Differentially Private Regression and Classification with Sparse Gaussian Processes

09/19/2019
by   Michael Thomas Smith, et al.
12

A continuing challenge for machine learning is providing methods to perform computation on data while ensuring the data remains private. In this paper we build on the provable privacy guarantees of differential privacy which has been combined with Gaussian processes through the previously published cloaking method. In this paper we solve several shortcomings of this method, starting with the problem of predictions in regions with low data density. We experiment with the use of inducing points to provide a sparse approximation and show that these can provide robust differential privacy in outlier areas and at higher dimensions. We then look at classification, and modify the Laplace approximation approach to provide differentially private predictions. We then combine this with the sparse approximation and demonstrate the capability to perform classification in high dimensions. We finally explore the issue of hyperparameter selection and develop a method for their private selection. This paper and associated libraries provide a robust toolkit for combining differential privacy and GPs in a practical manner.

READ FULL TEXT

page 18

page 21

research
06/02/2016

Differentially Private Gaussian Processes

A major challenge for machine learning is increasing the availability of...
research
06/02/2020

Designing Differentially Private Estimators in High Dimensions

We study differentially private mean estimation in a high-dimensional se...
research
06/01/2021

Gaussian Processes with Differential Privacy

Gaussian processes (GPs) are non-parametric Bayesian models that are wid...
research
06/15/2022

Towards Verifiable Differentially-Private Polling

Analyses that fulfill differential privacy provide plausible deniability...
research
02/22/2021

Differentially Private Supervised Manifold Learning with Applications like Private Image Retrieval

Differential Privacy offers strong guarantees such as immutable privacy ...
research
07/13/2022

Smooth Anonymity for Sparse Binary Matrices

When working with user data providing well-defined privacy guarantees is...
research
07/27/2022

Precision-based attacks and interval refining: how to break, then fix, differential privacy on finite computers

Despite being raised as a problem over ten years ago, the imprecision of...

Please sign up or login with your details

Forgot password? Click here to reset