USENIX Security2026Top-tier venue
The Adverse Effects of Omitting Records in Differential Privacy: How Sampling and Suppression Degrade the Privacy–Utility Tradeoff
Àlex Miranda-Pascual, Javier Parra-Arnau, Thorsten Strufe
Abstract
Sampling is renowned for its privacy amplification in differential privacy (DP), and is often assumed to improve the utility of a DP mechanism by allowing a noise reduction. In this paper, we further show that this last assumption is flawed: When measuring utility at equal privacy levels, sampling as preprocessing consistently yields penalties due to utility loss from omitting records over all canonical DP mechanisms—Laplace, Gaussian, exponential, and report noisy max— , as well as recent applications of sampling, such as clustering. Extending this analysis, we investigate suppression as a generalized method of choosing, or omitting, records. Developing a theoretical analysis of this technique, we derive privacy bounds for arbitrary suppression strategies under unbounded approximate DP. We find that our tested suppression strategy also fails to improve the privacy–utility tradeoff. Surprisingly, uniform sampling emerges as one of the best suppression methods—despite its still degrading effect. Our results call into question common preprocessing assumptions in DP practice.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 514a63dc-9692-4a2d-913f-877374b52d8aBuilds on5
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- Practical Differentially Private Hyperparameter Tuning with SubsamplingAntti Koskela, Tejas D. KulkarniNeurIPS 2023 · 32 citations
- Subsampling is not Magic: Why Large Batch Sizes Work for Differentially Private Stochastic OptimisationOssi Räisä, Joonas Jälkö, Antti HonkelaICML 2024 · 9 citations
- Calibrating Noise for Group Privacy in Subsampled MechanismsYangfan Jiang, Xinjian Luo, Yin Yang, Xiaokui XiaoVLDB 2025 · 6 citations
- Privacy Amplification by Sampling under User-level Differential PrivacyJuanru Fang, Ke YiSIGMOD 2024 · 4 citations
Related papers
- Meeting Utility Constraints in Differential Privacy: A Privacy-Boosting ApproachBo Jiang, Wanrong Zhang, Donghang Lu, Jian Du et al.S&P 2025
- Improving the Variance of Differentially Private Randomized Experiments through ClusteringAdel Javanmard, Vahab Mirrokni, Jean Pouget-AbadieICML 2025
- Budget Recycling Differential PrivacyBo Jiang, Jian Du, Sagar Sharma, Qiang YanS&P 2024 · 4 citations
- Geometry of Sensitivity: Twice Sampling and Hybrid Clipping in Differential Privacy with Optimal Gaussian Noise and Application to Deep LearningHanshen Xiao, Jun Wan, Srinivas DevadasCCS 2023 · 9 citations
- A General Framework for Per-record Differential PrivacyXinghe Chen, Dajun Sun, Quanqing Xu, Wei DongSIGMOD 2026
