Shuffle Gaussian Mechanism for Differential Privacy

06/20/2022
by   Seng Pei Liew, et al.
0

We study Gaussian mechanism in the shuffle model of differential privacy (DP). Particularly, we characterize the mechanism's Rényi differential privacy (RDP), showing that it is of the form: ϵ(λ) ≤1/λ-1log(e^-λ/2σ^2/n^λ∑_k_1+…+k_n=λ; k_1,…,k_n≥ 0λk_1,…,k_ne^∑_i=1^nk_i^2/2σ^2) We further prove that the RDP is strictly upper-bounded by the Gaussian RDP without shuffling. The shuffle Gaussian RDP is advantageous in composing multiple DP mechanisms, where we demonstrate its improvement over the state-of-the-art approximate DP composition theorems in privacy guarantees of the shuffle model. Moreover, we extend our study to the subsampled shuffle mechanism and the recently proposed shuffled check-in mechanism, which are protocols geared towards distributed/federated learning. Finally, an empirical study of these mechanisms is given to demonstrate the efficacy of employing shuffle Gaussian mechanism under the distributed learning framework to guarantee rigorous user privacy.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/27/2019

Reviewing and Improving the Gaussian Mechanism for Differential Privacy

Differential privacy provides a rigorous framework to quantify data priv...
research
08/20/2022

The Saddle-Point Accountant for Differential Privacy

We introduce a new differential privacy (DP) accountant called the saddl...
research
09/22/2021

A unified interpretation of the Gaussian mechanism for differential privacy through the sensitivity index

The Gaussian mechanism (GM) represents a universally employed tool for a...
research
10/13/2021

Offset-Symmetric Gaussians for Differential Privacy

The Gaussian distribution is widely used in mechanism design for differe...
research
06/25/2022

Cactus Mechanisms: Optimal Differential Privacy Mechanisms in the Large-Composition Regime

Most differential privacy mechanisms are applied (i.e., composed) numero...
research
09/19/2023

A Neighbourhood-Aware Differential Privacy Mechanism for Static Word Embeddings

We propose a Neighbourhood-Aware Differential Privacy (NADP) mechanism c...
research
01/21/2019

Differential Privacy for Power Grid Obfuscation

The availability of high-fidelity energy networks brings significant val...

Please sign up or login with your details

Forgot password? Click here to reset