Concentrated Differentially Private Federated Learning With Performance Analysis

被引:16
|
作者
Hu, Rui [1 ]
Guo, Yuanxiong [2 ]
Gong, Yanmin [1 ]
机构
[1] Univ Texas San Antonio, Dept Elect & Comp Engn, San Antonio, TX 78249 USA
[2] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX 78249 USA
基金
美国国家科学基金会;
关键词
Collaborative work; Servers; Privacy; Data models; Computational modeling; Training; Convergence; Federated learning; security and privacy; convergence analysis; zero-concentrated differential privacy; ATTACKS;
D O I
10.1109/OJCS.2021.3099108
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning engages a set of edge devices to collaboratively train a common model without sharing their local data and has advantage in user privacy over traditional cloud-based learning approaches. However, recent model inversion attacks and membership inference attacks have demonstrated that shared model updates during the interactive training process could still leak sensitive user information. Thus, it is desirable to provide rigorous differential privacy (DP) guarantee in federated learning. The main challenge to providing DP is to maintain high utility of federated learning model with repeatedly introduced randomness of DP mechanisms, especially when the server is not fully trusted. In this paper, we investigate how to provide DP to the most widely adopted federated learning scheme, federated averaging. Our approach combines local gradient perturbation, secure aggregation, and zero-concentrated differential privacy (zCDP) for better utility and privacy protection without a trusted server. We jointly consider the performance impacts of randomnesses introduced by the DP mechanism, client sampling and data subsampling in our approach, and theoretically analyze the convergence rate and end-to-end DP guarantee with non-convex loss functions. We also demonstrate that our proposed method has good utility-privacy trade-off through extensive numerical experiments on the real-world dataset.
引用
收藏
页码:276 / 289
页数:14
相关论文
共 50 条
  • [1] Differentially Private Federated Learning with Functional Mechanism
    Cao, Shi-Xiang
    Chen, Chao-Meng
    Tang, Peng
    Su, Sen
    [J]. Jisuanji Xuebao/Chinese Journal of Computers, 2023, 46 (10): : 2178 - 2195
  • [2] Compression Boosts Differentially Private Federated Learning
    Kerkouche, Raouf
    Acs, Gergely
    Castelluccia, Claude
    Geneves, Pierre
    [J]. 2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P 2021), 2021, : 304 - 318
  • [3] Differentially private knowledge transfer for federated learning
    Qi, Tao
    Wu, Fangzhao
    Wu, Chuhan
    He, Liang
    Huang, Yongfeng
    Xie, Xing
    [J]. NATURE COMMUNICATIONS, 2023, 14 (01)
  • [4] Differentially Private Federated Temporal Difference Learning
    Zeng, Yiming
    Lin, Yixuan
    Yang, Yuanyuan
    Liu, Ji
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2022, 33 (11) : 2714 - 2726
  • [5] Towards the Robustness of Differentially Private Federated Learning
    Qi, Tao
    Wang, Huili
    Huang, Yongfeng
    [J]. THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 18, 2024, : 19911 - 19919
  • [6] Differentially Private Federated Learning with Drift Control
    Chang, Wei-Ting
    Seif, Mohamed
    Tandon, Ravi
    [J]. 2022 56TH ANNUAL CONFERENCE ON INFORMATION SCIENCES AND SYSTEMS (CISS), 2022, : 240 - 245
  • [7] Differentially Private Federated Learning on Heterogeneous Data
    Noble, Maxence
    Bellet, Aurelien
    Dieuleveut, Aymeric
    [J]. INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND STATISTICS, VOL 151, 2022, 151
  • [8] Differentially private federated learning with Laplacian smoothing
    Liang, Zhicong
    Wang, Bao
    Gu, Quanquan
    Osher, Stanley
    Yao, Yuan
    [J]. APPLIED AND COMPUTATIONAL HARMONIC ANALYSIS, 2024, 72
  • [9] The Skellam Mechanism for Differentially Private Federated Learning
    Agarwal, Naman
    Kairouz, Peter
    Liu, Ziyu
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021,
  • [10] Differentially private knowledge transfer for federated learning
    Tao Qi
    Fangzhao Wu
    Chuhan Wu
    Liang He
    Yongfeng Huang
    Xing Xie
    [J]. Nature Communications, 14