2025年4月30日
Sensitivity-Aware Differential Privacy for Federated Medical Imaging
Sensors
- Lele Zheng ,
- Yang Cao ,
- Masatoshi Yoshikawa ,
- Yulong Shen ,
- Essam A. Rashed ,
- Kenjiro Taura ,
- Shouhei Hanaoka ,
- Tao Zhang
- 巻
- 25
- 号
- 9
- 開始ページ
- 2847
- 終了ページ
- 2847
- 記述言語
- 英語
- 掲載種別
- 研究論文(学術雑誌)
- DOI
- 10.3390/s25092847
- 出版者・発行元
- Mdpi Ag
Federated learning (FL) enables collaborative model training across multiple institutions without the sharing of raw patient data, making it particularly suitable for smart healthcare applications. However, recent studies revealed that merely sharing gradients provides a false sense of security, as private information can still be inferred through gradient inversion attacks (GIAs). While differential privacy (DP) provides provable privacy guarantees, traditional DP methods apply uniform protection, leading to excessive protection for low-sensitivity data and insufficient protection for high-sensitivity data, which degrades model performance and increases privacy risks. This paper proposes a new privacy notion, sensitivity-aware differential privacy, to better balance model performance and privacy protection. Our idea is that the sensitivity of each data sample can be objectively measured using real-world attacks. To implement this new notion, we develop the corresponding defense mechanism that adjusts privacy protection levels based on the variation in the privacy leakage risks of gradient inversion attacks. Furthermore, the method extends naturally to multi-attack scenarios. Extensive experiments on real-world medical imaging datasets demonstrate that, under equivalent privacy risk, our method achieves an average performance improvement of 13.5% over state-of-the-art methods.
- ID情報
-
- DOI : 10.3390/s25092847
- eISSN : 1424-8220