RDP-GAN: A Rényi-Differential Privacy based Generative Adversarial Network

07/04/2020
by   Chuan Ma, et al.
13

Generative adversarial network (GAN) has attracted increasing attention recently owing to its impressive ability to generate realistic samples with high privacy protection. Without directly interactive with training examples, the generative model can be fully used to estimate the underlying distribution of an original dataset while the discriminative model can examine the quality of the generated samples by comparing the label values with the training examples. However, when GANs are applied on sensitive or private training examples, such as medical or financial records, it is still probable to divulge individuals' sensitive and private information. To mitigate this information leakage and construct a private GAN, in this work we propose a Rényi-differentially private-GAN (RDP-GAN), which achieves differential privacy (DP) in a GAN by carefully adding random noises on the value of the loss function during training. Moreover, we derive the analytical results of the total privacy loss under the subsampling method and cumulated iterations, which show its effectiveness on the privacy budget allocation. In addition, in order to mitigate the negative impact brought by the injecting noise, we enhance the proposed algorithm by adding an adaptive noise tuning step, which will change the volume of added noise according to the testing accuracy. Through extensive experimental results, we verify that the proposed algorithm can achieve a better privacy level while producing high-quality samples compared with a benchmark DP-GAN scheme based on noise perturbation on training gradients.

READ FULL TEXT

page 1

page 9

page 10

research
02/19/2018

Differentially Private Generative Adversarial Network

Generative Adversarial Network (GAN) and its variants have recently attr...
research
10/04/2019

PPGAN: Privacy-preserving Generative Adversarial Network

Generative Adversarial Network (GAN) and its variants serve as a perfect...
research
01/10/2022

Differentially Private Generative Adversarial Networks with Model Inversion

To protect sensitive data in training a Generative Adversarial Network (...
research
04/02/2021

PATE-AAE: Incorporating Adversarial Autoencoder into Private Aggregation of Teacher Ensembles for Spoken Command Classification

We propose using an adversarial autoencoder (AAE) to replace generative ...
research
09/29/2020

imdpGAN: Generating Private and Specific Data with Generative Adversarial Networks

Generative Adversarial Network (GAN) and its variants have shown promisi...
research
01/23/2017

Loss-Sensitive Generative Adversarial Networks on Lipschitz Densities

*New Theory Result* We analyze the generalizability of the LS-GAN, showi...
research
12/01/2022

Differentially Private Learning with Per-Sample Adaptive Clipping

Privacy in AI remains a topic that draws attention from researchers and ...

Please sign up or login with your details

Forgot password? Click here to reset