On the Privacy Risks of Algorithmic Fairness

被引:45
作者
Chang, Hongyan [1 ]
Shokri, Reza [1 ]
机构
[1] Natl Univ Singapore NUS, Dept Comp Sci, Singapore, Singapore
来源
2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P 2021) | 2021年
基金
新加坡国家研究基金会;
关键词
Trustworthy Machine Learning; Group Fairness; Data Privacy; Membership Inference Attacks;
D O I
10.1109/EuroSP51992.2021.00028
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Algorithmic fairness and privacy are essential pillars of trustworthy machine learning. Fair machine learning aims at minimizing discrimination against protected groups by, for example, imposing a constraint on models to equalize their behavior across different groups. This can subsequently change the influence of training data points on the fair model, in a disproportionate way. We study how this can change the information leakage of the model about its training data. We analyze the privacy risks of group fairness (e.g., equalized odds) through the lens of membership inference attacks: inferring whether a data point is used for training a model. We show that fairness comes at the cost of privacy, and this cost is not distributed equally: the information leakage of fair models increases significantly on the unprivileged subgroups, which are the ones for whom we need fair learning. We show that the more biased the training data is, the higher the privacy cost of achieving fairness for the unprivileged subgroups will be. We provide comprehensive empirical analysis for general machine learning algorithms.
引用
收藏
页码:292 / 303
页数:12
相关论文
共 45 条
[1]   Deep Learning with Differential Privacy [J].
Abadi, Martin ;
Chu, Andy ;
Goodfellow, Ian ;
McMahan, H. Brendan ;
Mironov, Ilya ;
Talwar, Kunal ;
Zhang, Li .
CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, :308-318
[2]  
[Anonymous], 2019, PR MACH LEARN RES
[3]  
[Anonymous], 2020, ADV NEUR IN
[4]  
Bagdasaryan E., 2019, ADV NEURAL INFORM PR, P479
[5]  
Bellamy R.K., 2018, ARXIV181001943
[6]  
Bolukbasi T, 2016, ADV NEUR IN, V29
[7]  
Buolamwini Joy, 2018, C FAIRNESS ACCOUNTAB, P77
[8]   Building Classifiers with Independency Constraints [J].
Calders, Toon ;
Kamiran, Faisal ;
Pechenizkiy, Mykola .
2009 IEEE INTERNATIONAL CONFERENCE ON DATA MINING WORKSHOPS (ICDMW 2009), 2009, :13-18
[9]  
Chaudhuri K, 2011, J MACH LEARN RES, V12, P1069
[10]   On the Compatibility of Privacy and Fairness [J].
Cummings, Rachel ;
Gupta, Varun ;
Kimpara, Dhamma ;
Morgenstern, Jamie .
ADJUNCT PUBLICATION OF THE 27TH CONFERENCE ON USER MODELING, ADAPTATION AND PERSONALIZATION (ACM UMAP '19 ADJUNCT), 2019, :309-315