SaTC: CORE: Medium: Privacy for All: Ensuring Fair Privacy Protection in Machine Learning
SaTC: CORE: Medium: Privacy for All: Ensuring Fair Privacy Protection in Machine Learning
批准号:
2029038
负责人:
Wendy Hui Wang
金额:
$69.95万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2021
资助国家:
美国
项目状态:
已结题
起止时间:
2021-01-01 至 2024-12-31
中文摘要
人工智能和机器学习领域的进步导致了用于改善网络安全的算法和技术。然而,机器学习也容易受到新颖而复杂的隐私攻击,这些攻击会泄露用于学习和预测的数据的信息。例如,通过访问发现特定疾病遗传基础的机器学习模型的预测结果,隐私攻击可以推断是否使用特定患者的临床记录来训练该模型。隐私攻击可以是歧视性的,因为它对于某些人口统计群体(例如,女性)具有比其他群体(例如,男性)更高的成功率。然而,现有的针对这些攻击的防御机制都没有考虑到这种不同的漏洞,因此在不同的组中执行不同的工作。这引发了人们对公平隐私的严重关注,即如何确保所有群体和个人得到公平保护?本项目将从技术和社会两个角度解决公平隐私的核心问题。该项目有五个研究方向:(1)定量地形式化公平隐私的概念;(2)揭示对两种研究较多的机器学习使能隐私攻击--成员关系推理攻击(MIA)和属性推理攻击(AIA)--存在不同的脆弱性,并调查这种脆弱性不公平性的根本原因;(3)检查现有针对MIA和AIA的防御机制的公平性,并研究这些防御机制如何影响脆弱性不公平性;(4)设计有效的缓解机制,使防御机制能够针对MIA和AIA提供公平的保护;进行广泛的社会研究,探索与公平隐私相关的重要社会问题,并利用社会科学塑造公平隐私的研究。将通过为STEM和社会科学课程开发新课程,让学生通过各种活动和学生社团参与研究,从而广泛传播研究成果。STEM和文科两个学科不同水平的学生将接触到安全、隐私和机器学习方面的尖端研究。该奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
Advances in the field of artificial intelligence and machine learning have resulted in algorithms and technologies for improving cybersecurity. However, machine learning is also vulnerable to novel and sophisticated privacy attacks that leak information about the data used for learning and prediction. For example, by accessing the prediction results of a machine learning model that discovers the genetic basis of a particular disease, the privacy attack can infer if a certain patient's clinical record was used to train this model. The privacy attack can be discriminatory in the sense that it has a higher successful rate for certain demographic groups (e.g., females) than the other groups (e.g., males). However, none of the existing defense mechanisms against these attacks consider such disparate vulnerability and thus perform disparate efforts across different groups. This raises the serious concern of fair privacy, i.e., how to ensure all groups and individuals are protected equitably?This project will address the core issues of fair privacy from both technical and social perspectives. The project has five research thrusts: (1) formalizing the concept of fair privacy quantitatively; (2) unveiling the existence of disparate vulnerability to two popularly-studied, machine learning enabled privacy attacks, namely membership inference attack (MIA) and attribute inference attack (AIA), and investigating the underlying causes of such vulnerability unfairness; (3) examining the fairness of the existing defense mechanisms against MIA and AIA, and studying how these defense mechanisms affect vulnerability unfairness; (4) designing effective mitigation mechanisms that enable the defense mechanisms to provide equitable protection against MIA and AIA; and (5) performing extensive social studies to explore important social issues related to fair privacy, and utilizing social science to shape the research of fair privacy. The research outcomes will be disseminated broadly through the development of new courses for both STEM and social sciences curricula, involving students into research through various events and student societies. Students at different levels in both disciplines of STEM and liberal arts will be exposed to cutting-edge research in security, privacy, and machine learning.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(3)
专著(0)
科研奖励(0)
会议论文
DOI:
10.56553/popets-2023-0103
发表时间:
2023-10
期刊:
Proc. Priv. Enhancing Technol.
影响因子:
--
作者:
[Da Zhong;Ruotong Yu;Kun Wu;Xiuling Wang;Jun Xu;Wendy Hui Wang]
通讯作者:
Da Zhong;Ruotong Yu;Kun Wu;Xiuling Wang;Jun Xu;Wendy Hui Wang
Understanding Disparate Effects of Membership Inference Attacks and their Countermeasures
了解成员推理攻击的不同影响及其对策
DOI:
10.1145/3488932.3501279
发表时间:
2022
期刊:
Proceedings of the 2022 ACM on Asia Conference on Computer and Communications Security
影响因子:
--
作者:
[Zhong, Da, Sun, Haipei, Xu, Jun, Gong, Neil, Wang, Wendy Hui]
通讯作者:
Wang, Wendy Hui
SaTC: CORE: Small: Securing Network Embedding against Privacy Attacks
-
批准号:2135988
-
项目类别:Standard Grant
-
资助金额:$49.99万
-
财政年份:2022
-
负责人:Wendy Hui Wang
-
依托单位:
SaTC-EDU: EAGER: Development and Evaluation of Privacy Education Tools via Open Collaboration
-
批准号:1464800
-
项目类别:Standard Grant
-
资助金额:$28.96万
-
财政年份:2015
-
负责人:Wendy Hui Wang
-
依托单位:
CAREER: Verifiable Outsourcing of Data Mining Computations
-
批准号:1350324
-
项目类别:Continuing Grant
-
资助金额:$47.12万
-
财政年份:2014
-
负责人:Wendy Hui Wang
-
依托单位:
国内基金
海外基金
登录
查看更多内容
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
-
批准号:82371765
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:谭广云
-
依托单位:
锕系元素5f-in-core的GTH赝势和基组的开发
-
批准号:22303037
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:鲁俊波
-
依托单位:
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
-
批准号:--
-
项目类别:--
-
资助金额:52万元
-
批准年份:2022
-
负责人:孙丙军
-
依托单位:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
-
批准号:--
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2022
-
负责人:叶成林
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:82072415
-
项目类别:面上项目
-
资助金额:55.0万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
-
批准号:92053110
-
项目类别:重大研究计划
-
资助金额:70.0万元
-
批准年份:2020
-
负责人:彭鹏
-
依托单位:
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
-
批准号:81902805
-
项目类别:青年科学基金项目
-
资助金额:20.5万元
-
批准年份:2019
-
负责人:刘菲
-
依托单位:
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
-
批准号:41973063
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2019
-
负责人:周游
-
依托单位:
CORDEX-CORE区域气候模拟与预估研讨会
-
批准号:41981240365
-
项目类别:国际(地区)合作与交流项目
-
资助金额:1.5万元
-
批准年份:2019
-
负责人:陈威霖
-
依托单位: