Differentially Private Empirical Risk Minimization under the Fairness Lens
Cuong Tran, My H. Dinh, Ferdinando Fioretto
摘要
Differential Privacy (DP) [13] is an important privacy-enhancing technology for private machine learning systems. It allows to measure and bound the risk associated with an individual participation in a computation. However, it was recently observed that DP learning systems may exacerbate bias and unfairness for different groups of individuals [3, 27, 22] . This paper builds on these important observations and sheds light on the causes of the disparate impacts arising in the problem of differentially private empirical risk minimization. It focuses on the accuracy disparity arising among groups of individuals in two well-studied DP learning methods: output perturbation [10] and differentially private stochastic gradient descent [2]. The paper analyzes which data and model properties are responsible for the disproportionate impacts, why these aspects are affecting different groups disproportionately, and proposes guidelines to mitigate these effects. The proposed approach is evaluated on several datasets and settings. In summary, the paper makes the following contributions: 1. It develops a notion of fairness under private training that relies on the concept of excessive risk.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper14
- Pruning has a disparate impact on model accuracyCuong Tran, Ferdinando Fioretto, Jung-Eun Kim, Rakshit NaiduNeurIPS 2022 · 被引用 64 次
- Differential Privacy has Bounded Impact on Fairness in ClassificationPaul Mangold, Michaël Perrot, Aurélien Bellet, Marc TommasiICML 2023 · 被引用 29 次
- Participatory Personalization in ClassificationHailey Joren, Chirag Nagpal, Katherine A. Heller, Berk UstunNeurIPS 2023 · 被引用 7 次
- Disparate Impact in Differential Privacy from Gradient MisalignmentMaria S. Esipova, Atiyeh Ashari Ghomi, Yaqiao Luo, Jesse C. CresswellICLR 2023 · 被引用 7 次
- SoK: Unintended Interactions among Machine Learning Defenses and RisksVasisht Duddu, Sebastian Szyller, N. AsokanS&P 2024 · 被引用 6 次
它引用的顶会 Paper4
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan 等CCS 2016 · 被引用 7,620 次
- Differentially Private and Fair Deep Learning: A Lagrangian Dual ApproachCuong Tran, Ferdinando Fioretto, Pascal Van HentenryckAAAI 2021 · 被引用 90 次
- Fair Learning with Private Demographic DataHussein Mozannar, Mesrob I. Ohannessian, Nathan SrebroICML 2020 · 被引用 85 次
- Improving Fairness and Privacy in Selection ProblemsMohammad Mahdi Khalili, Xueru Zhang, Mahed Abroshan, Somayeh SojoudiAAAI 2021 · 被引用 32 次
相关 Paper
- Removing Disparate Impact on Model Accuracy in Differentially Private Stochastic Gradient DescentDepeng Xu, Wei Du, Xintao WuKDD 2021 · 被引用 32 次
- Sharpness-Aware Initialization: Improving Differentially Private Machine Learning from First PrinciplesZihao Wang, Rui Zhu, Dongruo Zhou, Zhikun Zhang 等USENIX Security 2025
- Privately Publishable Per-instance PrivacyRachel Redberg, Yu-Xiang WangNeurIPS 2021 · 被引用 21 次
- INO-SGD: Addressing Utility Imbalance under Individualized Differential PrivacyXiao Tian, Jue Fan, Rachael Hwee Ling Sim, Bryan Kian Hsiang LowICLR 2026
- Differentially Private Coordinate Descent for Composite Empirical Risk MinimizationPaul Mangold, Aurélien Bellet, Joseph Salmon, Marc TommasiICML 2022 · 被引用 16 次
