Synthesis of Probabilistic Privacy Enforcement
Martin Kucera, Petar Tsankov, Timon Gehr, Marco Guarnieri, Martin T. Vechev
Abstract
Existing probabilistic privacy enforcement approaches permit the execution of a program that processes sensitive data only if the information it leaks is within the bounds specified by a given policy. Thus, to extract any information, users must manually design a program that satisfies the policy. In this work, we present a novel synthesis approach that automatically transforms a program into one that complies with a given policy. Our approach consists of two ingredients. First, we phrase the problem of determining the amount of leaked information as Bayesian inference, which enables us to leverage existing probabilistic programming engines. Second, we present two synthesis procedures that add uncertainty to the program's outputs as a way of reducing the amount of leaked information: an optimal one based on SMT solving and a greedy one with quadratic running time. We implemented and evaluated our approach on 10 representative programs from multiple application domains. We show that our system can successfully synthesize a permissive enforcement mechanism for all examples.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext b5418ab9-3b11-43b3-921b-e2ec3cedde98Cited by top-tier papers2
- CSI NN: Reverse Engineering of Neural Network Architectures Through Electromagnetic Side ChannelLejla Batina, Shivam Bhasin, Dirmanto Jap, Stjepan PicekUSENIX Security 2019 · 334 citations
- ANOSY: approximated knowledge synthesis with refinement types for declassificationSankha Narayan Guria, Niki Vazou, Marco Guarnieri, James ParkerPLDI 2022 · 2 citations
Builds on1
Related papers
- M3: Semantic API MigrationsBruce Collie, Philip Ginsbach, Jackson Woodruff, Ajitha Rajan et al.ASE 2020 · 14 citations
- Piecewise Analysis of Probabilistic Programs via 𝑘-InductionTengshun Yang, Shenghua Feng, Hongfei Fu, Naijun Zhan et al.POPL 2026
- DPGen: Automated Program Synthesis for Differential PrivacyYuxin Wang, Zeyu Ding, Yingtai Xiao, Daniel Kifer et al.CCS 2021 · 10 citations
- Probabilistic Inference for Datalog with Correlated InputsJingbo Wang, Shashin Halalingaiah, Weiyi Chen, Chao Wang et al.OOPSLA 2025 · 2 citations
- PoS4MPC: Automated Security Policy Synthesis for Secure Multi-party ComputationYuxin Fan, Fu Song, Taolue Chen, Liangfeng Zhang et al.CAV 2022 · 4 citations
