arXiv · 2003.01876
Privacy-preserving Learning via Deep Net Pruning
Abstract
This paper attempts to answer the question whether neural network pruning can be used as a tool to achieve differential privacy without losing much data utility. As a first step towards understanding the relationship between neural network pruning and differential privacy, this paper proves that pruning a given layer of the neural network is equivalent to adding a certain amount of differentially private noise to its hidden-layer activations. The paper also presents experimental results to show the practical implications of the theoretical finding and the key parameter values in a simple practical setting. These results show that neural network pruning can be a more effective alternative to adding differentially private noise for neural networks.
Explore related subjects
Keep this discovery
Yangsibo Huang, Yushan Su, Sachin Ravi, Zhao Song, Sanjeev Arora, Kai Li. 2020-03-04. Privacy-preserving Learning via Deep Net Pruning. https://arxiv.org/abs/2003.01876
Cite the original work for its findings. Save a collection to share your selection of sources.