English

Mitigating Noise Detriment in Differentially Private Federated Learning with Model Pre-training

Machine Learning 2025-10-10 v2 Cryptography and Security

Abstract

Differentially Private Federated Learning (DPFL) strengthens privacy protection by perturbing model gradients with noise, though at the cost of reduced accuracy. Although prior empirical studies indicate that initializing from pre-trained rather than random parameters can alleviate noise disturbance, the problem of optimally fine-tuning pre-trained models in DPFL remains unaddressed. In this paper, we propose Pretrain-DPFL, a framework that systematically evaluates three most representative fine-tuning strategies: full-tuning (FT), head-tuning (HT), and unified-tuning(UT) combining HT followed by FT. Through convergence analysis under smooth non-convex loss, we establish theoretical conditions for identifying the optimal fine-tuning strategy in Pretrain-DPFL, thereby maximizing the benefits of pre-trained models in mitigating noise disturbance. Extensive experiments across multiple datasets demonstrate Pretrain-DPFL's superiority, achieving 25.22%25.22\% higher accuracy than scratch training and outperforming the second-best baseline by 8.19%8.19\%, significantly improving the privacy-utility trade-off in DPFL.

Keywords

Cite

@article{arxiv.2408.09478,
  title  = {Mitigating Noise Detriment in Differentially Private Federated Learning with Model Pre-training},
  author = {Huitong Jin and Yipeng Zhou and Quan Z. Sheng and Shiting Wen and Laizhong Cui},
  journal= {arXiv preprint arXiv:2408.09478},
  year   = {2025}
}
R2 v1 2026-06-28T18:15:56.903Z