A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy - Département Métrologie Instrumentation & Information
Communication Dans Un Congrès Année : 2023

A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy

Résumé

As machine learning (ML) has become pervasive throughout various fields (industry, healthcare, social networks), privacy concerns regarding the data used for its training have gained a critical importance. In settings where several parties wish to collaboratively train a common model without jeopardizing their sensitive data, the need for a private training protocol is particularly stringent and implies to protect the data against both the model’s end-users and the other actors of the training phase. In this context of secure collaborative learning, Differential Privacy (DP) and Fully Homomorphic Encryption (FHE) are two complementary countermeasures of growing interest to thwart privacy attacks in ML systems. Central to many collaborative training protocols, in the line of PATE, is majority voting aggregation. Thus, in this paper, we design SHIELD, a probabilistic approximate majority voting operator which is faster when homomorphically executed than existing approaches based on exact argmax computation over an histogram of votes. As an additional benefit, the inaccuracy of SHIELD is used as a feature to provably enable DP guarantees. Although SHIELD may have other applications, we focus here on one setting and seamlessly integrate it in the SPEED collaborative training framework from [20] to improve its computational efficiency. After thoroughly describing the FHE implementation of our algorithm and its DP analysis, we present experimental results. To the best of our knowledge, it is the first work in which relaxing the accuracy of an algorithm is constructively usable as a degree of freedom to achieve better FHE performances.
Fichier principal
Vignette du fichier
3605759.3625258.pdf (1.16 Mo) Télécharger le fichier
Origine Fichiers éditeurs autorisés sur une archive ouverte

Dates et versions

cea-04461731 , version 1 (16-02-2024)

Identifiants

Citer

Arnaud Grivet Sebert, Martin Zuber, Oana Stan, Renaud Sirdey, Cedric Gouy-Pailler. A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy. WAHC 2023 - 11th Workshop on Encrypted Computing & Applied Homomorphic Cryptography, Nov 2023, Copenhague, Denmark. pp.47-58, ⟨10.1145/3605759.3625258⟩. ⟨cea-04461731⟩
186 Consultations
15 Téléchargements

Altmetric

Partager

More