Federated Learning with Bayesian Differential Privacy

被引:0
作者
Triastcyn, Aleksei [1 ]
Faltings, Boi [1 ]
机构
[1] Ecole Polytech Fed Lausanne, Artificial Intelligence Lab, Lausanne, Switzerland
来源
2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA) | 2019年
关键词
federated learning; differential privacy; privacy accounting; deep learning; RENYI DIVERGENCE;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
We consider the problem of reinforcing federated learning with formal privacy guarantees. We propose to employ Bayesian differential privacy, a relaxation of differential privacy for similarly distributed data, to provide sharper privacy loss bounds. We adapt the Bayesian privacy accounting method to the federated setting and suggest multiple improvements for more efficient privacy budgeting at different levels. Our experiments show significant advantage over the state-of-the-art differential privacy bounds for federated learning on image classification tasks, including a medical application, bringing the privacy budget below epsilon = 1 at the client level, and below epsilon = 0.1 at the instance level. Lower amounts of noise also benefit the model accuracy and reduce the number of communication rounds.
引用
收藏
页码:2587 / 2596
页数:10
相关论文
共 39 条
[1]   Deep Learning with Differential Privacy [J].
Abadi, Martin ;
Chu, Andy ;
Goodfellow, Ian ;
McMahan, H. Brendan ;
Mironov, Ilya ;
Talwar, Kunal ;
Zhang, Li .
CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, :308-318
[2]  
Abowd J.M., 2013, Journal of Privacy and Confidentiality, V5, P4, DOI 10.29012/jpc.v5i1.627
[3]  
[Anonymous], 2017, DIFFERENTIALLY PRIVA
[4]  
[Anonymous], 1985, Springer Lecture Notes in Mathematics
[5]  
[Anonymous], ARXIV160205629
[6]  
[Anonymous], 2016, PROC CVPR IEEE, DOI DOI 10.1109/CVPR.2016.90
[7]  
Balle Borja, 2018, ADV NEURAL INFORM PR, V31, P6280
[8]  
Bun M., 2017, TEASER DIFFERENTIAL
[9]   Composable and Versatile Privacy via Truncated CDP [J].
Bun, Mark ;
Dwork, Cynthia ;
Rothblum, Guy N. ;
Steinke, Thomas .
STOC'18: PROCEEDINGS OF THE 50TH ANNUAL ACM SIGACT SYMPOSIUM ON THEORY OF COMPUTING, 2018, :74-86
[10]   Concentrated Differential Privacy: Simplifications, Extensions, and Lower Bounds [J].
Bun, Mark ;
Steinke, Thomas .
THEORY OF CRYPTOGRAPHY, TCC 2016-B, PT I, 2016, 9985 :635-658