Privacy Amplification for Matrix Mechanisms

Christopher A. Choquette-Choo,Arun Ganesh,Thomas Steinke,Abhradeep Thakurta
2024-05-05
Abstract:Privacy amplification exploits randomness in data selection to provide tighter differential privacy (DP) guarantees. This analysis is key to DP-SGD's success in machine learning, but, is not readily applicable to the newer state-of-the-art algorithms. This is because these algorithms, known as DP-FTRL, use the matrix mechanism to add correlated noise instead of independent noise as in DP-SGD.
Machine Learning,Cryptography and Security
What problem does this paper attempt to address?