Concentrated Differentially Private Federated Learning With Performance Analysis

被引:20
|
作者
Hu, Rui [1 ]
Guo, Yuanxiong [2 ]
Gong, Yanmin [1 ]
机构
[1] Univ Texas San Antonio, Dept Elect & Comp Engn, San Antonio, TX 78249 USA
[2] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX 78249 USA
基金
美国国家科学基金会;
关键词
Collaborative work; Servers; Privacy; Data models; Computational modeling; Training; Convergence; Federated learning; security and privacy; convergence analysis; zero-concentrated differential privacy; ATTACKS;
D O I
10.1109/OJCS.2021.3099108
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning engages a set of edge devices to collaboratively train a common model without sharing their local data and has advantage in user privacy over traditional cloud-based learning approaches. However, recent model inversion attacks and membership inference attacks have demonstrated that shared model updates during the interactive training process could still leak sensitive user information. Thus, it is desirable to provide rigorous differential privacy (DP) guarantee in federated learning. The main challenge to providing DP is to maintain high utility of federated learning model with repeatedly introduced randomness of DP mechanisms, especially when the server is not fully trusted. In this paper, we investigate how to provide DP to the most widely adopted federated learning scheme, federated averaging. Our approach combines local gradient perturbation, secure aggregation, and zero-concentrated differential privacy (zCDP) for better utility and privacy protection without a trusted server. We jointly consider the performance impacts of randomnesses introduced by the DP mechanism, client sampling and data subsampling in our approach, and theoretically analyze the convergence rate and end-to-end DP guarantee with non-convex loss functions. We also demonstrate that our proposed method has good utility-privacy trade-off through extensive numerical experiments on the real-world dataset.
引用
收藏
页码:276 / 289
页数:14
相关论文
共 50 条
  • [41] Game Analysis and Incentive Mechanism Design for Differentially Private Cross-Silo Federated Learning
    Mao, Wuxing
    Ma, Qian
    Liao, Guocheng
    Chen, Xu
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2024, 23 (10) : 9337 - 9351
  • [42] Boosting Accuracy of Differentially Private Continuous Data Release for Federated Learning
    Cai, Jianping
    Ye, Qingqing
    Hu, Haibo
    Liu, Ximeng
    Fu, Yanggeng
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 10287 - 10301
  • [43] Analyze and Improve Differentially Private Federated Learning: A Model Robustness Perspective
    Zhang, Shuaishuai
    Huang, Jie
    Li, Peihao
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025, 20 : 807 - 821
  • [44] A Federated Learning Framework Based on Differentially Private Continuous Data Release
    Cai, Jianping
    Liu, Ximeng
    Ye, Qingqing
    Liu, Yang
    Wang, Yuyang
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4879 - 4894
  • [45] CSRA: Robust Incentive Mechanism Design for Differentially Private Federated Learning
    Yang, Yunchao
    Hu, Miao
    Zhou, Yipeng
    Liu, Xuezheng
    Wu, Di
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 892 - 906
  • [46] Differentially Private Federated Learning in Edge Networks: The Perspective of Noise Reduction
    Li, Yiwei
    Wang, Shuai
    Chi, Chong-Yung
    Quek, Tony Q. S.
    IEEE NETWORK, 2022, 36 (05): : 167 - 172
  • [47] ADPF: Anti-inference differentially private protocol for federated learning
    Zhao, Zirun
    Lin, Zhaowen
    Sun, Yi
    COMPUTER NETWORKS, 2025, 261
  • [48] Differentially Private and Heterogeneity-Robust Federated Learning With Theoretical Guarantee
    Wang, Xiuhua
    Wang, Shuai
    Li, Yiwei
    Fan, Fengrui
    Li, Shikang
    Lin, Xiaodong
    IEEE Transactions on Artificial Intelligence, 2024, 5 (12): : 6369 - 6384
  • [49] Privacy-Preserving Federated Learning with Differentially Private Hyperdimensional Computing
    Piran, Fardin Jalil
    Chen, Zhiling
    Imani, Mohsen
    Imani, Farhad
    COMPUTERS & ELECTRICAL ENGINEERING, 2025, 123
  • [50] Joint Client Selection and Privacy Compensation for Differentially Private Federated Learning
    Xu, Ruichen
    Zhang, Ying-Jun Angela
    Huang, Jianwei
    IEEE INFOCOM 2024-IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS, INFOCOM WKSHPS 2024, 2024,