Distributed Differential Privacy via Shuffling Versus Aggregation: A Curious Study

被引:2
作者
Wei, Yu [1 ,2 ]
Jia, Jingyu [1 ,2 ]
Wu, Yuduo [1 ,2 ]
Hu, Changhui [3 ,4 ]
Dong, Changyu [5 ]
Liu, Zheli [1 ,2 ]
Chen, Xiaofeng [6 ]
Peng, Yun [5 ]
Wang, Shaowei [5 ]
机构
[1] Nankai Univ, Coll Cyber Sci, Tianjin 300350, Peoples R China
[2] Nankai Univ, Coll Comp Sci, Minist Educ, Key Lab Data & Intelligent Syst Secur, Tianjin 300350, Peoples R China
[3] Hainan Univ, Sch Cyberspace Secur, Haikou 570228, Peoples R China
[4] Hainan Univ, Sch Cryptol, Haikou 570228, Peoples R China
[5] Guangzhou Univ, Inst Artificial Intelligence, Guangzhou 511370, Peoples R China
[6] Xidian Univ, Sch Cyber Engn, Xian 710071, Peoples R China
基金
中国国家自然科学基金; 英国工程与自然科学研究理事会;
关键词
Differential privacy; shuffle model; aggregation model; NOISE;
D O I
10.1109/TIFS.2024.3351474
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
How to achieve distributed differential privacy (DP) without a trusted central party is of great interest in both theory and practice. Recently, the shuffle model has attracted much attention. Unlike the local DP model in which the users send randomized data directly to the data collector/analyzer, in the shuffle model an intermediate untrusted shuffler is introduced to randomly permute the data, which have already been randomized by the users, before they reach the analyzer. The most appealing aspect is that while shuffling does not explicitly add more noise to the data, it can make privacy better. The privacy amplification effect in consequence means the users need to add less noise to the data than in the local DP model, but can achieve the same level of differential privacy. Thus, protocols in the shuffle model can provide better accuracy than those in the local DP model. What looks interesting to us is that the architecture of the shuffle model is similar to private aggregation, which has been studied for more than a decade. In private aggregation, locally randomized user data are aggregated by an intermediate untrusted aggregator. Thus, our question is whether aggregation also exhibits some sort of privacy amplification effect? And if so, how good is this "aggregation model" in comparison with the shuffle model. We conducted the first comparative study between the two, covering privacy amplification, functionalities, protocol accuracy, and practicality. The results as yet suggest that the new shuffle model does not have obvious advantages over the old aggregation model. On the contrary, protocols in the aggregation model outperform those in the shuffle model, sometimes significantly, in many aspects.
引用
收藏
页码:2501 / 2516
页数:16
相关论文
共 50 条
  • [31] An Efficient Privacy Preserving Scheme for Distributed Data Aggregation in Smart Grid
    Yuan, Jie
    Wang, Yan
    Ji, Zhicheng
    INTERNATIONAL JOURNAL OF CONTROL AUTOMATION AND SYSTEMS, 2022, 20 (06) : 2008 - 2020
  • [32] Federated Recommendation System via Differential Privacy
    Li, Tan
    Song, Linqi
    Fragouli, Christina
    2020 IEEE INTERNATIONAL SYMPOSIUM ON INFORMATION THEORY (ISIT), 2020, : 2592 - 2597
  • [33] Optimal Binary Differential Privacy via Graphs
    Torkamani S.
    Ebrahimi J.B.
    Sadeghi P.
    D'Oliveira R.G.L.
    Medard M.
    IEEE Journal on Selected Areas in Information Theory, 2024, 5 : 162 - 174
  • [34] Proving Differential Privacy via Probabilistic Couplings
    Barthe, Gilles
    Gaboardi, Marco
    Gregoire, Benjamin
    Hsu, Justin
    Strub, Pierre-Yves
    PROCEEDINGS OF THE 31ST ANNUAL ACM-IEEE SYMPOSIUM ON LOGIC IN COMPUTER SCIENCE (LICS 2016), 2016, : 749 - 758
  • [35] Privacy-preserving harmonization via distributed ComBat
    Chen, Andrew A.
    Luo, Chongliang
    Chen, Yong
    Shinohara, Russell T.
    Shou, Haochang
    NEUROIMAGE, 2022, 248
  • [36] Collusion Resistant Federated Learning with Oblivious Distributed Differential Privacy
    Byrd, David
    Mugunthan, Vaikkunth
    Polychroniadou, Antigoni
    Balch, Tucker
    3RD ACM INTERNATIONAL CONFERENCE ON AI IN FINANCE, ICAIF 2022, 2022, : 114 - 122
  • [37] Differential privacy for diffusion LMS algorithm over a distributed network
    Zandi, Sajad
    Korki, Mehdi
    DIGITAL SIGNAL PROCESSING, 2024, 153
  • [38] Differential Privacy of Online Distributed Optimization under Adversarial Nodes
    Hou, Ming
    Li, Dequan
    Wu, Xiongjun
    Shen, Xiuyu
    PROCEEDINGS OF THE 38TH CHINESE CONTROL CONFERENCE (CCC), 2019, : 2172 - 2177
  • [39] Event-Triggered Based Differential Privacy Distributed Optimization
    Wang, Pinlin
    Wang, Zhenqian
    Lu, Jinhu
    INTERNATIONAL JOURNAL OF ROBUST AND NONLINEAR CONTROL, 2024,
  • [40] Stochastic ADMM Based Distributed Machine Learning with Differential Privacy
    Ding, Jiahao
    Errapotu, Sai Mounika
    Zhang, Haijun
    Gong, Yanmin
    Pan, Miao
    Han, Zhu
    SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM, PT I, 2019, 304 : 257 - 277