Unlocking high-accuracy differentially private image classification through scale

S De, L Berrada, J Hayes, SL Smith, B Balle - arXiv preprint arXiv …, 2022 - arxiv.org
Differential Privacy (DP) provides a formal privacy guarantee preventing adversaries with
access to a machine learning model from extracting information about individual training
points. Differentially Private Stochastic Gradient Descent (DP-SGD), the most popular DP
training method for deep learning, realizes this protection by injecting noise during training.
However previous works have found that DP-SGD often leads to a significant degradation in
performance on standard image classification benchmarks. Furthermore, some authors have …

[CITATION][C] Unlocking high-accuracy differentially private image classification through scale, 2022

S De, L Berrada, J Hayes, SL Smith, B Balle - URL https://arxiv. org/abs/2204.13650
Showing the best results for this search. See all results