A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy - Département Métrologie Instrumentation & Information Access content directly
Conference Papers Year : 2023

A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy

Abstract

As machine learning (ML) has become pervasive throughout various fields (industry, healthcare, social networks), privacy concerns regarding the data used for its training have gained a critical importance. In settings where several parties wish to collaboratively train a common model without jeopardizing their sensitive data, the need for a private training protocol is particularly stringent and implies to protect the data against both the model’s end-users and the other actors of the training phase. In this context of secure collaborative learning, Differential Privacy (DP) and Fully Homomorphic Encryption (FHE) are two complementary countermeasures of growing interest to thwart privacy attacks in ML systems. Central to many collaborative training protocols, in the line of PATE, is majority voting aggregation. Thus, in this paper, we design SHIELD, a probabilistic approximate majority voting operator which is faster when homomorphically executed than existing approaches based on exact argmax computation over an histogram of votes. As an additional benefit, the inaccuracy of SHIELD is used as a feature to provably enable DP guarantees. Although SHIELD may have other applications, we focus here on one setting and seamlessly integrate it in the SPEED collaborative training framework from [20] to improve its computational efficiency. After thoroughly describing the FHE implementation of our algorithm and its DP analysis, we present experimental results. To the best of our knowledge, it is the first work in which relaxing the accuracy of an algorithm is constructively usable as a degree of freedom to achieve better FHE performances.
Embargoed file
Embargoed file
0 5 28
Year Month Jours
Avant la publication
Thursday, November 14, 2024
Embargoed file
Thursday, November 14, 2024
Please log in to request access to the document

Dates and versions

cea-04461731 , version 1 (16-02-2024)

Identifiers

Cite

Arnaud Grivet Sebert, Martin Zuber, Oana Stan, Renaud Sirdey, Cedric Gouy-Pailler. A probabilistic design for practical homomorphic majority voting with intrinsic differential privacy. WAHC 2023 - 11th Workshop on Encrypted Computing & Applied Homomorphic Cryptography, Nov 2023, Copenhague, Denmark. pp.47-58, ⟨10.1145/3605759.3625258⟩. ⟨cea-04461731⟩
30 View
5 Download

Altmetric

Share

Gmail Facebook X LinkedIn More