AIセキュリティポータル K Program
Privacy at a Price: Exploring its Dual Impact on AI Fairness
Share
Abstract
The worldwide adoption of machine learning (ML) and deep learning models, particularly in critical sectors, such as healthcare and finance, presents substantial challenges in maintaining individual privacy and fairness. These two elements are vital to a trustworthy environment for learning systems. While numerous studies have concentrated on protecting individual privacy through differential privacy (DP) mechanisms, emerging research indicates that differential privacy in machine learning models can unequally impact separate demographic subgroups regarding prediction accuracy. This leads to a fairness concern, and manifests as biased performance. Although the prevailing view is that enhancing privacy intensifies fairness disparities, a smaller, yet significant, subset of research suggests the opposite view. In this article, with extensive evaluation results, we demonstrate that the impact of differential privacy on fairness is not monotonous. Instead, we observe that the accuracy disparity initially grows as more DP noise (enhanced privacy) is added to the ML process, but subsequently diminishes at higher privacy levels with even more noise. Moreover, implementing gradient clipping in the differentially private stochastic gradient descent ML method can mitigate the negative impact of DP noise on fairness. This mitigation is achieved by moderating the disparity growth through a lower clipping threshold.
Differential privacy has disparate impact on model accuracy
B.Eugene, P.Omid, S.Vitaly
Published: 2019
Post-processing of Differentially Private Data: A Fairness Perspective
Z.K. Yu, F.Ferdinando, V.H.Pascal
Achieving differential privacy and fairness in logistic regression
Xu, Depeng, Yuan, Shuhan, Wu, Xintao
Published: 2019
Differential privacy
Dwork, C
Published: 2006
On the fairness impacts of private ensembles models
T.Cuong, F.Ferdinando
Published: 2023
Calibrating noise to sensitivity in private data analysis
Cynthia Dwork, Frank McSherry, Kobbi Nissim, Adam Smith
Published: 2006
Deep learning with differential privacy
Abadi, Martin, Chu, Andy, Goodfellow, Ian, McMahan, H Brendan, Mironov, Ilya, Talwar, Kunal, Zhang, Li
Published: 2016
Removing disparate impact on model accuracy in differentially private stochastic gradient descent
Xu, Depeng, Du, Wei, Wu, Xintao
Published: 2021
Semi-supervised Knowledge Transfer for Deep Learning from Private Training Data
Nicolas Papernot, Martín Abadi, Úlfar Erlingsson, Ian Goodfellow, Kunal Talwar
Published: 2016.10.19
Dp-sgd vs pate: Which has less disparate impact on model accuracy?
Uniyal, Archit, Naidu, Rakshit, Kotti, Sasikanth, Singh, Sahib, Kenfack, Patrik Joslin, Mireshghallah, Fatemehsadat, Trask, Andrew
Fair decision making using privacy-protected data
Pujol, David, McKenna, Ryan, Kuppam, Satya, Hay, Michael, Machanavajjhala, Ashwin, Miklau, Gerome
Published: 2020
Decision Making with Differential Privacy under a Fairness Lens
Tran, Cuong, Fioretto, Ferdinando, Van Hentenryck, Pascal, Yao, Zhiyan
Published: 2021
Share