English

On the Differential Privacy of Bayesian Inference

Artificial Intelligence 2015-12-23 v1 Cryptography and Security Machine Learning Statistics Theory Machine Learning Statistics Theory

Abstract

We study how to communicate findings of Bayesian inference to third parties, while preserving the strong guarantee of differential privacy. Our main contributions are four different algorithms for private Bayesian inference on proba-bilistic graphical models. These include two mechanisms for adding noise to the Bayesian updates, either directly to the posterior parameters, or to their Fourier transform so as to preserve update consistency. We also utilise a recently introduced posterior sampling mechanism, for which we prove bounds for the specific but general case of discrete Bayesian networks; and we introduce a maximum-a-posteriori private mechanism. Our analysis includes utility and privacy bounds, with a novel focus on the influence of graph structure on privacy. Worked examples and experiments with Bayesian na{\"i}ve Bayes and Bayesian linear regression illustrate the application of our mechanisms.

Keywords

Cite

@article{arxiv.1512.06992,
  title  = {On the Differential Privacy of Bayesian Inference},
  author = {Zuhe Zhang and Benjamin Rubinstein and Christos Dimitrakakis},
  journal= {arXiv preprint arXiv:1512.06992},
  year   = {2015}
}

Comments

AAAI 2016, Feb 2016, Phoenix, Arizona, United States

R2 v1 2026-06-22T12:15:41.198Z