-
Privacy-preserving machine learning with tensor networks
Authors:
Alejandro Pozas-Kerstjens,
Senaida Hernández-Santana,
José Ramón Pareja Monturiol,
Marco Castrillón López,
Giannicola Scarpa,
Carlos E. González-Guillén,
David Pérez-García
Abstract:
Tensor networks, widely used for providing efficient representations of low-energy states of local quantum many-body systems, have been recently proposed as machine learning architectures which could present advantages with respect to traditional ones. In this work we show that tensor network architectures have especially prospective properties for privacy-preserving machine learning, which is imp…
▽ More
Tensor networks, widely used for providing efficient representations of low-energy states of local quantum many-body systems, have been recently proposed as machine learning architectures which could present advantages with respect to traditional ones. In this work we show that tensor network architectures have especially prospective properties for privacy-preserving machine learning, which is important in tasks such as the processing of medical records. First, we describe a new privacy vulnerability that is present in feedforward neural networks, illustrating it in synthetic and real-world datasets. Then, we develop well-defined conditions to guarantee robustness to such vulnerability, which involve the characterization of models equivalent under gauge symmetry. We rigorously prove that such conditions are satisfied by tensor-network architectures. In doing so, we define a novel canonical form for matrix product states, which has a high degree of regularity and fixes the residual gauge that is left in the canonical forms based on singular value decompositions. We supplement the analytical findings with practical examples where matrix product states are trained on datasets of medical records, which show large reductions on the probability of an attacker extracting information about the training dataset from the model's parameters. Given the growing expertise in training tensor-network architectures, these results imply that one may not have to be forced to make a choice between accuracy in prediction and ensuring the privacy of the information processed.
△ Less
Submitted 23 July, 2024; v1 submitted 24 February, 2022;
originally announced February 2022.
-
Mixing and localisation in random time-periodic quantum circuits of Clifford unitaries
Authors:
Tom Farshi,
Daniele Toniolo,
Carlos E. González-Guillén,
Álvaro M. Alhambra,
Lluis Masanes
Abstract:
How much does local and time-periodic dynamics resemble a random unitary? In the present work we address this question by using the Clifford formalism from quantum computation. We analyse a Floquet model with disorder, characterised by a family of local, time-periodic, random quantum circuits in one spatial dimension. We observe that the evolution operator enjoys an extra symmetry at times that ar…
▽ More
How much does local and time-periodic dynamics resemble a random unitary? In the present work we address this question by using the Clifford formalism from quantum computation. We analyse a Floquet model with disorder, characterised by a family of local, time-periodic, random quantum circuits in one spatial dimension. We observe that the evolution operator enjoys an extra symmetry at times that are a half-integer multiple of the period. With this we prove that after the scrambling time, namely when any initial perturbation has propagated throughout the system, the evolution operator cannot be distinguished from a (Haar) random unitary when all qubits are measured with Pauli operators. This indistinguishability decreases as time goes on, which is in high contrast to the more studied case of (time-dependent) random circuits. We also prove that the evolution of Pauli operators displays a form of mixing. These results require the dimension of the local subsystem to be large. In the opposite regime our system displays a novel form of localisation, produced by the appearance of effective one-sided walls, which prevent perturbations from crossing the wall in one direction but not the other.
△ Less
Submitted 17 January, 2022; v1 submitted 7 July, 2020;
originally announced July 2020.
-
Matrix Product States, Random Matrix Theory and the Principle of Maximum Entropy
Authors:
Benoit Collins,
Carlos E. Gonzalez-Guillen,
David Perez-Garcia
Abstract:
Using random matrix techniques and the theory of Matrix Product States we show that reduced density matrices of quantum spin chains have generically maximum entropy.
Using random matrix techniques and the theory of Matrix Product States we show that reduced density matrices of quantum spin chains have generically maximum entropy.
△ Less
Submitted 30 January, 2012;
originally announced January 2012.
-
A canonical form for Projected Entangled Pair States and applications
Authors:
D. Perez-Garcia,
M. Sanz,
C. E. Gonzalez-Guillen,
M. M. Wolf,
J. I. Cirac
Abstract:
We show that two different tensors defining the same translational invariant injective Projected Entangled Pair State (PEPS) in a square lattice must be the same up to a trivial gauge freedom. This allows us to characterize the existence of any local or spatial symmetry in the state. As an application of these results we prove that a SU(2) invariant PEPS with half-integer spin cannot be injectiv…
▽ More
We show that two different tensors defining the same translational invariant injective Projected Entangled Pair State (PEPS) in a square lattice must be the same up to a trivial gauge freedom. This allows us to characterize the existence of any local or spatial symmetry in the state. As an application of these results we prove that a SU(2) invariant PEPS with half-integer spin cannot be injective, which can be seen as a Lieb-Shultz-Mattis theorem in this context. We also give the natural generalization for U(1) symmetry in the spirit of Oshikawa-Yamanaka-Affleck, and show that a PEPS with Wilson loops cannot be injective.
△ Less
Submitted 12 August, 2009;
originally announced August 2009.