跳到主要导航 跳到搜索 跳到主要内容

Adaptive privacy-preserving and shuffling aggregation in federated-learning

  • East China Normal University

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Deep learning models are usually trained on data sets containing sensitive information, such as personal shopping transactions, personal contacts, and medical records. Therefore, more and more important work attempts to train neural networks subject to privacy constraints, which are specified by differential privacy or divergence-based relaxation. However, these privacy definitions have weaknesses in handling certain important primitives (synthesis and sub-sampling), which makes the privacy analysis of training neural networks loose or complex. Federated learning is a popular privacy protection method, which collects local gradient information instead of real data. One way to achieve strict privacy guarantee is to apply differential privacy to federated learning. However, previous work did not give a practical solution. This paper proposes a new type of adaptive privacy-preserving and shuffling aggregation in federated-learning mechanism design. It can make the data more different from its original value and introduce lower variance. In addition, the proposed mechanism is updated through the split and shuffle model, avoiding the curse of dimensionality. A series of empirical evaluations conducted on the three commonly used data sets of MNIST, Fashi-MNIST and CIFAR-10 show that our solution can not only achieve excellent deep learning performance, but also provide strong privacy protection.

源语言英语
主期刊名2021 11th International Workshop on Computer Science and Engineering, WCSE 2021
出版商International Workshop on Computer Science and Engineering (WCSE)
37-41
页数5
ISBN(电子版)9789811817915
DOI
出版状态已出版 - 2021
活动2021 11th International Workshop on Computer Science and Engineering, WCSE 2021 - Shanghai, Virtual, 中国
期限: 19 6月 202121 6月 2021

出版系列

姓名2021 11th International Workshop on Computer Science and Engineering, WCSE 2021

会议

会议2021 11th International Workshop on Computer Science and Engineering, WCSE 2021
国家/地区中国
Shanghai, Virtual
时期19/06/2121/06/21

学术指纹

探究 'Adaptive privacy-preserving and shuffling aggregation in federated-learning' 的科研主题。它们共同构成独一无二的学术指纹。

引用此