Topology-Aware Differential Privacy for Decentralized Image Classification

被引:10
|
作者
Guo, Shangwei [1 ]
Zhang, Tianwei [2 ]
Xu, Guowen [2 ]
Yu, Han [2 ]
Xiang, Tao [1 ]
Liu, Yang [2 ]
机构
[1] Chongqing Univ, Coll Comp Sci, Chongqing 400044, Peoples R China
[2] Nanyang Technol Univ NTU, Sch Comp Sci & Engn, Singapore 639798, Singapore
基金
新加坡国家研究基金会; 中国国家自然科学基金;
关键词
Training; Privacy; Usability; Differential privacy; Network topology; Learning systems; Topology; Decentralized learning; image processing; differential privacy; topology;
D O I
10.1109/TCSVT.2021.3105723
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Image classification is a fundamental artificial intelligence task that labels images into one of some predefined classes. However, training complex image classification models requires a large amount of computation resources and data in order to reach state-of-the-art performance. This demand drives the growth of distributed deep learning, where multiple agents cooperatively train global models with their individual datasets. Among such learning systems, decentralized learning is particularly attractive, as it can improve the efficiency and fault tolerance by eliminating the centralized parameter server, which could be the single point of failure or performance bottleneck. Although the agents do not need to disclose their training image samples, they exchange parameters with each other at each iteration, which can put them at the risk of data privacy leakage. Past works demonstrated the possibility of recovering training images from the exchanged parameters. One common defense direction is to adopt Differential Privacy (DP) to secure the optimization algorithms such as Stochastic Gradient Descent (SGD). Those DP-based methods mainly focus on standalone systems, or centralized distributed learning. How to enforce and optimize DP protection in decentralized learning systems is unknown and challenging, due to their complex communication topologies and distinct learning characteristics. In this paper, we design TOP- DP, a novel solution to optimize the differential privacy protection of decentralized image classification systems. The key insight of our solution is to leverage the unique features of decentralized communication topologies to reduce the noise scale and improve the model usability. (1) We enhance the DP-SGD algorithm with this topology-aware noise reduction strategy, and integrate the time-aware noise decay technique. (2) We design two novel learning protocols (synchronous and asynchronous) to protect systems with different network connectivities and topologies. We formally analyze and prove the DP requirement of our proposed solutions. Experimental evaluations demonstrate that our solution achieves a better trade-off between usability and privacy than prior works. To the best of our knowledge, this is the first DP optimization work from the perspective of network topologies.
引用
收藏
页码:4016 / 4027
页数:12
相关论文
共 50 条
  • [1] Topology-aware Generalization of Decentralized SGD
    Zhu, Tongtian
    He, Fengxiang
    Zhang, Lan
    Niu, Zhengyang
    Song, Mingli
    Tao, Dacheng
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [2] Topology-Aware Uncertainty for Image Segmentation
    Gupta, Saumya
    Zhang, Yikai
    Hu, Xiaoling
    Prasanna, Prateek
    Chen, Chao
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [3] Topology-aware Image Compositing using NVLink
    Christensen, Cameron
    Fogal, Thomas
    Luehr, Nathan
    Woolley, Cliff
    2016 IEEE 6TH SYMPOSIUM ON LARGE DATA ANALYSIS AND VISUALIZATION (LDAV), 2016, : 93 - 94
  • [4] Decentralized cloud datacenter reconsolidation through emergent and topology-aware behavior
    Sedaghat, Mina
    Hernandez-Rodriguez, Francisco
    Elmroth, Erik
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2016, 56 : 51 - 63
  • [5] Topology-Aware Activation Layer for Neural Network Image Segmentation
    Baxter, John S. H.
    Jannin, Pierre
    MEDICAL IMAGING 2020: IMAGE PROCESSING, 2021, 11313
  • [6] Topology-Aware Optimal Task Allocation for Mission Critical Environment - A Decentralized Approach
    Ahmed, Shameem
    Nahrstedt, Klara
    Wang, Guijun
    2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, : 884 - 889
  • [7] TopAwaRe: Topology-Aware Registration
    Nielsen, Rune Kok
    Darkner, Sune
    Feragen, Aasa
    MEDICAL IMAGE COMPUTING AND COMPUTER ASSISTED INTERVENTION - MICCAI 2019, PT II, 2019, 11765 : 364 - 372
  • [8] A Topology-Aware Improvement on Chord
    Zhou Xiaofan
    Yang Xudong
    Wang Zhiqian
    2009 INTERNATIONAL FORUM ON INFORMATION TECHNOLOGY AND APPLICATIONS, VOL 1, PROCEEDINGS, 2009, : 637 - 640
  • [9] A Topology-Aware Random Walk
    Yu, InKwan
    Newman, Richard
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2012, E95B (03) : 995 - 998
  • [10] Topology-aware Simulated Annealing
    Kerrache, Said
    Benhidour, Hafida
    2014 2ND INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE, MODELLING AND SIMULATION, 2014, : 19 - 24