Privacy-Preserving Stochastic Gradual Learning

被引:5
作者
Han, Bo [1 ]
Tsang, Ivor W. [2 ]
Xiao, Xiaokui [3 ]
Chen, Ling [2 ]
Fung, Sai-Fu [4 ]
Yu, Celina P. [5 ]
机构
[1] Hong Kong Baptist Univ, Dept Comp Sci, Kowloon Tong, Hong Kong, Peoples R China
[2] Univ Technol Sydney, Ctr Artificial Intelligence, Ultimo, NSW 2007, Australia
[3] Natl Univ Singapore, Dept Comp Sci, Singapore 119077, Singapore
[4] City Univ Hong Kong, Dept Appl Social Sci, Kowloon Tong, Hong Kong, Peoples R China
[5] Global Business Coll Australia, Melbourne, Vic 3000, Australia
关键词
Privacy; Optimization; Differential privacy; Robustness; Stochastic processes; Task analysis; Stochastic optimization; differential privacy; robustness; MACHINE;
D O I
10.1109/TKDE.2020.2963977
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
It is challenging for stochastic optimization to handle large-scale sensitive data safely. Duchi et al. recently proposed a private sampling strategy to solve privacy leakage in stochastic optimization. However, this strategy leads to a degeneration in robustness, since this strategy is equal to noise injection on each gradient, which adversely affects updates of the primal variable. To address this challenge, we introduce a robust stochastic optimization under the framework of local privacy, which is called Privacy-pREserving StochasTIc Gradual lEarning (PRESTIGE). PRESTIGE bridges private updates of the primal variable (by private sampling) with gradual curriculum learning (CL). The noise injection leads to similar issue from label noise, but the robust learning process of CL can combat with label noise. Thus, PRESTIGE yields "private but robust" updates of the primal variable on the curriculum, that is, a reordered label sequence provided by CL. In theory, we reveal the convergence rate and maximum complexity of PRESTIGE. Empirical results on six datasets show that PRESTIGE achieves a good tradeoff between privacy preservation and robustness over baselines.
引用
收藏
页码:3129 / 3140
页数:12
相关论文
共 50 条
[21]   Staged Noise Perturbation for Privacy-Preserving Federated Learning [J].
Li, Zhe ;
Chen, Honglong ;
Gao, Yudong ;
Ni, Zhichen ;
Xue, Huansheng ;
Shao, Huajie .
IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2024, 9 (06) :936-947
[22]   Novel stochastic algorithms for privacy-preserving utility mining [J].
Nguyen, Duc ;
Le, Bac .
APPLIED INTELLIGENCE, 2024, 54 (24) :12725-12741
[23]   Privacy-Preserving Classifier Learning [J].
Brickell, Justin ;
Shmatikov, Vitaly .
FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, 2009, 5628 :128-147
[24]   Privacy-Preserving Deep Learning [J].
Shokri, Reza ;
Shmatikov, Vitaly .
CCS'15: PROCEEDINGS OF THE 22ND ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2015, :1310-1321
[25]   Privacy-Preserving Distributed Machine Learning via Local Randomization and ADMM Perturbation [J].
Wang, Xin ;
Ishii, Hideaki ;
Du, Linkang ;
Cheng, Peng ;
Chen, Jiming .
IEEE TRANSACTIONS ON SIGNAL PROCESSING, 2020, 68 :4226-4241
[26]   GuardianML: Anatomy of Privacy-Preserving Machine Learning Techniques and Frameworks [J].
Njungle, Nges Brian ;
Jahns, Eric ;
Wu, Zhenqi ;
Mastromauro, Luigi ;
Stojkov, Milan ;
Kinsy, Michel A. .
IEEE ACCESS, 2025, 13 :61483-61510
[27]   VPPFL: Verifiable Privacy-Preserving Federated Learning in Cloud Environment [J].
Wang, Huiyong ;
Yang, Tengfei ;
Ding, Yong ;
Tang, Shijie ;
Wang, Yujue .
IEEE ACCESS, 2024, 12 :151998-152008
[28]   PFLF: Privacy-Preserving Federated Learning Framework for Edge Computing [J].
Zhou, Hao ;
Yang, Geng ;
Dai, Hua ;
Liu, Guoxiu .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 :1905-1918
[29]   Privacy-preserving federated learning on lattice quantization [J].
Zhang, Lingjie ;
Zhang, Hai .
INTERNATIONAL JOURNAL OF WAVELETS MULTIRESOLUTION AND INFORMATION PROCESSING, 2023, 21 (06)
[30]   Efficient Verifiable Protocol for Privacy-Preserving Aggregation in Federated Learning [J].
Eltaras, Tamer ;
Sabry, Farida ;
Labda, Wadha ;
Alzoubi, Khawla ;
Malluhi, Qutaibah .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 :2977-2990