Skip to main content

Showing 1–5 of 5 results for author: Mouzakis, A

.
  1. arXiv:2405.20405  [pdf, other

    cs.DS cs.CR cs.IT cs.LG stat.ML

    Private Mean Estimation with Person-Level Differential Privacy

    Authors: Sushant Agarwal, Gautam Kamath, Mahbod Majid, Argyris Mouzakis, Rose Silver, Jonathan Ullman

    Abstract: We study differentially private (DP) mean estimation in the case where each person holds multiple samples. Commonly referred to as the "user-level" setting, DP here requires the usual notion of distributional stability when all of a person's datapoints can be modified. Informally, if $n$ people each have $m$ samples from an unknown $d$-dimensional distribution with bounded $k$-th moments, we show… ▽ More

    Submitted 30 May, 2024; originally announced May 2024.

    Comments: 67 pages, 3 figures

  2. arXiv:2402.00267  [pdf, ps, other

    cs.DS cs.CR stat.ML

    Not All Learnable Distribution Classes are Privately Learnable

    Authors: Mark Bun, Gautam Kamath, Argyris Mouzakis, Vikrant Singhal

    Abstract: We give an example of a class of distributions that is learnable in total variation distance with a finite number of samples, but not learnable under $(\varepsilon, δ)$-differential privacy. This refutes a conjecture of Ashtiani.

    Submitted 5 February, 2024; v1 submitted 31 January, 2024; originally announced February 2024.

    Comments: To appear in ALT 2024. Added a minor clarification to the construction and an acknowledgement of the Fields Institute

  3. arXiv:2301.13334  [pdf, ps, other

    math.ST cs.CR cs.DS stat.ML

    A Bias-Variance-Privacy Trilemma for Statistical Estimation

    Authors: Gautam Kamath, Argyris Mouzakis, Matthew Regehr, Vikrant Singhal, Thomas Steinke, Jonathan Ullman

    Abstract: The canonical algorithm for differentially private mean estimation is to first clip the samples to a bounded range and then add noise to their empirical mean. Clip** controls the sensitivity and, hence, the variance of the noise that we add for privacy. But clip** also introduces statistical bias. We prove that this tradeoff is inherent: no algorithm can simultaneously have low bias, low varia… ▽ More

    Submitted 28 February, 2023; v1 submitted 30 January, 2023; originally announced January 2023.

  4. arXiv:2205.08532  [pdf, ps, other

    cs.DS cs.CR stat.ML

    New Lower Bounds for Private Estimation and a Generalized Fingerprinting Lemma

    Authors: Gautam Kamath, Argyris Mouzakis, Vikrant Singhal

    Abstract: We prove new lower bounds for statistical estimation tasks under the constraint of $(\varepsilon, δ)$-differential privacy. First, we provide tight lower bounds for private covariance estimation of Gaussian distributions. We show that estimating the covariance matrix in Frobenius norm requires $Ω(d^2)$ samples, and in spectral norm requires $Ω(d^{3/2})$ samples, both matching upper bounds up to lo… ▽ More

    Submitted 28 March, 2023; v1 submitted 17 May, 2022; originally announced May 2022.

    Comments: NeurIPS 2022. Minor correction to the discussion of independent work

  5. arXiv:2111.04609  [pdf, ps, other

    stat.ML cs.CR cs.DS cs.IT cs.LG

    A Private and Computationally-Efficient Estimator for Unbounded Gaussians

    Authors: Gautam Kamath, Argyris Mouzakis, Vikrant Singhal, Thomas Steinke, Jonathan Ullman

    Abstract: We give the first polynomial-time, polynomial-sample, differentially private estimator for the mean and covariance of an arbitrary Gaussian distribution $\mathcal{N}(μ,Σ)$ in $\mathbb{R}^d$. All previous estimators are either nonconstructive, with unbounded running time, or require the user to specify a priori bounds on the parameters $μ$ and $Σ$. The primary new technical tool in our algorithm is… ▽ More

    Submitted 11 February, 2022; v1 submitted 8 November, 2021; originally announced November 2021.