4.7 Article

Individual Differential Privacy: A Utility-Preserving Formulation of Differential Privacy Guarantees

期刊

出版社

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/TIFS.2017.2663337

关键词

Data privacy; data utility; differential privacy

资金

  1. European Commission [H2020-644024, H2020-700540]
  2. Spanish Government through Project SmartGlacis [TIN2014-57364-C2-1/2-R, TIN2016-80250-R, TIN2015-70054-REDC]
  3. Isaac Newton Institute for Mathematical Sciences at the University of Cambridge
  4. EPSRC [EP/K032208/1]
  5. Government of Catalonia [2014 SGR 537]
  6. Government of Catalonia
  7. EPSRC [EP/K032208/1] Funding Source: UKRI
  8. Engineering and Physical Sciences Research Council [EP/K032208/1] Funding Source: researchfish

向作者/读者索取更多资源

Differential privacy is a popular privacy model within the research community because of the strong privacy guarantee it offers, namely that the presence or absence of any individual in a data set does not significantly influence the results of analyses on the data set. However, enforcing this strict guarantee in practice significantly distorts data and/or limits data uses, thus diminishing the analytical utility of the differentially private results. In an attempt to address this shortcoming, several relaxations of differential privacy have been proposed that trade off privacy guarantees for improved data utility. In this paper, we argue that the standard formalization of differential privacy is stricter than required by the intuitive privacy guarantee it seeks. In particular, the standard formalization requires indistinguishability of results between any pair of neighbor data sets, while indistinguishability between the actual data set and its neighbor data sets should be enough. This limits the data controller's ability to adjust the level of protection to the actual data, hence resulting in significant accuracy loss. In this respect, we propose individual differential privacy, an alternative differential privacy notion that offers the same privacy guarantees as standard differential privacy to individuals (even though not to groups of individuals). This new notion allows the data controller to adjust the distortion to the actual data set, which results in less distortion and more analytical accuracy. We propose several mechanisms to attain individual differential privacy and we compare the new notion against standard differential privacy in terms of the accuracy of the analytical results.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.7
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据