Skip to main content

Showing 1–10 of 10 results for author: Koskela, A

Searching in archive stat. Search in all archives.
.
  1. arXiv:2406.04827  [pdf, other

    cs.LG cs.CR stat.ML

    Auditing Differential Privacy Guarantees Using Density Estimation

    Authors: Antti Koskela, Jafar Mohammadi

    Abstract: We present a novel method for accurately auditing the differential privacy (DP) guarantees of DP mechanisms. In particular, our solution is applicable to auditing DP guarantees of machine learning (ML) models. Previous auditing methods tightly capture the privacy guarantees of DP-SGD trained models in the white-box setting where the auditor has access to all intermediate models; however, the succe… ▽ More

    Submitted 11 October, 2024; v1 submitted 7 June, 2024; originally announced June 2024.

  2. arXiv:2209.15596  [pdf, other

    cs.CR cs.LG stat.ML

    Individual Privacy Accounting with Gaussian Differential Privacy

    Authors: Antti Koskela, Marlon Tobaben, Antti Honkela

    Abstract: Individual privacy accounting enables bounding differential privacy (DP) loss individually for each participant involved in the analysis. This can be informative as often the individual privacy losses are considerably smaller than those indicated by the DP bounds that are based on considering worst-case bounds at each data access. In order to account for the individual privacy losses in a principl… ▽ More

    Submitted 24 August, 2023; v1 submitted 30 September, 2022; originally announced September 2022.

    Comments: 31 pages, 10 figures

    Journal ref: International Conference on Learning Representations 2023

  3. arXiv:2106.09376  [pdf, other

    stat.CO cs.CR

    Differentially Private Hamiltonian Monte Carlo

    Authors: Ossi Räisä, Antti Koskela, Antti Honkela

    Abstract: Markov chain Monte Carlo (MCMC) algorithms have long been the main workhorses of Bayesian inference. Among them, Hamiltonian Monte Carlo (HMC) has recently become very popular due to its efficiency resulting from effective use of the gradients of the target distribution. In privacy-preserving machine learning, differential privacy (DP) has become the gold standard in ensuring that the privacy of d… ▽ More

    Submitted 17 June, 2021; originally announced June 2021.

    Comments: 18 pages, 3 figures

  4. arXiv:2106.00477  [pdf, other

    cs.CR cs.LG stat.ML

    Tight Accounting in the Shuffle Model of Differential Privacy

    Authors: Antti Koskela, Mikko A. Heikkilä, Antti Honkela

    Abstract: Shuffle model of differential privacy is a novel distributed privacy model based on a combination of local privacy mechanisms and a secure shuffler. It has been shown that the additional randomisation provided by the shuffler improves privacy bounds compared to the purely local mechanisms. Accounting tight bounds, however, is complicated by the complexity brought by the shuffler. The recently prop… ▽ More

    Submitted 31 January, 2022; v1 submitted 1 June, 2021; originally announced June 2021.

    Comments: 21 pages, 5 figures

  5. arXiv:2102.12412  [pdf, other

    cs.CR cs.LG stat.ML

    Computing Differential Privacy Guarantees for Heterogeneous Compositions Using FFT

    Authors: Antti Koskela, Antti Honkela

    Abstract: The recently proposed Fast Fourier Transform (FFT)-based accountant for evaluating $(\varepsilon,δ)$-differential privacy guarantees using the privacy loss distribution formalism has been shown to give tighter bounds than commonly used methods such as Rényi accountants when applied to homogeneous compositions, i.e., to compositions of identical mechanisms. In this paper, we extend this approach to… ▽ More

    Submitted 21 June, 2021; v1 submitted 24 February, 2021; originally announced February 2021.

    Comments: 44 pages, 10 figures

  6. arXiv:2011.00467  [pdf, other

    cs.LG cs.CR stat.ML

    Differentially Private Bayesian Inference for Generalized Linear Models

    Authors: Tejas Kulkarni, Joonas Jälkö, Antti Koskela, Samuel Kaski, Antti Honkela

    Abstract: Generalized linear models (GLMs) such as logistic regression are among the most widely used arms in data analyst's repertoire and often used on sensitive datasets. A large body of prior works that investigate GLMs under differential privacy (DP) constraints provide only private point estimates of the regression coefficients, and are not able to quantify parameter uncertainty. In this work, with lo… ▽ More

    Submitted 12 May, 2021; v1 submitted 1 November, 2020; originally announced November 2020.

  7. arXiv:2007.05553  [pdf, other

    cs.CR cs.DC cs.LG stat.ML

    Differentially private cross-silo federated learning

    Authors: Mikko A. Heikkilä, Antti Koskela, Kana Shimizu, Samuel Kaski, Antti Honkela

    Abstract: Strict privacy is of paramount importance in distributed machine learning. Federated learning, with the main idea of communicating only what is needed for learning, has been recently introduced as a general approach for distributed learning to enhance learning and improve security. However, federated learning by itself does not guarantee any privacy for data subjects. To quantify and control how m… ▽ More

    Submitted 10 July, 2020; originally announced July 2020.

    Comments: 14 pages, 5 figures

  8. arXiv:2006.07134  [pdf, other

    stat.ML cs.CR cs.LG

    Tight Differential Privacy for Discrete-Valued Mechanisms and for the Subsampled Gaussian Mechanism Using FFT

    Authors: Antti Koskela, Joonas Jälkö, Lukas Prediger, Antti Honkela

    Abstract: We propose a numerical accountant for evaluating the tight $(\varepsilon,δ)$-privacy loss for algorithms with discrete one dimensional output. The method is based on the privacy loss distribution formalism and it uses the recently introduced fast Fourier transform based accounting technique. We carry out an error analysis of the method in terms of moment bounds of the privacy loss distribution whi… ▽ More

    Submitted 21 June, 2021; v1 submitted 12 June, 2020; originally announced June 2020.

    Comments: 41 pages, 5 figures

    Journal ref: AISTATS (2021) 3358-3366

  9. arXiv:1906.03049  [pdf, other

    stat.ML cs.CR cs.LG

    Computing Tight Differential Privacy Guarantees Using FFT

    Authors: Antti Koskela, Joonas Jälkö, Antti Honkela

    Abstract: Differentially private (DP) machine learning has recently become popular. The privacy loss of DP algorithms is commonly reported using $(\varepsilon,δ)$-DP. In this paper, we propose a numerical accountant for evaluating the privacy loss for algorithms with continuous one dimensional output. This accountant can be applied to the subsampled multidimensional Gaussian mechanism which underlies the po… ▽ More

    Submitted 4 November, 2019; v1 submitted 7 June, 2019; originally announced June 2019.

    Comments: 43 pages, 7 figures

    Journal ref: AISTATS (2020) 2560-2569

  10. arXiv:1809.03832  [pdf, other

    stat.ML cs.CR cs.LG

    Learning Rate Adaptation for Federated and Differentially Private Learning

    Authors: Antti Koskela, Antti Honkela

    Abstract: We propose an algorithm for the adaptation of the learning rate for stochastic gradient descent (SGD) that avoids the need for validation set use. The idea for the adaptiveness comes from the technique of extrapolation: to get an estimate for the error against the gradient flow which underlies SGD, we compare the result obtained by one full step and two half-steps. The algorithm is applied in two… ▽ More

    Submitted 31 May, 2019; v1 submitted 11 September, 2018; originally announced September 2018.

    Comments: 17 pages, 9 figures

    Journal ref: AISTATS (2020) 2465-2475