Collecting and Analyzing Data Jointly from Multiple Services under Local Differential Privacy
Min Xu, Bolin Ding, Tianhao Wang, Jingren Zhou
Abstract
Users' sensitive data can be collected and analyzed under local differential privacy (LDP) without the need to trust the data collector. Most previous work on LDP can be applied when each user's data is generated and collected from a single service or data source. In a more general and practical setting, sensitive data of each user needs to be collected under LDP from multiple services independently and can be joined on, e.g., user id. In this paper, we address two challenges in this setting: first, how to prevent the privacy guarantee from being weakened during the joint data collection; second, how to analyze perturbed data jointly from different services. We introduce the notation of user-level LDP to formalize and protect the privacy of a user when her joined data tuples are released. We propose mechanisms and estimation methods to process multidimensional analytical queries, each with sensitive attributes (in its aggregation and predicates) collected and perturbed independently in multiple services. We also introduce an online utility optimization technique for multi-dimensional range predicates, based on consistency in domain hierarchy. We conduct extensive evaluations to verify our theoretical results using synthetic and real datasets.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 57c60799-12b5-4b9c-9c50-3bf9d700cce2Cited by top-tier papers9
- Continuous Release of Data Streams under both Centralized and Local Differential PrivacyTianhao Wang, Joann Qiongna Chen, Zhikun Zhang, Dong Su et al.CCS 2021 · 66 citations
- CGM: An Enhanced Mechanism for Streaming Data Collectionwith Local Differential PrivacyErgute Bao, Yin Yang, Xiaokui Xiao, Bolin DingVLDB 2021 · 47 citations
- Privacy Amplification via Shuffling: Unified, Simplified, and TightenedShaowei Wang, Yun Peng, Jin Li, Zikai Wen et al.VLDB 2024 · 15 citations
- AAA: an Adaptive Mechanism for Locally Differential Private Mean EstimationFei Wei, Ergute Bao, Xiaokui Xiao, Yin Yang et al.VLDB 2024 · 7 citations
- Sketches-Based Join Size Estimation Under Local Differential PrivacyMeifan Zhang, Xin Liu, Lihua YinICDE 2024 · 4 citations
Builds on6
- Locally Differentially Private Protocols for Frequency EstimationTianhao Wang, Jeremiah Blocki, Ninghui Li, Somesh JhaUSENIX Security 2017 · 629 citations
- Heavy Hitter Estimation over Set-Valued Data with Local Differential PrivacyZhan Qin, Yin Yang, Ting Yu, Issa Khalil et al.CCS 2016 · 344 citations
- Locally Differentially Private Frequent Itemset MiningTianhao Wang, Ninghui Li, Somesh JhaS&P 2018 · 196 citations
- Detecting Violations of Differential PrivacyZeyu Ding, Yuxin Wang, Guanhong Wang, Danfeng Zhang et al.CCS 2018 · 156 citations
- CALM: Consistent Adaptive Local Marginal for Marginal Release under Local Differential PrivacyZhikun Zhang, Tianhao Wang, Ninghui Li, Shibo He et al.CCS 2018 · 130 citations
Related papers
- Privacy for Free: Leveraging Local Differential Privacy Perturbed Data from Multiple ServicesRong Du, Qingqing Ye, Yue Fu, Haibo HuVLDB 2025 · 2 citations
- Enhancing Local Differential Privacy Accuracy by Exploiting Inherent UncertaintyPeng Tang, Xiya Shao, Rui Chen, Ning Wang et al.SIGMOD 2026
- Multi-Class Item Mining Under Local Differential PrivacyYulian Mao, Qingqing Ye, Rong Du, Qi Wang et al.ICDE 2025 · 1 citation
- Fine-Grained Manipulation Attacks to Local Differential Privacy Protocols for Range QueryXinyu Li, Wenda Chen, Xuebin RenICDE 2026
- Data Poisoning Attacks to Local Differential Privacy ProtocolsXiaoyu Cao, Jinyuan Jia, Neil Zhenqiang GongUSENIX Security 2021 · 100 citations
