Sharp Composition Bounds for Gaussian Differential Privacy via Edgeworth Expansion
Qinqing Zheng, Jinshuo Dong, Qi Long, Weijie J. Su
Abstract
Datasets containing sensitive information are often sequentially analyzed by many algorithms. This raises a fundamental question in differential privacy regarding how the overall privacy bound degrades under composition. To address this question, we introduce a family of analytical and sharp privacy bounds under composition using the Edgeworth expansion in the framework of the recently proposed f -differential privacy. In contrast to the existing composition theorems using the central limit theorem, our new privacy bounds under composition gain improved tightness by leveraging the refined approximation accuracy of the Edgeworth expansion. Our approach is easy to implement and computationally efficient for any number of compositions. The superiority of these new bounds is confirmed by an asymptotic error analysis and an application to quantifying the overall privacy guarantees of noisy stochastic gradient descent used in training private deep neural networks.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 1984404d-a09a-4cde-b91b-ed601c36ebdcCited by top-tier papers6
- Practical Differentially Private and Byzantine-resilient Federated LearningZihang Xiang, Tianhao Wang, Wanyu Lin, Di WangSIGMOD 2023 · 22 citations
- Unified Enhancement of Privacy Bounds for Mixture Mechanisms via f-Differential PrivacyChendi Wang, Buxin Su, Jiayuan Ye, Reza Shokri et al.NeurIPS 2023 · 22 citations
- Optimal privacy guarantees for a relaxed threat model: Addressing sub-optimal adversaries in differentially private machine learningGeorgios Kaissis, Alexander Ziller, Stefan Kolek, Anneliese Riess et al.NeurIPS 2023 · 7 citations
- Breaking the Communication-Privacy-Accuracy Tradeoff with f-Differential PrivacyRicheng Jin, Zhonggen Su, Caijun Zhong, Zhaoyang Zhang et al.NeurIPS 2023 · 5 citations
- Fundamental Limitations of Favorable Privacy–Utility Guarantees for DP-SGDMurat Bilgehan Ertan), Marten van Dijk)CCS 2026 · 3 citations
Builds on2
Related papers
- Tight on Budget?: Tight Bounds for r-Fold Approximate Differential PrivacySebastian Meiser, Esfandiar MohammadiCCS 2018 · 61 citations
- Convergent Differential Privacy Analysis for General Federated LearningYan Sun, Qixin Zhang, Li Shen, Dacheng TaoICLR 2026
- The Saddle-Point Method in Differential PrivacyWael Alghamdi, Juan Felipe Gómez, Shahab Asoodeh, Flávio P. Calmon et al.ICML 2023 · 16 citations
- Gradients Look Alike: Sensitivity is Often Overestimated in DP-SGDAnvith Thudi, Hengrui Jia, Casey Meehan, Ilia Shumailov et al.USENIX Security 2024 · 16 citations
- Shifted Interpolation for Differential PrivacyJinho Bok, Weijie J. Su, Jason M. AltschulerICML 2024 · 12 citations
