FLAME: Differentially Private Federated Learning in the Shuffle Model

差别隐私 计算机科学 协议(科学) 联合学习 频谱分析仪 原始数据 简单(哲学) 机器学习 梯度升压 人口 人工智能 数据挖掘 随机森林 社会学 人口学 电信 病理 程序设计语言 替代医学 医学 哲学 认识论
作者
Ruixuan Liu,Yang Cao,Hong Chen,Ruoyang Guo,Masatoshi Yoshikawa
出处
期刊:Proceedings of the ... AAAI Conference on Artificial Intelligence [Association for the Advancement of Artificial Intelligence (AAAI)]
卷期号:35 (10): 8688-8696 被引量:19
标识
DOI:10.1609/aaai.v35i10.17053
摘要

Federated Learning (FL) is a promising machine learning paradigm that enables the analyzer to train a model without collecting users' raw data. To ensure users' privacy, differentially private federated learning has been intensively studied. The existing works are mainly based on the curator model or local model of differential privacy. However, both of them have pros and cons. The curator model allows greater accuracy but requires a trusted analyzer. In the local model where users randomize local data before sending them to the analyzer, a trusted analyzer is not required but the accuracy is limited. In this work, by leveraging the \textit{privacy amplification} effect in the recently proposed shuffle model of differential privacy, we achieve the best of two worlds, i.e., accuracy in the curator model and strong privacy without relying on any trusted party. We first propose an FL framework in the shuffle model and a simple protocol (SS-Simple) extended from existing work. We find that SS-Simple only provides an insufficient privacy amplification effect in FL since the dimension of the model parameter is quite large. To solve this challenge, we propose an enhanced protocol (SS-Double) to increase the privacy amplification effect by subsampling. Furthermore, for boosting the utility when the model size is greater than the user population, we propose an advanced protocol (SS-Topk) with gradient sparsification techniques. We also provide theoretical analysis and numerical evaluations of the privacy amplification of the proposed protocols. Experiments on real-world dataset validate that SS-Topk improves the testing accuracy by 60.7% than the local model based FL. We highlight an observation that SS-Topk improves the accuracy by 33.94\% than the curator model based FL without any trusted party. Compared with non-private FL, our protocol SS-Topk only lose 1.48% accuracy under (2.348, 5e-6)-DP per epoch.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
mm发布了新的文献求助10
1秒前
牛逼哄哄发布了新的文献求助10
1秒前
1秒前
cctv18应助Iq采纳,获得10
2秒前
雪阳发布了新的文献求助10
4秒前
聪明南霜完成签到,获得积分10
4秒前
爆米花应助Felix采纳,获得10
5秒前
开朗穆完成签到,获得积分10
5秒前
5秒前
dalong发布了新的文献求助10
5秒前
ljc完成签到,获得积分10
7秒前
7秒前
1234发布了新的文献求助100
7秒前
一具空想家完成签到,获得积分10
8秒前
Dong发布了新的文献求助10
8秒前
冰苏打发布了新的文献求助10
9秒前
10秒前
12秒前
mm完成签到,获得积分10
13秒前
称心的海蓝完成签到 ,获得积分10
13秒前
13秒前
dalong完成签到,获得积分10
13秒前
zzzz发布了新的文献求助10
14秒前
王美祥发布了新的文献求助10
15秒前
echo发布了新的文献求助10
15秒前
16秒前
脑洞疼应助猪猪采纳,获得10
16秒前
Never完成签到 ,获得积分10
17秒前
18秒前
Jasper应助zhanglan123采纳,获得10
19秒前
中工完成签到 ,获得积分10
21秒前
Felix发布了新的文献求助10
21秒前
mmy完成签到,获得积分10
22秒前
冰苏打完成签到,获得积分10
23秒前
巨人文发布了新的文献求助10
24秒前
玉山小霸王完成签到,获得积分10
25秒前
25秒前
高高完成签到 ,获得积分10
25秒前
25秒前
YYY发布了新的文献求助10
26秒前
高分求助中
Manual of Clinical Microbiology, 4 Volume Set (ASM Books) 13th Edition 1000
Edestus (Chondrichthyes, Elasmobranchii) from the Upper Carboniferous of Xinjiang, China 500
Chinese-English Translation Lexicon Version 3.0 500
Electronic Structure Calculations and Structure-Property Relationships on Aromatic Nitro Compounds 500
マンネンタケ科植物由来メロテルペノイド類の網羅的全合成/Collective Synthesis of Meroterpenoids Derived from Ganoderma Family 500
Two-sample Mendelian randomization analysis reveals causal relationships between blood lipids and venous thromboembolism 400
薩提亞模式團體方案對青年情侶輔導效果之研究 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 有机化学 工程类 生物化学 纳米技术 物理 内科学 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 电极 光电子学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 2380560
求助须知:如何正确求助?哪些是违规求助? 2087852
关于积分的说明 5242806
捐赠科研通 1814956
什么是DOI,文献DOI怎么找? 905501
版权声明 558774
科研通“疑难数据库(出版商)”最低求助积分说明 483503