Private Multi-Winner Voting for Machine Learning

11/23/2022
by   Adam Dziedzic, et al.
1

Private multi-winner voting is the task of revealing k-hot binary vectors satisfying a bounded differential privacy (DP) guarantee. This task has been understudied in machine learning literature despite its prevalence in many domains such as healthcare. We propose three new DP multi-winner mechanisms: Binary, τ, and Powerset voting. Binary voting operates independently per label through composition. τ voting bounds votes optimally in their ℓ_2 norm for tight data-independent guarantees. Powerset voting operates over the entire binary vector by viewing the possible outcomes as a power set. Our theoretical and empirical analysis shows that Binary voting can be a competitive mechanism on many tasks unless there are strong correlations between labels, in which case Powerset voting outperforms it. We use our mechanisms to enable privacy-preserving multi-label learning in the central setting by extending the canonical single-label technique: PATE. We find that our techniques outperform current state-of-the-art approaches on large, real-world healthcare data and standard multi-label benchmarks. We further enable multi-label confidential and private collaborative (CaPC) learning and show that model performance can be significantly improved in the multi-site setting.

READ FULL TEXT
research
05/15/2018

How Private Is Your Voting? A Framework for Comparing the Privacy of Voting Mechanisms

Voting privacy has received a lot of attention across several research c...
research
06/07/2021

Antipodes of Label Differential Privacy: PATE and ALIBI

We consider the privacy-preserving machine learning (ML) setting where t...
research
05/11/2021

On the Renyi Differential Privacy of the Shuffle Model

The central question studied in this paper is Renyi Differential Privacy...
research
07/14/2023

Trading Off Voting Axioms for Privacy

In this paper, we investigate tradeoffs among differential privacy (DP) ...
research
05/31/2022

A Reduction to Binary Approach for Debiasing Multiclass Datasets

We propose a novel reduction-to-binary (R2B) approach that enforces demo...
research
10/05/2021

Label differential privacy via clustering

We present new mechanisms for label differential privacy, a relaxation o...
research
07/28/2021

XFL: eXtreme Function Labeling

Reverse engineers would benefit from identifiers like function names, bu...

Please sign up or login with your details

Forgot password? Click here to reset