A unified view on differential privacy and robustness to adversarial examples

06/19/2019
by   Rafael Pinot, et al.
0

This short note highlights some links between two lines of research within the emerging topic of trustworthy machine learning: differential privacy and robustness to adversarial examples. By abstracting the definitions of both notions, we show that they build upon the same theoretical ground and hence results obtained so far in one domain can be transferred to the other. More precisely, our analysis is based on two key elements: probabilistic mappings (also called randomized algorithms in the differential privacy community), and the Renyi divergence which subsumes a large family of divergences. We first generalize the definition of robustness against adversarial examples to encompass probabilistic mappings. Then we observe that Renyi-differential privacy (a generalization of differential privacy recently proposed in Mironov2017RenyiDP) and our definition of robustness share several similarities. We finally discuss how can both communities benefit from this connection to transfer technical tools from one research field to the other.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/23/2019

Preserving Differential Privacy in Adversarial Learning with Provable Robustness

In this paper, we aim to develop a novel mechanism to preserve different...
research
02/09/2018

On the Connection between Differential Privacy and Adversarial Robustness in Machine Learning

Adversarial examples in machine learning has been a topic of intense res...
research
10/09/2019

Automated Methods for Checking Differential Privacy

Differential privacy is a de facto standard for statistical computations...
research
12/14/2020

Robustness Threats of Differential Privacy

Differential privacy is a powerful and gold-standard concept of measurin...
research
04/13/2020

Adversarially Robust Streaming Algorithms via Differential Privacy

A streaming algorithm is said to be adversarially robust if its accuracy...
research
11/12/2020

Deciding Accuracy of Differential Privacy Schemes

Differential privacy is a mathematical framework for developing statisti...
research
02/28/2021

An Introduction to Johnson-Lindenstrauss Transforms

Johnson–Lindenstrauss Transforms are powerful tools for reducing the dim...

Please sign up or login with your details

Forgot password? Click here to reset