paper-with-me

Papers

Unveiling the Non-Monotonic Effect of Privacy on Generalization under Byzantine Robustness

2026-07-01 · Thomas Boudou, Batiste Le Bars, Nirupam Gupta, Aurélien Bellet arxiv

Recent work has established a fundamental trilemma between Byzantine robustness, local differential privacy (LDP), and optimization error in distributed learning. We show that this trilemma does not universally extend to generalization error, but instead depends critically on the privacy regime. Specifically, in the high-noise regime (strong privacy), we prove that increasing privacy reduces the generalization error, i.e., there is no tension between robustness and privacy. In the low-noise regime (weaker privacy), however, the tension between robustness and privacy reappears and increasing privacy indeed degrades generalization. Our theory explains this surprising non-monotonic behavior of the generalization error via matching lower and upper bounds on the algorithmic stability of Byzantine-robust distributed learning under LDP constraints. We corroborate and further analyze these theoretical findings with empirical evaluations.

📄 PDF Abstract BibTeX arXiv:2607.01492

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Unveiling m-Sharpness Through the Structure of Stochastic Gradient Noise

2025-09-22 · Haocheng Luo, Mehrtash Harandi, Dinh Phung, Trung Le arxiv

Sharpness-aware minimization (SAM) has emerged as a highly effective technique to improve model generalization, but its underlying principles are not fully understood. We investigate m-sharpness, where SAM performance im…

Dangerous Liaisons of Convex Learning and Non-Affine Aggregation

2026-06-26 · Thomas Boudou, Batiste Le Bars, Nirupam Gupta, Aurélien Bellet arxiv

Last-iterate convergence and generalization guarantees in first-order convex learning hinge on the monotonicity of the update operator. While linear averaging preserves the monotonicity of gradient updates, this property…

Whispers of Data: Unveiling Label Distributions in Federated Learning Through Virtual Client Simulation

2025-04-30 · Zhixuan Ma, Haichang Gao, Junxiang Huang, Ping Wang

Federated Learning enables collaborative training of a global model across multiple geographically dispersed clients without the need for data sharing. However, it is susceptible to inference attacks, particularly label …

Federated LearningInference Attack

Unveiling Privacy, Memorization, and Input Curvature Links

2024-02-28 · Deepak Ravikumar, Efstathia Soufleri, Abolfazl Hashemi, Kaushik Roy

Deep Neural Nets (DNNs) have become a pervasive tool for solving many emerging problems. However, they tend to overfit to and memorize the training set. Memorization is of keen interest since it is closely related to sev…

Memorization

DP-SGD vs PATE: Which Has Less Disparate Impact on GANs?

2021-11-26 · Georgi Ganev

Generative Adversarial Networks (GANs) are among the most popular approaches to generate synthetic data, especially images, for data sharing purposes. Given the vital importance of preserving the privacy of the individua…