User-Level Differential Privacy against Attribute Inference Attack of Speech Emotion Recognition in Federated Learning

被引:5
|
作者
Feng, Tiantian [1 ]
Peri, Raghuveer [1 ]
Narayanan, Shrikanth [1 ]
机构
[1] Univ Southern Calif, Signal Anal & Interpretat Lab SAIL, Los Angeles, CA 90007 USA
来源
关键词
Speech Emotion Recognition; Differential Privacy; Federated Learning; Privacy Leakage;
D O I
10.21437/Interspeech.2022-10060
中图分类号
O42 [声学];
学科分类号
070206 ; 082403 ;
摘要
Many existing privacy-enhanced speech emotion recognition (SER) frameworks focus on perturbing the original speech data through adversarial training within a centralized machine learning setup. However, this privacy protection scheme can fail since the adversary can still access the perturbed data. In recent years, distributed learning algorithms, especially federated learning (FL), have gained popularity to protect privacy in machine learning applications. While FL provides good intuition to safeguard privacy by keeping the data on local devices, prior work has shown that privacy attacks, such as attribute inference attacks, are achievable for SER systems trained using FL. In this work, we propose to evaluate the user-level differential privacy (UDP) in mitigating the privacy leaks of the SER system in FL. UDP provides theoretical privacy guarantees with privacy parameters epsilon and delta. Our results show that the UDP can effectively decrease attribute information leakage while keeping the utility of the SER system with the adversary accessing one model update. However, the efficacy of the UDP suffers when the FL system leaks more model updates to the adversary. We make the code publicly available to reproduce the results in https://github.com/usc-sail/fed-ser-leakage.
引用
收藏
页码:5055 / 5059
页数:5
相关论文
共 50 条
  • [1] Analyzing User-Level Privacy Attack Against Federated Learning
    Song, Mengkai
    Wang, Zhibo
    Zhang, Zhifei
    Song, Yang
    Wang, Qian
    Ren, Ju
    Qi, Hairong
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2020, 38 (10) : 2430 - 2444
  • [2] Learning with User-Level Privacy
    Levy, Daniel
    Sun, Ziteng
    Amin, Kareem
    Kale, Satyen
    Kulesza, Alex
    Mohri, Mehryar
    Suresh, Ananda Theertha
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34
  • [3] User-Level Membership Inference for Federated Learning in Wireless Network Environment
    Zhao, Yanchao
    Chen, Jiale
    Zhang, Jiale
    Yang, Zilu
    Tu, Huawei
    Han, Hao
    Zhu, Kun
    Chen, Bing
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2021, 2021
  • [4] User Consented Federated Recommender System Against Personalized Attribute Inference Attack
    Hu, Qi
    Song, Yangqiu
    [J]. PROCEEDINGS OF THE 17TH ACM INTERNATIONAL CONFERENCE ON WEB SEARCH AND DATA MINING, WSDM 2024, 2024, : 276 - 285
  • [5] Learning to Generate Image Embeddings with User-level Differential Privacy
    Xu, Zheng
    Collins, Maxwell
    Wang, Yuxiao
    Panait, Liviu
    Oh, Sewoong
    Augenstein, Sean
    Liu, Ting
    Schroff, Florian
    McMahan, H. Brendan
    [J]. 2023 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR, 2023, : 7969 - 7980
  • [6] User-Level Privacy-Preserving Federated Learning: Analysis and Performance Optimization
    Wei, Kang
    Li, Jun
    Ding, Ming
    Ma, Chuan
    Su, Hang
    Zhang, Bo
    Poor, H. Vincent
    [J]. IEEE TRANSACTIONS ON MOBILE COMPUTING, 2022, 21 (09) : 3388 - 3401
  • [7] Privacy Risks in Speech Emotion Recognition: A Systematic Study on Gender Inference Attack
    Alsenani, Basmah
    Guha, Tanaya
    Vinciarelli, Alessandro
    [J]. INTERSPEECH 2023, 2023, : 651 - 655
  • [8] Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning
    Wang, Zhibo
    Song, Mengkai
    Zhang, Zhifei
    Song, Yang
    Wang, Qian
    Qi, Hairong
    [J]. IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (IEEE INFOCOM 2019), 2019, : 2512 - 2520
  • [9] User-Level Differential Privacy With Few Examples Per User
    Ghazi, Badih
    Kamath, Pritish
    Kumar, Ravi
    Manurangsi, Pasin
    Meka, Raghu
    Zhang, Chiyuan
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [10] Continual Observation under User-level Differential Privacy
    Dong, Wei
    Luo, Qiyao
    Yi, Ke
    [J]. 2023 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP, 2023, : 2190 - 2207