On the Renyi Differential Privacy of the Shuffle Model

05/11/2021
by   Antonious M. Girgis, et al.
5

The central question studied in this paper is Renyi Differential Privacy (RDP) guarantees for general discrete local mechanisms in the shuffle privacy model. In the shuffle model, each of the n clients randomizes its response using a local differentially private (LDP) mechanism and the untrusted server only receives a random permutation (shuffle) of the client responses without association to each client. The principal result in this paper is the first non-trivial RDP guarantee for general discrete local randomization mechanisms in the shuffled privacy model, and we develop new analysis techniques for deriving our results which could be of independent interest. In applications, such an RDP guarantee is most useful when we use it for composing several private interactions. We numerically demonstrate that, for important regimes, with composition our bound yields an improvement in privacy guarantee by a factor of 8× over the state-of-the-art approximate Differential Privacy (DP) guarantee (with standard composition) for shuffled models. Moreover, combining with Poisson subsampling, our result leads to at least 10× improvement over subsampled approximate DP with standard composition.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
07/19/2021

Renyi Differential Privacy of the Subsampled Shuffle Model in Distributed Learning

We study privacy in a distributed learning framework, where clients coll...
research
07/18/2022

Concurrent Composition Theorems for Differential Privacy

We study the concurrent composition properties of interactive differenti...
research
05/06/2022

Privacy accounting εconomics: Improving differential privacy composition via a posteriori bounds

Differential privacy (DP) is a widely used notion for reasoning about pr...
research
01/06/2020

ARA : Aggregated RAPPOR and Analysis for Centralized Differential Privacy

Differential privacy(DP) has now become a standard in case of sensitive ...
research
05/31/2023

Concentrated Geo-Privacy

This paper proposes concentrated geo-privacy (CGP), a privacy notion tha...
research
01/31/2022

Aggregation and Transformation of Vector-Valued Messages in the Shuffle Model of Differential Privacy

Advances in communications, storage and computational technology allow s...
research
11/23/2022

Private Multi-Winner Voting for Machine Learning

Private multi-winner voting is the task of revealing k-hot binary vector...

Please sign up or login with your details

Forgot password? Click here to reset