Guarantees for the Shuffle Model with k-Randomized Response

被引:0
|
作者
Biswas, Sayan [1 ,2 ,3 ]
Jung, Kangsoo [1 ]
Palamidessi, Catuscia [1 ,2 ]
机构
[1] INRIA, Palaiseau, France
[2] Ecole Polytech, Palaiseau, France
[3] Ecole Polytech Fed Lausanne, Lausanne, Switzerland
来源
FOUNDATIONS AND PRACTICE OF SECURITY, PT I, FPS 2023 | 2024年 / 14551卷
关键词
Differential privacy; Shuffle model; Privacy-utility optimization;
D O I
10.1007/978-3-031-57537-2_27
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Most differentially private algorithms assume a central model in which a reliable third party inserts noise to queries made on datasets, or a local model where the data owners directly perturb their data. However, the central model is vulnerable via a single point of failure, and the local model has the disadvantage that the utility of the data deteriorates significantly. The recently proposed shuffle model is an intermediate framework between the central and local paradigms. In the shuffle model, data owners send their locally privatized data to a server where messages are shuffled randomly, making it impossible to trace the link between a privatized message and the corresponding sender. In this paper, we theoretically derive the tightest known differential privacy guarantee for the shuffle models with k-Randomized Response (k-RR) local randomizers, under histogram queries, and we denoise the histogram produced by the shuffle model using the matrix inversion method to evaluate the utility of the privacy mechanism. We perform experiments on both synthetic and real data to compare the privacy-utility trade-off of the shuffle model with that of the central one privatized by adding the state-of-the-art Gaussian noise to each bin. We see that the difference in statistical utilities between the central and the shuffle models shows that they are almost comparable under the same level of differential privacy protection.
引用
收藏
页码:440 / 458
页数:19
相关论文
共 9 条
  • [1] On the Renyi Differential Privacy of the Shuffle Model
    Girgis, Antonious M.
    Data, Deepesh
    Diggavi, Suhas
    Suresh, Ananda Theertha
    Kairouz, Peter
    CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 2321 - 2341
  • [2] AdaSTopk: Adaptive federated shuffle model based on differential privacy
    Yang, Qiantao
    Du, Xuehui
    Liu, Aodi
    Wang, Na
    Wang, Wenjuan
    Wu, Xiangyu
    INFORMATION SCIENCES, 2023, 642
  • [3] DEMO: PrivacyBuDe: Privacy Buckets Demo Tight Differential Privacy Guarantees made Simple
    Sommer, David
    Meiser, Sebastian
    Mohammadi, Esfandiar
    PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, : 2192 - 2194
  • [4] Randomized Response and Differential Privacy
    Ioannidis, Andreas
    Litke, Antonios
    Papadakis, Nikolaos
    17TH ACM INTERNATIONAL CONFERENCE ON PERVASIVE TECHNOLOGIES RELATED TO ASSISTIVE ENVIRONMENTS, PETRA 2024, 2024, : 600 - 605
  • [5] Shuffle Model of Differential Privacy: Numerical Composition for Federated Learning
    Wang, Shaowei
    Zeng, Sufen
    Li, Jin
    Huang, Shaozheng
    Chen, Yuyang
    APPLIED SCIENCES-BASEL, 2025, 15 (03):
  • [6] Aggregation and Transformation of Vector-Valued Messages in the Shuffle Model of Differential Privacy
    Scott, Mary
    Cormode, Graham
    Maple, Carsten
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 612 - 627
  • [7] Stratified Differential Privacy in Randomized Response: A Simulation Study
    Kim, Grace
    MEASUREMENT-INTERDISCIPLINARY RESEARCH AND PERSPECTIVES, 2025,
  • [8] A Randomized Response Framework to Achieve Differential Privacy in Medical Data
    Ioannidis, Andreas
    Litke, Antonios
    Papadakis, Nikolaos K.
    ELECTRONICS, 2025, 14 (02):
  • [9] Joint Top-K Sparsification and Shuffle Model for Communication-Privacy-Accuracy Tradeoffs in Federated-Learning-Based IoV
    Sun, Kangkang
    Xu, Hansong
    Hua, Kun
    Lin, Xi
    Li, Gaolei
    Jiang, Tigang
    Li, Jianhua
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (11): : 19721 - 19735