AAA: an Adaptive Mechanism for Locally Differential Private Mean Estimation
Fei Wei, Ergute Bao, Xiaokui Xiao, Yin Yang, Bolin Ding
Abstract
Local differential privacy ( LDP ) is a strong privacy standard that has been adopted by popular software systems, including Chrome, iOS, MacOS, and Windows. The main idea is that each individual perturbs their own data locally, and only submits the resulting noisy version to a data aggregator. Although much effort has been devoted to computing various types of aggregates and building machine learning applications under LDP, research on fundamental perturbation mechanisms has not achieved significant improvement in recent years. Towards a more refined result utility, existing works in the literature mainly focus on improving the worst-case guarantee. However, this approach does not necessarily promise a better average performance given the fact that the data in practice obey a certain distribution, which is not known beforehand.
In this paper, we propose the advanced adaptive additive ( AAA ) mechanism, which is a distribution-aware approach that addresses the average utility and tackles the classical mean estimation problem. AAA is carried out in a two-step approach: first, as the global data distribution is not available beforehand, the data aggregator selects a random subset of individuals to compute a (noisy) quantized data descriptor; then, in the second step, the data aggregator collects data from the remaining individuals, which are perturbed in a distribution-aware fashion. The perturbation involved in the latter step is obtained by solving an optimization problem, which is formulated with the data descriptor obtained in the former step and the desired properties of task-determined utilities. We provide rigorous privacy proofs and utility analyses, as well as extensive experiments comparing AAA with state-of-the-art mechanisms. The evaluation results demonstrate that the AAA mechanism consistently outperforms existing solutions with a clear margin in terms of result utility, on a wide range of privacy constraints and real-world and synthetic datasets.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext dd8fb7cc-44f6-44ac-803b-2e807ee6c835Builds on11
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan et al.CCS 2016 · 7,620 citations
- Practical Secure Aggregation for Privacy-Preserving Machine LearningKallista A. Bonawitz, Vladimir Ivanov, Ben Kreuter, Antonio Marcedone et al.CCS 2017 · 3,936 citations
- Retiring Adult: New Datasets for Fair Machine LearningFrances Ding, Moritz Hardt, John Miller, Ludwig SchmidtNeurIPS 2021 · 671 citations
- Locally Differentially Private Protocols for Frequency EstimationTianhao Wang, Jeremiah Blocki, Ninghui Li, Somesh JhaUSENIX Security 2017 · 629 citations
- Heavy Hitter Estimation over Set-Valued Data with Local Differential PrivacyZhan Qin, Yin Yang, Ting Yu, Issa Khalil et al.CCS 2016 · 344 citations
Related papers
- Privacy for Free: Leveraging Local Differential Privacy Perturbed Data from Multiple ServicesRong Du, Qingqing Ye, Yue Fu, Haibo HuVLDB 2025 · 2 citations
- PrivRM: A Framework for Range Mean Estimation under Local Differential PrivacyLiantong Yu, Qingqing Ye, Rong DuSIGMOD 2025 · 3 citations
- Utility Analysis and Enhancement of LDP Mechanisms in High-Dimensional SpaceJiawei Duan, Qingqing Ye, Haibo HuICDE 2022 · 18 citations
- Differential Aggregation against General Colluding AttackersRong Du, Qingqing Ye, Yue Fu, Haibo Hu et al.ICDE 2023 · 11 citations
- CGM: An Enhanced Mechanism for Streaming Data Collectionwith Local Differential PrivacyErgute Bao, Yin Yang, Xiaokui Xiao, Bolin DingVLDB 2021 · 47 citations
