Differentially Private Model Personalization
Prateek Jain, John Rush, Adam D. Smith, Shuang Song, Abhradeep Guha Thakurta
Abstract
We study personalization of supervised learning with user-level differential privacy. Consider a setting with many users, each of whom has a training data set drawn from their own distribution P i . Assuming some shared structure among the problems P i , can users collectively learn the shared structure-and solve their tasks better than they could individually-while preserving the privacy of their data? We formulate this question using joint, user-level differential privacy-that is, we control what is leaked about each user's entire data set. We provide algorithms that exploit popular non-private approaches in this domain like the Almost-No-Inner-Loop (ANIL) method, and give strong user-level privacy guarantees for our general approach. When the problems P i are linear regression problems with each user's regression vector lying in a common, unknown lowdimensional subspace, we show that our efficient algorithms satisfy nearly optimal estimation error guarantees. We also establish a general, information-theoretic upper bound via an exponential mechanism-based algorithm.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext a35fb589-f3b5-45aa-8bdb-6da751ae3311Cited by top-tier papers13
- Personalization Improves Privacy-Accuracy Tradeoffs in Federated LearningAlberto Bietti, Chen-Yu Wei, Miroslav Dudík, John Langford et al.ICML 2022 · 67 citations
- Subspace Recovery from Heterogeneous Data with Non-isotropic NoiseJohn C. Duchi, Vitaly Feldman, Lunjia Hu, Kunal TalwarNeurIPS 2022 · 16 citations
- Task-level Differentially Private Meta LearningXinyu Zhou, Raef BassilyNeurIPS 2022 · 11 citations
- Share Your Representation Only: Guaranteed Improvement of the Privacy-Utility Tradeoff in Federated LearningZebang Shen, Jiayuan Ye, Anmin Kang, Hamed Hassani et al.ICLR 2023 · 6 citations
- Homomorphic Matrix CompletionXiao-Yang Liu, Zechu (Steven) Li, Xiaodong WangNeurIPS 2022 · 4 citations
Builds on9
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- Extracting Training Data from Large Language ModelsNicholas Carlini, Florian Tramèr, Eric Wallace, Matthew Jagielski et al.USENIX Security 2021 · 2,866 citations
- The Secret Sharer: Evaluating and Testing Unintended Memorization in Neural NetworksNicholas Carlini, Chang Liu, Úlfar Erlingsson, Jernej Kos et al.USENIX Security 2019 · 1,386 citations
- Exploiting Shared Representations for Personalized Federated LearningLiam Collins, Hamed Hassani, Aryan Mokhtari, Sanjay ShakkottaiICML 2021 · 1,081 citations
- Provable Meta-Learning of Linear RepresentationsNilesh Tripuraneni, Chi Jin, Michael I. JordanICML 2021 · 218 citations
Related papers
- Private Model Personalization RevisitedConor Snedeker, Xinyu Zhou, Raef BassilyICML 2025
- Learning with User-Level PrivacyDaniel Levy, Ziteng Sun, Kareem Amin, Satyen Kale et al.NeurIPS 2021 · 113 citations
- User-Level Differential Privacy With Few Examples Per UserBadih Ghazi, Pritish Kamath, Ravi Kumar, Pasin Manurangsi et al.NeurIPS 2023 · 19 citations
- Collecting and Analyzing Data Jointly from Multiple Services under Local Differential PrivacyMin Xu, Bolin Ding, Tianhao Wang, Jingren ZhouVLDB 2020 · 22 citations
- Tight and Robust Private Mean Estimation with Few UsersShyam Narayanan, Vahab S. Mirrokni, Hossein EsfandiariICML 2022 · 34 citations
