Rethinking Privacy Preserving Deep Learning: How to Evaluate and Thwart Privacy Attacks

06/20/2020
by   Lixin Fan, et al.
19

This paper investigates capabilities of Privacy-Preserving Deep Learning (PPDL) mechanisms against various forms of privacy attacks. First, we propose to quantitatively measure the trade-off between model accuracy and privacy losses incurred by reconstruction, tracing and membership attacks. Second, we formulate reconstruction attacks as solving a noisy system of linear equations, and prove that attacks are guaranteed to be defeated if condition (2) is unfulfilled. Third, based on theoretical analysis, a novel Secret Polarization Network (SPN) is proposed to thwart privacy attacks, which pose serious challenges to existing PPDL methods. Extensive experiments showed that model accuracies are improved on average by 5-20 in regimes where data privacy are satisfactorily protected.

READ FULL TEXT

page 5

page 20

page 23

page 26

page 29

research
05/10/2021

Attacks on a Privacy-Preserving Publish-Subscribe System and a Ride-Hailing Service

A privacy-preserving Context-Aware Publish-Subscribe System (CA-PSS) ena...
research
05/08/2019

Reconstruction of Privacy-Sensitive Data from Protected Templates

In this paper, we address the problem of data reconstruction from privac...
research
08/10/2021

Privacy-Preserving Machine Learning: Methods, Challenges and Directions

Machine learning (ML) is increasingly being adopted in a wide variety of...
research
11/25/2020

Privacy-preserving Collaborative Learning with Automatic Transformation Search

Collaborative learning has gained great popularity due to its benefit of...
research
04/19/2023

Secure Split Learning against Property Inference, Data Reconstruction, and Feature Space Hijacking Attacks

Split learning of deep neural networks (SplitNN) has provided a promisin...
research
10/21/2022

Privacy-Preserved Neural Graph Similarity Learning

To develop effective and efficient graph similarity learning (GSL) model...
research
02/18/2023

Digital Privacy Under Attack: Challenges and Enablers

Users have renewed interest in protecting their private data in the digi...

Please sign up or login with your details

Forgot password? Click here to reset