AAA: an Adaptive Mechanism for Locally Differential Private Mean Estimation
Fei Wei, Ergute Bao, Xiaokui Xiao, Yin Yang, Bolin Ding
摘要
Local differential privacy ( LDP ) is a strong privacy standard that has been adopted by popular software systems, including Chrome, iOS, MacOS, and Windows. The main idea is that each individual perturbs their own data locally, and only submits the resulting noisy version to a data aggregator. Although much effort has been devoted to computing various types of aggregates and building machine learning applications under LDP, research on fundamental perturbation mechanisms has not achieved significant improvement in recent years. Towards a more refined result utility, existing works in the literature mainly focus on improving the worst-case guarantee. However, this approach does not necessarily promise a better average performance given the fact that the data in practice obey a certain distribution, which is not known beforehand.
In this paper, we propose the advanced adaptive additive ( AAA ) mechanism, which is a distribution-aware approach that addresses the average utility and tackles the classical mean estimation problem. AAA is carried out in a two-step approach: first, as the global data distribution is not available beforehand, the data aggregator selects a random subset of individuals to compute a (noisy) quantized data descriptor; then, in the second step, the data aggregator collects data from the remaining individuals, which are perturbed in a distribution-aware fashion. The perturbation involved in the latter step is obtained by solving an optimization problem, which is formulated with the data descriptor obtained in the former step and the desired properties of task-determined utilities. We provide rigorous privacy proofs and utility analyses, as well as extensive experiments comparing AAA with state-of-the-art mechanisms. The evaluation results demonstrate that the AAA mechanism consistently outperforms existing solutions with a clear margin in terms of result utility, on a wide range of privacy constraints and real-world and synthetic datasets.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper11
- Deep Learning with Differential PrivacyMartín Abadi, Andy Chu, Ian J. Goodfellow, H. Brendan McMahan 等CCS 2016 · 被引用 7,620 次
- Practical Secure Aggregation for Privacy-Preserving Machine LearningKallista A. Bonawitz, Vladimir Ivanov, Ben Kreuter, Antonio Marcedone 等CCS 2017 · 被引用 3,936 次
- Retiring Adult: New Datasets for Fair Machine LearningFrances Ding, Moritz Hardt, John Miller, Ludwig SchmidtNeurIPS 2021 · 被引用 671 次
- Locally Differentially Private Protocols for Frequency EstimationTianhao Wang, Jeremiah Blocki, Ninghui Li, Somesh JhaUSENIX Security 2017 · 被引用 629 次
- Heavy Hitter Estimation over Set-Valued Data with Local Differential PrivacyZhan Qin, Yin Yang, Ting Yu, Issa Khalil 等CCS 2016 · 被引用 344 次
相关 Paper
- Privacy for Free: Leveraging Local Differential Privacy Perturbed Data from Multiple ServicesRong Du, Qingqing Ye, Yue Fu, Haibo HuVLDB 2025 · 被引用 2 次
- PrivRM: A Framework for Range Mean Estimation under Local Differential PrivacyLiantong Yu, Qingqing Ye, Rong DuSIGMOD 2025 · 被引用 3 次
- Utility Analysis and Enhancement of LDP Mechanisms in High-Dimensional SpaceJiawei Duan, Qingqing Ye, Haibo HuICDE 2022 · 被引用 18 次
- Differential Aggregation against General Colluding AttackersRong Du, Qingqing Ye, Yue Fu, Haibo Hu 等ICDE 2023 · 被引用 11 次
- CGM: An Enhanced Mechanism for Streaming Data Collectionwith Local Differential PrivacyErgute Bao, Yin Yang, Xiaokui Xiao, Bolin DingVLDB 2021 · 被引用 47 次
