CSC 2515 Lecture 11: Differential Privacy
Roger Grosse
University of Toronto
UofT CSC 2515: 11-Differential Privacy 1 / 53
CSC 2515 Lecture 11: Differential Privacy Roger Grosse University - - PowerPoint PPT Presentation
CSC 2515 Lecture 11: Differential Privacy Roger Grosse University of Toronto UofT CSC 2515: 11-Differential Privacy 1 / 53 Overview So far, this class has been about getting algorithms to perform well according to some metric (e.g.
UofT CSC 2515: 11-Differential Privacy 1 / 53
UofT CSC 2515: 11-Differential Privacy 2 / 53
UofT CSC 2515: 11-Differential Privacy 3 / 53
UofT CSC 2515: 11-Differential Privacy 4 / 53
UofT CSC 2515: 11-Differential Privacy 5 / 53
UofT CSC 2515: 11-Differential Privacy 6 / 53
UofT CSC 2515: 11-Differential Privacy 7 / 53
Kearns & Roth, The Ethical Algorithm
UofT CSC 2515: 11-Differential Privacy 8 / 53
UofT CSC 2515: 11-Differential Privacy 9 / 53
http://karpathy.github.io/2015/05/21/rnn-effectiveness/
UofT CSC 2515: 11-Differential Privacy 10 / 53
UofT CSC 2515: 11-Differential Privacy 11 / 53
UofT CSC 2515: 11-Differential Privacy 12 / 53
UofT CSC 2515: 11-Differential Privacy 13 / 53
4
4 + 0.98 · 1 4
UofT CSC 2515: 11-Differential Privacy 14 / 53
UofT CSC 2515: 11-Differential Privacy 15 / 53
UofT CSC 2515: 11-Differential Privacy 16 / 53
UofT CSC 2515: 11-Differential Privacy 17 / 53
UofT CSC 2515: 11-Differential Privacy 18 / 53
UofT CSC 2515: 11-Differential Privacy 19 / 53
UofT CSC 2515: 11-Differential Privacy 20 / 53
UofT CSC 2515: 11-Differential Privacy 21 / 53
UofT CSC 2515: 11-Differential Privacy 22 / 53
UofT CSC 2515: 11-Differential Privacy 23 / 53
UofT CSC 2515: 11-Differential Privacy 24 / 53
UofT CSC 2515: 11-Differential Privacy 25 / 53
UofT CSC 2515: 11-Differential Privacy 26 / 53
UofT CSC 2515: 11-Differential Privacy 27 / 53
UofT CSC 2515: 11-Differential Privacy 28 / 53
ε 2∆f exp(− ε|f (D1)i −yi | ∆f
i=1 ε 2∆f exp(− ε|f (D2)i −yi | ∆f
i |f (D2)i − f (D1)i|
UofT CSC 2515: 11-Differential Privacy 29 / 53
UofT CSC 2515: 11-Differential Privacy 30 / 53
T
UofT CSC 2515: 11-Differential Privacy 31 / 53
UofT CSC 2515: 11-Differential Privacy 32 / 53
UofT CSC 2515: 11-Differential Privacy 33 / 53
UofT CSC 2515: 11-Differential Privacy 34 / 53
ε 2∆L L(y,D1))
ε 2∆L L(y′,D1))
ε 2∆L L(y,D2))
ε 2∆L L(y′,D2))
UofT CSC 2515: 11-Differential Privacy 35 / 53
2∆L
UofT CSC 2515: 11-Differential Privacy 36 / 53
UofT CSC 2515: 11-Differential Privacy 37 / 53
UofT CSC 2515: 11-Differential Privacy 38 / 53
N
N
UofT CSC 2515: 11-Differential Privacy 39 / 53
ˆ NH ˆ NH+ ˆ NT
UofT CSC 2515: 11-Differential Privacy 40 / 53
UofT CSC 2515: 11-Differential Privacy 41 / 53
UofT CSC 2515: 11-Differential Privacy 42 / 53
UofT CSC 2515: 11-Differential Privacy 43 / 53
D -differentially
UofT CSC 2515: 11-Differential Privacy 44 / 53
UofT CSC 2515: 11-Differential Privacy 45 / 53
UofT CSC 2515: 11-Differential Privacy 46 / 53
UofT CSC 2515: 11-Differential Privacy 47 / 53
UofT CSC 2515: 11-Differential Privacy 48 / 53
UofT CSC 2515: 11-Differential Privacy 49 / 53
UofT CSC 2515: 11-Differential Privacy 50 / 53
UofT CSC 2515: 11-Differential Privacy 51 / 53
UofT CSC 2515: 11-Differential Privacy 52 / 53
UofT CSC 2515: 11-Differential Privacy 53 / 53