Privacy preservation in deep reinforcement learning: A training perspective

被引:0
|
作者
Shen, Sheng [1 ]
Ye, Dayong [2 ]
Zhu, Tianqing [3 ]
Zhou, Wanlei [3 ]
机构
[1] Torrens Univ Australia, Ctr Artificial Intelligence Res & Optimizat AIRO, Design & Creat Technol vert, Ultimo, NSW 2007, Australia
[2] Univ Technol Sydney, Sch Comp Sci, Ultimo, NSW 2007, Australia
[3] City Univ Macau, Fac Data Sci, Taipa 999078, Macao, Peoples R China
基金
澳大利亚研究理事会;
关键词
Reinforcement learning; Deep reinforcement learning; Privacy preservation; Differential privacy;
D O I
10.1016/j.knosys.2024.112558
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Reinforcement learning (RL) is a principled AI framework for autonomous, experience-driven learning. Deep reinforcement learning (DRL) enhances this by incorporating deep learning models, promoting a higher-level understanding of the visual world. However, privacy concerns are emerging in RL applications that involve vast amounts of private information. Recent studies have demonstrated that DRL can leak private information and be vulnerable to attacks aiming to infer the training environment from an agent's behaviors without direct access to the environment. To address these privacy concerns, we propose a differentially private DRL approach that obfuscates the agent's observations from each visited state. This defends against privacy leakage attacks and prevents the inference of the agent's training environment from its optimized policy. We provide a theoretical analysis and design comprehensive experiments to thoroughly reproduce the privacy leakage attack. Both the theoretical analysis and experimental results demonstrate that our method effectively defends against privacy leakage attacks while maintaining the model utility of the RL agent.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Privacy preservation in Distributed Deep Learning: A survey on Distributed Deep Learning, privacy preservation techniques used and interesting research directions
    Antwi-Boasiako, Emmanuel
    Zhou, Shijie
    Liao, Yongjian
    Liu, Qihe
    Wang, Yuyu
    Owusu-Agyemang, Kwabena
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 61
  • [2] Reinforcement Learning for the Privacy Preservation and Manipulation of Eye Tracking Data
    Fuhl, Wolfgang
    Bozkir, Efe
    Kasneci, Enkelejda
    ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING - ICANN 2021, PT IV, 2021, 12894 : 595 - 607
  • [3] A Deep Learning Approach for Privacy Preservation in Assisted Living
    Psychoula, Ismini
    Merdivan, Erinc
    Singh, Deepika
    Chen, Liming
    Chen, Feng
    Hanke, Sten
    Kropf, Johannes
    Holzinger, Andreas
    Geist, Matthieu
    2018 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS WORKSHOPS (PERCOM WORKSHOPS), 2018,
  • [4] Perspective Taking in Deep Reinforcement Learning Agents
    Labash, Aqeel
    Aru, Jaan
    Matiisen, Tambet
    Tampuu, Ardi
    Vicente, Raul
    FRONTIERS IN COMPUTATIONAL NEUROSCIENCE, 2020, 14 (14)
  • [5] The State of Sparse Training in Deep Reinforcement Learning
    Graesser, Laura
    Evci, Utku
    Elsen, Erich
    Castro, Pablo Samuel
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [6] Unbiased training framework on deep reinforcement learning
    Zhang, Huihui
    COMPUTER JOURNAL, 2025,
  • [7] Differential Privacy Preservation in Deep Learning: Challenges, Opportunities and Solutions
    Zhao, Jingwen
    Chen, Yunfang
    Zhang, Wei
    IEEE ACCESS, 2019, 7 : 48901 - 48911
  • [8] A hybrid deep learning framework for privacy preservation in edge computing
    Rajashree, R. Harine
    Sundarakantham, K.
    Sivasankar, E.
    Shalinie, S. Mercy
    COMPUTERS & SECURITY, 2023, 129
  • [9] A federated deep learning framework for privacy preservation and communication efficiency
    Cao, Tien-Dung
    Tram, Truong-Huu
    Tran, Hien
    Tran, Khanh
    JOURNAL OF SYSTEMS ARCHITECTURE, 2022, 124
  • [10] Deep Learning: Differential Privacy Preservation in the Era of Big Data
    Vasa, Jalpesh
    Thakkar, Amit
    JOURNAL OF COMPUTER INFORMATION SYSTEMS, 2023, 63 (03) : 608 - 631