Differentially Private Runtime Monitoring
Bernd Finkbeiner, Frederik Scheerer
Abstract
Abstract Modern stream-based monitors collect detailed statistics of the runtime behavior of the system under observation. If the system runs in a privacy-sensitive context, this poses the risk of disclosing sensitive information. Differential privacy is the state-of-the-art approach for protecting sensitive information, however, integrating it into runtime monitoring is challenging: temporal operators can cause individual input values to influence multiple outputs over time, leading to repeated disclosure of private information. We propose an approach that automatically enforces differential privacy in stream-based monitoring specifications by analyzing temporal dependencies and injecting carefully calibrated noise into the specification. To preserve the utility of the outputs, we identify strategically chosen positions in the specification for noise injection and leverage tree-based mechanisms to mitigate the accuracy loss caused by noise injected into aggregation operators. We demonstrate the practicality and effectiveness of our approach in a case study on monitoring public transportation usage.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 5b55f2ca-fbe5-4569-ab39-27bd119fa45cBuilds on10
- PeGaSus: Data-Adaptive Differentially Private Stream ProcessingYan Chen, Ashwin Machanavajjhala, Michael Hay, Gerome MiklauCCS 2017 · 107 citations
- Continuous Release of Data Streams under both Centralized and Local Differential PrivacyTianhao Wang, Joann Qiongna Chen, Zhikun Zhang, Dong Su et al.CCS 2021 · 66 citations
- Private Continual Release of Real-Valued Data StreamsVictor Perrier, Hassan Jameel Asghar, Dali KaafarNDSS 2019 · 46 citations
- DPI: Ensuring Strict Differential Privacy for Infinite Data StreamingShuya Feng, Meisam Mohammady, Han Wang, Xiaochen Li et al.S&P 2024 · 17 citations
- Almost Tight Error Bounds on Differentially Private Continual CountingMonika Henzinger, Jalaj Upadhyay, Sarvagya UpadhyaySODA 2023 · 14 citations
Related papers
- CGM: An Enhanced Mechanism for Streaming Data Collectionwith Local Differential PrivacyErgute Bao, Yin Yang, Xiaokui Xiao, Bolin DingVLDB 2021 · 47 citations
- MTSP-LDP: A Framework for Multi-Task Streaming Data Publication under Local Differential PrivacyChang Liu, Junzhou ZhaoSIGMOD 2026
- Differentially-private software frequency profiling under linear constraintsHailong Zhang, Yu Hao, Sufian Latif, Raef Bassily et al.OOPSLA 2020 · 1 citation
- Real-Time Trajectory Synthesis with Local Differential PrivacyYujia Hu, Yuntao Du, Zhikun Zhang, Ziquan Fang et al.ICDE 2024 · 20 citations
- A Framework for Differential Privacy Against Timing AttacksZachary Ratliff, Salil P. VadhanCCS 2024 · 3 citations
