REVIEW 2 cited by
Tight Differential Privacy for Discrete-Valued Mechanisms and for the Subsampled Gaussian Mechanism Using FFT
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
abstract
We propose a numerical accountant for evaluating the tight $(\varepsilon,\delta)$-privacy loss for algorithms with discrete one dimensional output. The method is based on the privacy loss distribution formalism and it uses the recently introduced fast Fourier transform based accounting technique. We carry out an error analysis of the method in terms of moment bounds of the privacy loss distribution which leads to rigorous lower and upper bounds for the true $(\varepsilon,\delta)$-values. As an application, we present a novel approach to accurate privacy accounting of the subsampled Gaussian mechanism. This completes the previously proposed analysis by giving strict lower and upper bounds for the privacy parameters. We demonstrate the performance of the accountant on the binomial mechanism and show that our approach allows decreasing noise variance up to 75 percent at equal privacy compared to existing bounds in the literature. We also illustrate how to compute tight bounds for the exponential mechanism applied to counting queries.
Forward citations
Cited by 2 Pith papers
-
PrivacyGo: Privacy-Preserving Ad Measurement with Multidimensional Intersection
A private waterfall-matching protocol using oblivious PRF with blind key rotation and differentially private dummy padding lets two parties compute aggregate conversion sums over multiple identifier types without reve...
-
Meeting Utility Constraints in Differential Privacy: A Privacy-Boosting Approach
A privacy-boosting mechanism reweights DP noise to meet utility constraints, with new cases for relative error, fixed regions, and local randomized response.
Discussion (0). Continue with ORCID to comment.