Concentrated Differentially Private Federated Learning With Performance Analysis

被引:20
|
作者
Hu, Rui [1 ]
Guo, Yuanxiong [2 ]
Gong, Yanmin [1 ]
机构
[1] Univ Texas San Antonio, Dept Elect & Comp Engn, San Antonio, TX 78249 USA
[2] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX 78249 USA
基金
美国国家科学基金会;
关键词
Collaborative work; Servers; Privacy; Data models; Computational modeling; Training; Convergence; Federated learning; security and privacy; convergence analysis; zero-concentrated differential privacy; ATTACKS;
D O I
10.1109/OJCS.2021.3099108
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning engages a set of edge devices to collaboratively train a common model without sharing their local data and has advantage in user privacy over traditional cloud-based learning approaches. However, recent model inversion attacks and membership inference attacks have demonstrated that shared model updates during the interactive training process could still leak sensitive user information. Thus, it is desirable to provide rigorous differential privacy (DP) guarantee in federated learning. The main challenge to providing DP is to maintain high utility of federated learning model with repeatedly introduced randomness of DP mechanisms, especially when the server is not fully trusted. In this paper, we investigate how to provide DP to the most widely adopted federated learning scheme, federated averaging. Our approach combines local gradient perturbation, secure aggregation, and zero-concentrated differential privacy (zCDP) for better utility and privacy protection without a trusted server. We jointly consider the performance impacts of randomnesses introduced by the DP mechanism, client sampling and data subsampling in our approach, and theoretically analyze the convergence rate and end-to-end DP guarantee with non-convex loss functions. We also demonstrate that our proposed method has good utility-privacy trade-off through extensive numerical experiments on the real-world dataset.
引用
收藏
页码:276 / 289
页数:14
相关论文
共 50 条
  • [31] Differentially Private Federated Learning via Reconfigurable Intelligent Surface
    Yang, Yuhan
    Zhou, Yong
    Wu, Youlong
    Shi, Yuanming
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (20) : 19728 - 19743
  • [32] Differentially private federated learning with non-IID data
    Cheng, Shuyan
    Li, Peng
    Wang, Ruchuan
    Xu, He
    COMPUTING, 2024, 106 (07) : 2459 - 2488
  • [33] Differentially Private Federated Learning for Anomaly Detection in eHealth Networks
    Cholakoska, Ana
    Pfitzner, Bjarne
    Gjoreski, Hristijan
    Rakovic, Valentin
    Arnrich, Bert
    Kalendar, Marija
    UBICOMP/ISWC '21 ADJUNCT: PROCEEDINGS OF THE 2021 ACM INTERNATIONAL JOINT CONFERENCE ON PERVASIVE AND UBIQUITOUS COMPUTING AND PROCEEDINGS OF THE 2021 ACM INTERNATIONAL SYMPOSIUM ON WEARABLE COMPUTERS, 2021, : 514 - 518
  • [34] Generalized genomic data sharing for differentially private federated learning
    Al Aziz, Md Momin
    Anjum, Md Monowar
    Mohammed, Noman
    Jiang, Xiaoqian
    JOURNAL OF BIOMEDICAL INFORMATICS, 2022, 132
  • [35] Differentially Private Federated Learning: An Information-Theoretic Perspective
    Asoodeh, Shahab
    Chen, Wei-Ning
    Calmon, Flavio P.
    Ozgur, Ayfer
    2021 IEEE INTERNATIONAL SYMPOSIUM ON INFORMATION THEORY (ISIT), 2021, : 344 - 349
  • [36] FedRecovery: Differentially Private Machine Unlearning for Federated Learning Frameworks
    Zhang, Lefeng
    Zhu, Tianqing
    Zhang, Haibin
    Xiong, Ping
    Zhou, Wanlei
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 4732 - 4746
  • [37] Incentivizing Differentially Private Federated Learning: A Multidimensional Contract Approach
    Wu, Maoqiang
    Ye, Dongdong
    Ding, Jiahao
    Guo, Yuanxiong
    Yu, Rong
    Pan, Miao
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (13) : 10639 - 10651
  • [38] Differentially Private federated learning to Protect Identity in Stress Recognition
    Guelta, Bouchiba
    Benbakreti, Samir
    Boumediene, Kadda
    PRZEGLAD ELEKTROTECHNICZNY, 2024, 100 (06): : 36 - 41
  • [39] The Fundamental Price of Secure Aggregation in Differentially Private Federated Learning
    Chen, Wei-Ning
    Choquette-Choo, Christopher A.
    Kairouz, Peter
    Suresh, Ananda Theertha
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [40] Differentially Private Federated Learning on Non-iid Data: Convergence Analysis and Adaptive Optimization
    Chen, Lin
    Ding, Xiaofeng
    Bao, Zhifeng
    Zhou, Pan
    Jin, Hai
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2024, 36 (09) : 4567 - 4581