AIセキュリティポータル K Program
RQP-SGD: Differential Private Machine Learning through Noisy SGD and Randomized Quantization
Share
Abstract
The rise of IoT devices has prompted the demand for deploying machine learning at-the-edge with real-time, efficient, and secure data processing. In this context, implementing machine learning (ML) models with real-valued weight parameters can prove to be impractical particularly for large models, and there is a need to train models with quantized discrete weights. At the same time, these low-dimensional models also need to preserve privacy of the underlying dataset. In this work, we present RQP-SGD, a new approach for privacy-preserving quantization to train machine learning models for low-memory ML-at-the-edge. This approach combines differentially private stochastic gradient descent (DP-SGD) with randomized quantization, providing a measurable privacy guarantee in machine learning. In particular, we study the utility convergence of implementing RQP-SGD on ML tasks with convex objectives and quantization constraints and demonstrate its efficacy over deterministic quantization. Through experiments conducted on two datasets, we show the practical effectiveness of RQP-SGD.
Inferential separation for privacy: Irrelevant statistics and quantization
Ce Feng, Parv Venkitasubramaniam
Published: 2022
Privstream: A privacy-preserving inference framework on iot streaming data at the edge
Dan Wang, Ju Ren, Zhibo Wang, Yaoxue Zhang, Xuemin Sherman Shen
Published: 2022
Differentially private model publishing for deep learning
L. Yu, L. Liu, C. Pu, M. E. Gursoy, S. Truex
Published: 2019
Large scale private learning via low-rank reparametrization
D. Yu, H. Zhang, W. Chen, J. Yin, T.-Y. Liu
Published: 2021
Tempered Sigmoid Activations for Deep Learning with Differential Privacy
Nicolas Papernot, Abhradeep Thakurta, Shuang Song, Steve Chien, Úlfar Erlingsson
Published: 2020.7.28
Differentially private learning with adaptive clipping
Galen Andrew, Om Thakkar, Brendan McMahan, Swaroop Ramaswamy
Published: 2021
Differential privacy
Cynthia Dwork
Published: 2006
Deep learning with differential privacy
Martin Abadi, Andy Chu, Ian Goodfellow, H Brendan McMahan, Ilya Mironov, Kunal Talwar, Li Zhang
Published: 2016
Do not let privacy overbill utility: Gradient embedding perturbation for private learning
Da Yu, Huishuai Zhang, Wei Chen, Tie-Yan Liu
Published: 2021
Spectral-dp: Differentially private deep learning through spectral perturbation and filtering
Ce Feng, Nuo Xu, Wujie Wen, Parv Venkitasubramaniam, Caiwen Ding
Published: 2023
Randomized requantization with local differential privacy
Sijie Xiong, Anand D Sarwate, Narayan B Mandayam
Published: 2016
Privacy preserving rbf kernel support vector machine
Haoran Li, Li Xiong, Lucila Ohno-Machado, Xiaoqian Jiang
Published: 2014
Functional mechanism: Regression analysis under differential privacy
Jun Zhang, Zhenjie Zhang, Xiaokui Xiao, Yin Yang, Marianne Winslett
Published: 2012
Privacy-preserving logistic regression
Kamalika Chaudhuri, Claire Monteleoni
Published: 2008
Private empirical risk minimization: Efficient algorithms and tight error bounds
R. Bassily, A. Smith, A. Thakurta
Published: 2014
Differentially private empirical risk minimization
K. Chaudhuri, C. Monteleoni, A. D. Sarwate
Published: 2011
Efficient private empirical risk minimization for high-dimensional learning
Shiva Prasad Kasiviswanathan, Hongxia Jin
Published: 2016
Private stochastic convex optimization with optimal rates
Raef Bassily, Vitaly Feldman, Kunal Talwar, Abhradeep Guha Thakurta
Published: 2019
Quantized reinforcement learning (quarl)
Srivatsan Krishnan, Sharad Chitlangia, Maximilian Lam, Zishen Wan, Aleksandra Faust, Vijay Janapa Reddi
Published: 2019
Up or down? adaptive rounding for post-training quantization
Markus Nagel, Rana Ali Amjad, Mart Van Baalen, Christos Louizos, Tijmen Blankevoort
Published: 2020
Loss aware post-training quantization
Yury Nahshan, Brian Chmiel, Chaim Baskin, Evgenii Zheltonozhskii, Ron Banner, Alex M Bronstein, Avi Mendelson
Published: 2021
Overcoming oscillations in quantization-aware training
M. Nagel, M. Fournarakis, Y. Bondarenko, T. Blankevoort
Published: 2022
Optimal clipping and magnitude-aware differentiation for improved quantization-aware training
Charbel Sakr, Steve Dai, Rangha Venkatesan, Brian Zimmer, William Dally, Brucek Khailany
Published: 2022
Binaryconnect: Training deep neural networks with binary weights during propagations
Matthieu Courbariaux, Yoshua Bengio, Jean-Pierre David
Published: 2015
Optimal local differentially private quantization
Ruochi Zhang, Parv Venkitasubramaniam
Published: 2020
Joint Privacy Enhancement and Quantization in Federated Learning
Natalie Lang, Elad Sofer, Tomer Shaked, Nir Shlezinger
Published: 2022.8.23
Compressive differentially private federated learning through universal vector quantization
Saba Amiri, Adam Belloum, Sander Klous, Leon Gommans
Published: 2021
vqsgd: Vector quantized stochastic gradient descent
Venkata Gandikota, Daniel Kane, Raj Kumar Maity, Arya Mazumdar
Published: 2021
Binaryrelax: A relaxation approach for training deep neural networks with quantized weights
Penghang Yin, Shuai Zhang, Jiancheng Lyu, Stanley Osher, Yingyong Qi, Jack Xin
Published: 2018
Training quantized nets: A deeper understanding
Hao Li, Soham De, Zheng Xu, Christoph Studer, Hanan Samet, Tom Goldstein
Published: 2017
Rényi Divergence and Kullback-Leibler Divergence
T. V. Erven, P. Harremoës
Published: 2014
Understanding machine learning: From theory to algorithms
Shai Shalev-Shwartz, Shai Ben-David
Published: 2014
Privacy amplification by subsampling: Tight analyses via couplings and divergences
Borja Balle, Gilles Barthe, Marco Gaboardi
Published: 2018
Gradient-based learning applied to document recognition
Y. LeCun, L. Bottou, Y. Bengio, P. Haffner
Published: 1998
Logistic regression
Raymond E Wright
Published: 1995
Support vector machines
Marti A. Hearst, Susan T Dumais, Edgar Osuna, John Platt, Bernhard Scholkopf
Published: 1998
Share