MEPS: Privacy-preserving Edge-cloud Video Foundation Model Inference with Privacy Protectability
Siping Shi, Rui Lu, Dan Wang, Bihai Zhang
摘要
Edge-cloud video understanding systems, which leverage video foundation models on the cloud for inference to serve downstream tasks, present significant privacy risks due to the exposure of video data containing sensitive information (e.g., human faces) from edge devices to the cloud. To mitigate privacy leakage, existing methods often involve perturbing sensitive information, which can unfortunately degrade the accuracy of video understanding tasks, especially when that sensitive information is relevant to the tasks. Alternatively, encryption-based private inference offers strong privacy guarantees without accuracy loss but imposes a substantial computational burden on resource-constrained edge devices. This paper addresses these privacy challenges by observing that while many video frames contain sensitive information, only a few contain sensitive information that is truly essential for the video understanding tasks. Thus, it is unnecessary and inefficient to apply universal, computation-intensive encryption for all video frames on the edge.
We propose MEPS, a novel privacy-preserving video understanding system designed to intelligently manage the trade-off between privacy, accuracy, and efficiency. MEPS selectively encrypts video frames only when the sensitive information they contain is crucial for the downstream tasks, thus ensuring robust privacy for essential data. For the majority of frames where sensitive information is non-essential to the task, MEPS applies lightweight perturbation schemes. This approach effectively protects privacy by obscuring sensitive details without negatively impacting task accuracy or overburdening edge devices. A core component of MEPS is its ability to discern whether sensitive information within a frame is essential for video understanding. To facilitate this, we propose privacy protectability, a novel metric rooted in information theory that evaluates the degree of overlap between sensitive information and the information required for video understanding tasks. We implement a prototype of MEPS and evaluate its performance with three public real-world video trace datasets. Theoretical analysis proves MEPS has rigorous privacy guarantee. Experimental results demonstrate that MEPS can maintain the satisfied privacy protection and task accuracy, while significantly improve system efficiency, achieving a 48.8× speedup.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了最后一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper33
- QLoRA: Efficient Finetuning of Quantized LLMsTim Dettmers, Artidoro Pagnoni, Ari Holtzman, Luke ZettlemoyerNeurIPS 2023 · 被引用 5,863 次
- LLM-Pruner: On the Structural Pruning of Large Language ModelsXinyin Ma, Gongfan Fang, Xinchao WangNeurIPS 2023 · 被引用 994 次
- Debiased Contrastive LearningChing-Yao Chuang, Joshua Robinson, Yen-Chen Lin, Antonio Torralba 等NeurIPS 2020 · 被引用 761 次
- Evaluating Differentially Private Machine Learning in PracticeBargav Jayaraman, David EvansUSENIX Security 2019 · 被引用 586 次
- Understanding Global Feature Contributions With Additive Importance MeasuresIan Covert, Scott M. Lundberg, Su-In LeeNeurIPS 2020 · 被引用 476 次
相关 Paper
- Privacy-Preserving Video Classification with Convolutional Neural NetworksSikha Pentyala, Rafael Dowsley, Martine De CockICML 2021 · 被引用 25 次
- Privacy Beyond Pixels: Latent Anonymization for Privacy-Preserving Video UnderstandingJoseph Fioresi, Ishan Rajendrakumar Dave, Mubarak ShahICLR 2026 · 被引用 1 次
- Enc2: Privacy-Preserving Inference for Tiny IoTs via Encoding and EncryptionHao-Jen Chien, Hossein Khalili, Amin Hass, Nader SehatbakhshMobiCom 2023 · 被引用 8 次
- When Deep Learning Meets Steganography: Protecting Inference Privacy in the DarkQin Liu, Jiamin Yang, Hongbo Jiang, Jie Wu 等INFOCOM 2022 · 被引用 8 次
- FxHENN: FPGA-based acceleration framework for homomorphic encrypted CNN inferenceYilan Zhu, Xinyao Wang, Lei Ju, Shanqing GuoHPCA 2023 · 被引用 39 次
