RDP-GAN: A Renyi-Differential Privacy Based Generative Adversarial Network

被引:6
|
作者
Ma, Chuan [1 ,2 ]
Li, Jun [3 ]
Ding, Ming [4 ]
Liu, Bo [5 ]
Wei, Kang [3 ]
Weng, Jian [6 ]
Poor, H. Vincent [7 ]
机构
[1] Zhejiang Lab, Hangzhou 311121, Zhejiang, Peoples R China
[2] Southeast Univ, Key Lab Comp Network & Informat Integrat, Minist Educ, Nanjing 211189, Jiangsu, Peoples R China
[3] Nanjing Univ Sci & Technol, Sch Elect & Opt Engn, Nanjing 210094, Jiangsu, Peoples R China
[4] CSIRO, Data61, Sydney, NSW 2015, Australia
[5] Univ Technol Sydney, Sydney, NSW 2007, Australia
[6] Jinan Univ, Guangzhou 510632, Guangdong, Peoples R China
[7] Princeton Univ, Dept Elect & Comp Engn, Princeton, NJ 08544 USA
基金
美国国家科学基金会;
关键词
Privacy; Training; Generative adversarial networks; Generators; Tuning; Estimation; Differential privacy; Adaptive noise tuning algorithm; generative adversarial network; renyi-differential privacy;
D O I
10.1109/TDSC.2022.3233580
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Generative adversarial networks (GANs) have attracted increasing attention recently owing to their impressive abilities to generate realistic samples with high privacy protection. Without directly interacting with training examples, the generative model can be used to estimate the underlying distribution of an original dataset while the discriminator can examine model quality of the generated samples by comparing the label values with training examples. In considering privacy issues in GANS, existing works focus on perturbing the parameters and analyzing the corresponding privacy protection capability, and the parameters are not directly exchanged between the generator and discriminator in GANs. Thus, in this work, we propose a Renyi-differentially private-GAN (RDP-GAN), which achieves differential privacy (DP) in a GAN by carefully adding random Gaussian noise to the value of the exchanged loss function during training. Moreover, we derive analytical results characterizing the total privacy loss under the subsampling method and cumulative iterations, which show its effectiveness for the privacy budget allocation. In addition, in order to mitigate the negative impact of injecting noises, we enhance the proposed algorithm by adding an adaptive noise tuning step, which will change the amount of added noise according to the testing accuracy. Through extensive experimental results, we verify that the proposed algorithm can achieve a better privacy level while producing high-quality samples compared with a benchmark DP-GAN scheme based on noise perturbation on training gradients.
引用
收藏
页码:4838 / 4852
页数:15
相关论文
共 50 条
  • [21] LDP-GAN : Generative adversarial networks with local differential privacy for patient medical records synthesis
    Gwon, Hansle
    Ahn, Imjin
    Kim, Yunha
    Kang, Hee Jun
    Seo, Hyeram
    Choi, Heejung
    Cho, Ha Na
    Kim, Minkyoung
    Han, Jiye
    Kee, Gaeun
    Park, Seohyun
    Lee, Kye Hwa
    Jun, Tae Joon
    Kim, Young-Hak
    COMPUTERS IN BIOLOGY AND MEDICINE, 2024, 168
  • [22] Semantic Segmentation of Plant Leaves Based on Generative Adversarial Network and Attention Mechanism
    Cao, Liying
    Li, Hongda
    Liu, Xuerui
    Chen, Guifen
    Yu, Helong
    IEEE ACCESS, 2022, 10 : 76310 - 76317
  • [23] TR-GAN: Multi-Session Future MRI Prediction With Temporal Recurrent Generative Adversarial Network
    Fan, Chen-Chen
    Peng, Liang
    Wang, Tian
    Yang, Hongjun
    Zhou, Xiao-Hu
    Ni, Zhen-Liang
    Wang, Guan'an
    Chen, Sheng
    Zhou, Yan-Jie
    Hou, Zeng-Guang
    IEEE TRANSACTIONS ON MEDICAL IMAGING, 2022, 41 (08) : 1925 - 1937
  • [24] Privacy-enhanced generative adversarial network with adaptive noise allocation
    Pan, Ke
    Gong, Maoguo
    Gao, Yuan
    KNOWLEDGE-BASED SYSTEMS, 2023, 272
  • [25] Differential Privacy-Aware Generative Adversarial Network-Assisted Resource Scheduling for Green Multi-Mode Power IoT
    Zhang, Sunxuan
    Xue, Jiapeng
    Liu, Jiayi
    Zhou, Zhenyu
    Chen, Xiaomei
    Mumtaz, Shahid
    IEEE TRANSACTIONS ON GREEN COMMUNICATIONS AND NETWORKING, 2024, 8 (03): : 956 - 967
  • [26] PPGAN: Privacy-preserving Generative Adversarial Network
    Liu, Yi
    Peng, Jialiang
    Yu, James J. Q.
    Wu, Yi
    2019 IEEE 25TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS), 2019, : 985 - 989
  • [27] FL-MAC-RDP: Federated Learning over Multiple Access Channels with Renyi Differential Privacy
    Wu, Shuhui
    Yu, Mengqing
    Ahmed, Moushira Abdallah Mohamed
    Qian, Yaguan
    Tao, Yuanhong
    INTERNATIONAL JOURNAL OF THEORETICAL PHYSICS, 2021, 60 (07) : 2668 - 2682
  • [28] A Mura Detection Method Based on an Improved Generative Adversarial Network
    Xie, Chen
    Yang, Kecheng
    Wang, Anni
    Chen, Chunxu
    Li, Wei
    IEEE ACCESS, 2021, 9 : 68826 - 68836
  • [29] ISRnet: Compressed Image Inpainting Based on Generative Adversarial Network
    Huang, Junjian
    Zheng, Mao
    Li, Zhizhang
    He, Xing
    Wen, Shiping
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTATIONAL INTELLIGENCE, 2024,
  • [30] SARain-GAN: Spatial Attention Residual UNet Based Conditional Generative Adversarial Network for Rain Streak Removal
    Kolekar, Maheshkumar H.
    Bose, Samprit
    Pai, Abhishek
    IEEE ACCESS, 2024, 12 : 43874 - 43888