Just Keep Your Concerns Private: Guaranteeing Heterogeneous Privacy and Achieving High Availability for ERM Algorithms

Yuzhe Li,Yong Liu,Bo Li,Weiping Wang,Nan Liu
DOI: https://doi.org/10.1109/trustcom53373.2021.00064
2021-01-01
Abstract:Traditional implementations of differential privacy implicitly assume that users have homogeneous privacy requirement for all attributes of data. They provide a uniform level of privacy guarantee for all attributes by using a single privacy budget, $\varepsilon$. However, this brings trouble to users in practice applications, where privacy requirements are often heterogeneous. In this case, users have to make a choice: either setting the privacy level high enough to satisfy even the privacy fundamentalists, which often results in poor model utility, or sacrificing the privacy of some attributes for practical model. Both are hard to be accepted by users. In this paper, we offer users what they probably want, an option that could provide a satisfactory privacy guarantee for important attributes with minimal utility loss. Our method, called heterogeneous differentially private ERM (HDP-ERM), allows the private learning algorithms to guarantee heterogeneous privacy for each attribute of training data. The noise injected in each parameter is adaptive according to its individual privacy budget, so that we can control the privacy-utility trade-off more finely. Experimental results show that our method is able to reach a satisfactory utility when only the important attributes need strong privacy guarantee, while the traditional DP-ERM would only get a useless model (one with low test accuracy) when providing the same level of privacy guarantee.
What problem does this paper attempt to address?