Privacy‐enhancing machine learning framework with private aggregation of teacher ensembles

计算机科学 信息泄露 Guard(计算机科学) 服务器 上传 计算机安全 熵(时间箭头) 新闻聚合器 机器学习 人工智能 理论计算机科学 计算机网络 万维网 物理 量子力学 程序设计语言
作者
Shengnan Zhao,Qi Zhao,Chuan Zhao,Han Jiang,Qiuliang Xu
出处
期刊:International Journal of Intelligent Systems [Wiley]
卷期号:37 (11): 9904-9920 被引量:6
标识
DOI:10.1002/int.23020
摘要

Private aggregation of teacher ensembles (PATE), a general machine learning framework based on knowledge distillation, can provide a privacy guarantee for training data sets. However, this framework poses a number of security risks. First, PATE mainly focuses on the privacy of teachers' training data and fails to protect the privacy of their students' data. Second, PATE relies heavily on a trusted aggregator to count teachers' votes, which is not convincing enough to assume a third party would never leak teachers' votes during the knowledge transfer process. To address the abovementioned issues, we improve the original PATE framework and present a new one that combines secret sharing with Intel Software Guard Extensions in a novel way. In the proposed framework, teachers are trained locally, then uploaded and stored in two computing servers in the form of secret shares. In the knowledge transfer phase, the two computing servers receive shares of private inputs from students before collaboratively performing secure predictions. Thus neither teachers nor students expose sensitive information. During the aggregation process, we propose an effective masking technique suitable for the setting to keep the prediction results private and prevent the votes from being leaked to the aggregation server. Besides, we optimize the aggregation mechanism and add noise perturbations adaptively based on the posterior entropy of the prediction results. Finally, we evaluate the performance of the new framework on multiple data sets and experimentally demonstrate that the new framework allows highly efficient, accurate, and secure predictions.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
占博涛发布了新的文献求助10
刚刚
Yu完成签到,获得积分10
1秒前
福神发布了新的文献求助10
2秒前
越明年完成签到,获得积分10
2秒前
wenrui完成签到 ,获得积分10
3秒前
隐形曼青应助宇麦达采纳,获得10
3秒前
vanliu发布了新的文献求助10
3秒前
阿猫完成签到,获得积分10
4秒前
fx完成签到,获得积分10
4秒前
曲艺完成签到,获得积分10
4秒前
胡平完成签到,获得积分10
4秒前
小马甲应助爱喝美式采纳,获得10
5秒前
6秒前
曾经的千柔完成签到,获得积分10
6秒前
三寿完成签到,获得积分10
7秒前
彭于晏应助占博涛采纳,获得10
8秒前
Yangyang完成签到,获得积分10
8秒前
CipherSage应助福神采纳,获得10
10秒前
杨雯娜完成签到 ,获得积分10
10秒前
Jerry完成签到 ,获得积分10
11秒前
CNYDNZB完成签到 ,获得积分10
12秒前
乐观囧完成签到 ,获得积分10
13秒前
潇洒的惋清应助abcd_1067采纳,获得10
13秒前
多余完成签到,获得积分10
13秒前
小小酥被卷了完成签到,获得积分10
14秒前
大模型应助健壮的傲丝采纳,获得10
14秒前
zjw完成签到,获得积分10
15秒前
jennawu完成签到 ,获得积分10
16秒前
16秒前
16秒前
小杭776完成签到,获得积分0
17秒前
壮壮完成签到 ,获得积分10
17秒前
yqt完成签到,获得积分10
20秒前
zzz完成签到,获得积分10
20秒前
muBai嘎嘎牛完成签到,获得积分10
20秒前
XS_QI完成签到 ,获得积分10
21秒前
22秒前
明越完成签到,获得积分10
23秒前
占博涛完成签到,获得积分10
23秒前
abcd_1067完成签到,获得积分10
23秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Les Mantodea de Guyane Insecta, Polyneoptera 2000
Leading Academic-Practice Partnerships in Nursing and Healthcare: A Paradigm for Change 800
Signals, Systems, and Signal Processing 610
Research Methods for Business: A Skill Building Approach, 9th Edition 500
Research Methods for Applied Linguistics 500
Picture Books with Same-sex Parented Families Unintentional Censorship 444
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6414035
求助须知:如何正确求助?哪些是违规求助? 8232736
关于积分的说明 17477024
捐赠科研通 5466761
什么是DOI,文献DOI怎么找? 2888516
邀请新用户注册赠送积分活动 1865364
关于科研通互助平台的介绍 1703234