Black-Box Differential Privacy for Interactive ML
Haim Kaplan, Yishay Mansour, Shay Moran, Kobbi Nissim, Uri Stemmer
Abstract
In this work we revisit an interactive variant of joint differential privacy, recently introduced by Naor et al. [2023], and generalize it towards handling online processes in which existing privacy definitions seem too restrictive. We study basic properties of this definition and demonstrate that it satisfies (suitable variants) of group privacy, composition, and post processing. In order to demonstrate the advantages of this privacy definition compared to traditional forms of differential privacy, we consider the basic setting of online classification. We show that any (possibly non-private) learning rule can be effectively transformed to a private learning rule with only a polynomial overhead in the mistake bound. This demonstrates a stark difference with traditional forms of differential privacy, such as the one studied by Golowich and Livni [2021] , where only a double exponential overhead in the mistake bound is known (via an information theoretic upper bound).
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 9c81d52f-a3ab-4a78-8caa-20c030f50f14Cited by top-tier papers3
- Private Learning of Littlestone Classes, RevisitedXin LyuSTOC 2026 · 4 citations
- Private Online Learning against an Adaptive Adversary: Realizable and Agnostic SettingsBo Li, Wei Wang, Peng YeNeurIPS 2025 · 2 citations
- Barriers to Counterfactual Credit Attribution for Autoregressive ModelsAloni Cohen, Chenhao ZhangICML 2026 · 1 citation
Builds on3
- The Price of Differential Privacy under Continual ObservationPalak Jain, Sofya Raskhodnikova, Satchit Sivakumar, Adam D. SmithICML 2023 · 63 citations
- Littlestone Classes are Privately Online LearnableNoah Golowich, Roi LivniNeurIPS 2021 · 15 citations
- Private Everlasting PredictionMoni Naor, Kobbi Nissim, Uri Stemmer, Chao YanNeurIPS 2023 · 6 citations
Related papers
- The Limits of Differential Privacy in Online LearningBo Li, Wei Wang, Peng YeNeurIPS 2024 · 9 citations
- A Computational Separation between Private Learning and Online LearningMark BunNeurIPS 2020 · 11 citations
- Concurrent Composition Theorems for Differential PrivacySalil P. Vadhan, Wanrong ZhangSTOC 2023 · 11 citations
- Composition Theorems for Interactive Differential PrivacyXin LyuNeurIPS 2022 · 29 citations
- On the Equivalence between Online and Private Learnability beyond Binary ClassificationYoung Hun Jung, Baekjin Kim, Ambuj TewariNeurIPS 2020 · 18 citations
