arrow
Return

Integrally private model selection for decision trees

delete2019-06-01
delete8
delete
OA
AI
N
Navoda Senavirathne *
V
Vicenç Torra
DOI:10.1016/j.cose.2019.01.006delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Privacy attacks targeting machine learning models are evolving. One of the primary goals of such attacks is to infer information about the training data used to construct the models. Integral Privacy focuses on machine learning and statistical models which explain how we can utilize intruder's uncertainty to provide a privacy guarantee against model comparison attacks. Through experimental results, we show how the distribution of models can be used to achieve integral privacy. Here, we observe two categories of machine learning models based on their frequency of occurrence in the model space. Then we explain the privacy implications of selecting each of them based on a new attack model and empirical results. Also, we provide recommendations for private model selection based on the accuracy and stability of the models along with the diversity of training data that can be used to generate the models. (C) 2019 The Author. Published by Elsevier Ltd.
Keywords:
Integral privacy
Privacy models
Data privacy
Machine learning model space
Privacy preserving machine learning
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

U
University of Skovde
Scholars:
612
Papers: 653
Citations: 793