Renyi Differential Privacy of The Subsampled Shuffle Model In Distributed Learning
Antonious M. Girgis, Deepesh Data, Suhas N. Diggavi
Abstract
We study privacy in a distributed learning framework, where clients collaboratively build a learning model iteratively through interactions with a server from whom we need privacy. Motivated by stochastic optimization and the federated learning (FL) paradigm, we focus on the case where a small fraction of data samples are randomly sub-sampled in each round to participate in the learning process, which also enables privacy amplification. To obtain even stronger local privacy guarantees, we study this in the shuffle privacy model, where each client randomizes its response using a local differentially private (LDP) mechanism and the server only receives a random permutation (shuffle) of the clients' responses without their association to each client. The principal result of this paper is a privacy-optimization performance trade-off for discrete randomization mechanisms in this sub-sampled shuffle privacy model. This is enabled through a new theoretical technique to analyze the Renyi Differential Privacy (RDP) of the sub-sampled shuffle model. We numerically demonstrate that, for important regimes, with composition our bound yields significant improvement in privacy guarantee over the state-of-the-art approximate Differential Privacy (DP) guarantee (with strong composition) for sub-sampled shuffled models. We also demonstrate numerically significant improvement in privacy-learning performance operating point using real data sets.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 4450f941-140c-45ee-bb94-95b9fb4714e0Cited by top-tier papers6
- Privacy Amplification via Shuffling: Unified, Simplified, and TightenedShaowei Wang, Yun Peng, Jin Li, Zikai Wen et al.VLDB 2024 · 15 citations
- Privacy as a Resource in Differentially Private Federated LearningJinliang Yuan, Shangguang Wang, Shihe Wang, Yuanchun Li et al.INFOCOM 2023 · 15 citations
- DPBalance: Efficient and Fair Privacy Budget Scheduling for Federated Learning as a ServiceYu Liu, Zibo Wang, Yifei Zhu, Chen ChenINFOCOM 2024 · 7 citations
- Camel: Communication-Efficient and Maliciously Secure Federated Learning in the Shuffle Model of Differential PrivacyShuangqing Xu, Yifeng Zheng, Zhongyun HuaCCS 2024 · 5 citations
- Shuffling-Aware Optimization for Private Vector Mean EstimationShun Takagi, Seng Pei LiewICML 2026 · 2 citations
Builds on5
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- The Discrete Gaussian for Differential PrivacyClément L. Canonne, Gautam Kamath, Thomas SteinkeNeurIPS 2020 · 355 citations
- Tempered Sigmoid Activations for Deep Learning with Differential PrivacyNicolas Papernot, Abhradeep Thakurta, Shuang Song, Steve Chien et al.AAAI 2021 · 210 citations
- Hiding Among the Clones: A Simple and Nearly Optimal Analysis of Privacy Amplification by ShufflingVitaly Feldman, Audra McMillan, Kunal TalwarFOCS 2021 · 76 citations
- Private Summation in the Multi-Message Shuffle ModelBorja Balle, James Bell, Adrià Gascón, Kobbi NissimCCS 2020 · 52 citations
Related papers
- On the Rényi Differential Privacy of the Shuffle ModelAntonious M. Girgis, Deepesh Data, Suhas N. Diggavi, Ananda Theertha Suresh et al.CCS 2021 · 1 citation
- Privacy Amplification via Random Check-InsBorja Balle, Peter Kairouz, Brendan McMahan, Om Dipakbhai Thakkar et al.NeurIPS 2020 · 86 citations
- FLAME: Differentially Private Federated Learning in the Shuffle ModelRuixuan Liu, Yang Cao, Hong Chen, Ruoyang Guo et al.AAAI 2021 · 117 citations
- Personalization Improves Privacy-Accuracy Tradeoffs in Federated LearningAlberto Bietti, Chen-Yu Wei, Miroslav Dudík, John Langford et al.ICML 2022 · 67 citations
- Echo of Neighbors: Privacy Amplification for Personalized Private Federated Learning with Shuffle ModelYixuan Liu, Suyun Zhao, Li Xiong, Yuhan Liu et al.AAAI 2023 · 18 citations
