English

Correlated Privacy Mechanisms for Differentially Private Distributed Mean Estimation

Information Theory 2025-01-09 v2 Cryptography and Security Machine Learning math.IT

Abstract

Differentially private distributed mean estimation (DP-DME) is a fundamental building block in privacy-preserving federated learning, where a central server estimates the mean of dd-dimensional vectors held by nn users while ensuring (ϵ,δ)(\epsilon,\delta)-DP. Local differential privacy (LDP) and distributed DP with secure aggregation (SA) are the most common notions of DP used in DP-DME settings with an untrusted server. LDP provides strong resilience to dropouts, colluding users, and adversarial attacks, but suffers from poor utility. In contrast, SA-based DP-DME achieves an O(n)O(n) utility gain over LDP in DME, but requires increased communication and computation overheads and complex multi-round protocols to handle dropouts and attacks. In this work, we present a generalized framework for DP-DME, that captures LDP and SA-based mechanisms as extreme cases. Our framework provides a foundation for developing and analyzing a variety of DP-DME protocols that leverage correlated privacy mechanisms across users. To this end, we propose CorDP-DME, a novel DP-DME mechanism based on the correlated Gaussian mechanism, that spans the gap between DME with LDP and distributed DP. We prove that CorDP-DME offers a favorable balance between utility and resilience to dropout and collusion. We provide an information-theoretic analysis of CorDP-DME, and derive theoretical guarantees for utility under any given privacy parameters and dropout/colluding user thresholds. Our results demonstrate that (anti) correlated Gaussian DP mechanisms can significantly improve utility in mean estimation tasks compared to LDP -- even in adversarial settings -- while maintaining better resilience to dropouts and attacks compared to distributed DP.

Keywords

Cite

@article{arxiv.2407.03289,
  title  = {Correlated Privacy Mechanisms for Differentially Private Distributed Mean Estimation},
  author = {Sajani Vithana and Viveck R. Cadambe and Flavio P. Calmon and Haewon Jeong},
  journal= {arXiv preprint arXiv:2407.03289},
  year   = {2025}
}
R2 v1 2026-06-28T17:28:13.641Z