כתבה
arXiv cs.LG ·
Canaries in the Bank: Auditing User-Level Privacy in Private Evolution
תקציר מקורי באנגליתarXiv:2609.13499v1 Announce Type: cross Abstract: Private Evolution (PE) generates high-fidelity synthetic data in federated settings without exposing users' raw data. It aggregates clipped user votes over a shared candidate bank into a differentially private histogram, with noise calibrated to the worst-case user contribution. However, it is unclear whether an adversary can realize this worst-case privacy loss while following the PE protocol. We introduce a protocol-aware empirical audit in which the server commits to a single shared candidate bank and replaces roughly 1% of its entries with probes derived from a known, non-private canary. We evaluate eight attacks, including an unchanged-bank baseline, exact copies, plausible paraphrases, and high-entropy synthetic nonces. Experiments on
קרא במקור המקורי
arxiv.org
פתח כתבה מקורית