Privacy Amplification by Mixing and Diffusion Mechanisms

05/29/2019
by   Borja Balle, et al.
0

A fundamental result in differential privacy states that the privacy guarantees of a mechanism are preserved by any post-processing of its output. In this paper we investigate under what conditions stochastic post-processing can amplify the privacy of a mechanism. By interpreting post-processing as the application of a Markov operator, we first give a series of amplification results in terms of uniform mixing properties of the Markov process defined by said operator. Next we provide amplification bounds in terms of coupling arguments which can be applied in cases where uniform mixing is not available. Finally, we introduce a new family of mechanisms based on diffusion processes which are closed under post-processing, and analyze their privacy via a novel heat flow argument. As applications, we show that the rate of "privacy amplification by iteration" in Noisy SGD introduced by Feldman et al. [FOCS'18] admits an exponential improvement in the strongly convex case, and propose a simple mechanism based on the Ornstein-Uhlenbeck process which has better mean squared error than the Gaussian mechanism when releasing a bounded function of the data.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/09/2020

Bias and Variance of Post-processing in Differential Privacy

Post-processing immunity is a fundamental property of differential priva...
research
08/24/2020

Congenial Differential Privacy under Mandated Disclosure

Differentially private data releases are often required to satisfy a set...
research
03/07/2022

Differential Privacy Amplification in Quantum and Quantum-inspired Algorithms

Differential privacy provides a theoretical framework for processing a d...
research
10/29/2019

Noiseless Privacy

In this paper, we define noiseless privacy, as a non-stochastic rival to...
research
10/17/2022

Identification, Amplification and Measurement: A bridge to Gaussian Differential Privacy

Gaussian differential privacy (GDP) is a single-parameter family of priv...
research
05/24/2020

Continuous Release of Data Streams under both Centralized and Local Differential Privacy

In this paper, we study the problem of publishing a stream of real-value...
research
12/12/2021

Supercloseness of the NIPG method for a singularly perturbed convection diffusion problem on Shishkin mesh

In this paper, we analyze the supercloseness result of nonsymmetric inte...

Please sign up or login with your details

Forgot password? Click here to reset