LDP-Slicing: Local Differential Privacy for Images via Randomized Bit-Plane Slicing
Yuanming Cao, Chengqi Li, Wenbo He
摘要
Local Differential Privacy (LDP) is the gold standard trust model for privacy-preserving machine learning by guaranteeing privacy at the data source. However, its application to image data has long been considered impractical due to the high dimensionality of pixel space. Canonical LDP mechanisms are designed for low-dimensional data, resulting in severe utility degradation when applied to high-dimensional pixel spaces. This paper demonstrates that this utility loss is not inherent to LDP, but from its application to an inappropriate data representation. We introduce LDP-Slicing, a lightweight, training-free framework that resolves this domain mismatch. Our key insight is to decompose pixel values into a sequence of binary bit-planes. This transformation allows us to apply the LDP mechanism directly to the bit-level representation. To further strengthen privacy and preserve utility, we integrate a perceptual obfuscation module that mitigates human-perceivable leakage and an optimization-based privacy budget allocation strategy. This pipeline satisfies rigorous pixel-level -LDP while producing images that retain high utility for downstream tasks. Extensive experiments on face recognition and image classification demonstrate that LDP-Slicing outperforms existing DP/LDP baselines under comparable privacy budgets, with negligible computational overhead.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了最后一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper16
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan 等CCS 2016 · 被引用 7,620 次
- InstaHide: Instance-hiding Schemes for Private Distributed LearningYangsibo Huang, Zhao Song, Kai Li, Sanjeev AroraICML 2020 · 被引用 178 次
- Privacy-Preserving Face Recognition in the Frequency DomainYinggui Wang, Jian Liu, Man Luo, Le Yang 等AAAI 2022 · 被引用 62 次
- Is Private Learning Possible with Instance Encoding?Nicholas Carlini, Samuel Deng, Sanjam Garg, Somesh Jha 等S&P 2021 · 被引用 45 次
- PRO-Face: A Generic Framework for Privacy-preserving Recognizable Obfuscation of Face ImagesLin Yuan, Linguo Liu, Xiao Pu, Zhao Li 等ACM MM 2022 · 被引用 38 次
相关 Paper
- You Can Use But Cannot Recognize: Preserving Visual Privacy in Deep Neural NetworksQiushi Li, Yan Zhang, Ju Ren, Qi Li 等NDSS 2024
- Learning to Generate Image Embeddings with User-Level Differential PrivacyZheng Xu, Maxwell D. Collins, Yuxiao Wang, Liviu Panait 等CVPR 2023
- Perceptual Indistinguishability-Net (PI-Net): Facial Image Obfuscation With Manipulable SemanticsJia-Wei Chen, Li-Ju Chen, Chia-Mu Yu, Chun-Shien LuCVPR 2021
- Task-aware Privacy Preservation for Multi-dimensional DataJiangnan Cheng, Ao Tang, Sandeep ChinchaliICML 2022 · 被引用 8 次
- Protecting Label Distribution in Cross-Silo Federated LearningYangfan Jiang, Xinjian Luo, Yuncheng Wu, Xiaokui Xiao 等S&P 2024 · 被引用 9 次
