Better accuracy with quantified privacy: representations learned via reconstructive adversarial network

01/25/2019
by   Sicong Liu, et al.
4

The remarkable success of machine learning, especially deep learning, has produced a variety of cloud-based services for mobile users. Such services require an end user to send data to the service provider, which presents a serious challenge to end-user privacy. To address this concern, prior works either add noise to the data or send features extracted from the raw data. They struggle to balance between the utility and privacy because added noise reduces utility and raw data can be reconstructed from extracted features. This work represents a methodical departure from prior works: we balance between a measure of privacy and another of utility by leveraging adversarial learning to find a sweeter tradeoff. We design an encoder that optimizes against the reconstruction error (a measure of privacy), adversarially by a Decoder, and the inference accuracy (a measure of utility) by a Classifier. The result is RAN, a novel deep model with a new training algorithm that automatically extracts features for classification that are both private and useful. It turns out that adversarially forcing the extracted features to only conveys the intended information required by classification leads to an implicit regularization leading to better classification accuracy than the original model which completely ignores privacy. Thus, we achieve better privacy with better utility, a surprising possibility in machine learning! We conducted extensive experiments on five popular datasets over four training schemes, and demonstrate the superiority of RAN compared with existing alternatives.

READ FULL TEXT
research
06/08/2020

Privacy Adversarial Network: Representation Learning for Mobile Data Privacy

The remarkable success of machine learning has fostered a growing number...
research
09/09/2019

DeepObfuscator: Adversarial Training Framework for Privacy-Preserving Image Classification

Deep learning has been widely utilized in many computer vision applicati...
research
02/07/2022

Learning under Storage and Privacy Constraints

Storage-efficient privacy-guaranteed learning is crucial due to enormous...
research
04/07/2023

Adjustable Privacy using Autoencoder-based Learning Structure

Inference centers need more data to have a more comprehensive and benefi...
research
08/30/2019

MURS: Practical and Robust Privacy Amplification with Multi-Party Differential Privacy

When collecting information, local differential privacy (LDP) alleviates...
research
05/23/2020

TIPRDC: Task-Independent Privacy-Respecting Data Crowdsourcing Framework with Anonymized Intermediate Representations

The success of deep learning partially benefits from the availability of...
research
12/08/2022

Vicious Classifiers: Data Reconstruction Attack at Inference Time

Privacy-preserving inference via edge or encrypted computing paradigms e...

Please sign up or login with your details

Forgot password? Click here to reset