Provable Membership Inference Privacy

11/12/2022
by   Zachary Izzo, et al.
0

In applications involving sensitive data, such as finance and healthcare, the necessity for preserving data privacy can be a significant barrier to machine learning model development. Differential privacy (DP) has emerged as one canonical standard for provable privacy. However, DP's strong theoretical guarantees often come at the cost of a large drop in its utility for machine learning, and DP guarantees themselves can be difficult to interpret. In this work, we propose a novel privacy notion, membership inference privacy (MIP), to address these challenges. We give a precise characterization of the relationship between MIP and DP, and show that MIP can be achieved using less amount of randomness compared to the amount required for guaranteeing DP, leading to a smaller drop in utility. MIP guarantees are also easily interpretable in terms of the success rate of membership inference attacks. Our theoretical results also give rise to a simple algorithm for guaranteeing MIP which can be used as a wrapper around any algorithm with a continuous output, including parametric model training.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/24/2022

Bounding Membership Inference

Differential Privacy (DP) is the de facto standard for reasoning about t...
research
07/06/2021

DTGAN: Differential Private Training for Tabular GANs

Tabular generative adversarial networks (TGAN) have recently emerged to ...
research
06/30/2022

Fairness and Cost Constrained Privacy-Aware Record Linkage

Record linkage algorithms match and link records from different database...
research
05/31/2023

A Note On Interpreting Canary Exposure

Canary exposure, introduced in Carlini et al. is frequently used to empi...
research
10/23/2020

Differentially Private Learning Does Not Bound Membership Inference

Training machine learning models on privacy-sensitive data has become a ...
research
06/05/2023

Discriminative Adversarial Privacy: Balancing Accuracy and Membership Privacy in Neural Networks

The remarkable proliferation of deep learning across various industries ...
research
07/06/2023

Quantum Solutions to the Privacy vs. Utility Tradeoff

In this work, we propose a novel architecture (and several variants ther...

Please sign up or login with your details

Forgot password? Click here to reset