Knowledge Gain as Privacy Loss in Local Differential Privacy Accounting

07/16/2023
by   Mingen Pan, et al.
0

This paper establishes the equivalence between Local Differential Privacy (LDP) and a global limit on learning any knowledge about an object. However, an output from an LDP query is not necessarily required to provide exact amount of knowledge equal to the upper bound of the learning limit. Since the amount of knowledge gain should be proportional to the incurred privacy loss, the traditional approach of using DP guarantee to measure privacy loss can occasionally overestimate the actual privacy loss. This is especially problematic in privacy accounting in LDP, where privacy loss is computed by summing the DP guarantees (basic composition). To address this issue, this paper introduces the concept of realized privacy loss, which measures the actual knowledge gained by the analyst after a query, as a more accurate measure of privacy loss. The realized privacy loss is then integrated into the privacy accounting of fully adaptive composition, where an adversary adaptively selects queries based on previous results. The Bayesian Privacy Filter is implemented to ensure that the realized privacy loss of the composed queries eventually reaches the DP guarantee, allowing the full utilization of the privacy budget assigned to a queried object. Furthermore, this paper introduces the Bayesian Privacy Odometer to measure realized privacy loss in fully adaptive composition. Experimental evaluations are conducted to assess the efficiency of the Bayesian Privacy Filter, demonstrating that the corresponding composition can accept arbitrarily more queries than the basic composition when the composed queries have sufficiently small DP guarantees. Conversely, this paper concludes, through experiments, that when estimating the histogram of a group of objects with the same privacy budget, an analyst should prefer using a single randomized response over a composition managed by the Bayesian Privacy Filter.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/12/2023

Concurrent Composition for Interactive Differential Privacy with Adaptive Privacy-Loss Parameters

In this paper, we study the concurrent composition of interactive mechan...
research
08/20/2022

The Saddle-Point Accountant for Differential Privacy

We introduce a new differential privacy (DP) accountant called the saddl...
research
06/16/2021

Optimal Accounting of Differential Privacy via Characteristic Function

Characterizing the privacy degradation over compositions, i.e., privacy ...
research
03/10/2022

Fully Adaptive Composition in Differential Privacy

Composition is a key feature of differential privacy. Well-known advance...
research
08/25/2020

Individual Privacy Accounting via a Renyi Filter

We consider a sequential setting in which a single dataset of individual...
research
02/22/2022

Differentially Private Estimation of Heterogeneous Causal Effects

Estimating heterogeneous treatment effects in domains such as healthcare...
research
09/27/2022

On the Choice of Databases in Differential Privacy Composition

Differential privacy (DP) is a widely applied paradigm for releasing dat...

Please sign up or login with your details

Forgot password? Click here to reset