Lune

USENIX Security2026顶会

CTA: Clip-then-Aggregate, a Differentially Private Learning Algorithm for Graph Data

Jianxin Wei

出版方
2026年份

摘要

Graph learning has become a fundamental tool for modeling relational data in applications such as social networks and recommender systems, yet it often involves individuals' private features or interactions. Differential privacy (DP) provides a rigorous framework for protecting sensitive data, but its application to graph learning is challenging due to complex inter-node dependencies induced by message aggregation. Despite this broad influence, the per-neighbor impact of a node is typically small. Nevertheless, most existing private graph learning methods are built upon the DP-SGD framework, whose reliance on global gradient clipping prevents the precise capture of these influences and overestimates the true gradient sensitivity.

To address these challenges, we propose CTA, a differentially private graph learning algorithm that enables end-to-end training while perturbing only model gradients with tightly characterized sensitivity. CTA adopts a clip-then-aggregate design in both the forward and backward passes of model training. In the forward pass, CTA clips node embeddings before aggregation. Crucially, in the backward pass, instead of clipping each gradient as a whole, CTA separately clips and bounds two gradient components and then aggregates them to form the final model gradients. This design allows CTA to capture fine-grained gradient variations induced by graph aggregation and derive tighter gradient sensitivity bounds. Extensive experiments on real-world datasets demonstrate that CTA consistently outperforms existing private graph learning methods across a wide range of settings.

问问这篇 Paper

智能体会读完全文。

Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。

可以从这些问题问起

智能体调用

Luneget_paper_fulltext

在 Lune 里问

免费开始,无需绑卡

它引用的顶会 Paper14

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖