Minimax Data Sanitization with Distortion Constraint and Adversarial Inference

📅 2025-07-23
📈 Citations: 0
Influential: 0
📄 PDF
🤖 AI Summary
This work addresses privacy-preserving data sharing by proposing a min–max data sanitization mechanism: given a distortion constraint under which an authorized party can reconstruct the original data, the method maximizes the minimal inference loss incurred by two unauthorized adversaries—each possessing correlated side information—thereby enforcing their cooperation for effective reconstruction. Methodologically, we formulate a bi-adversarial min–max optimization framework, integrate principles from lossy secret sharing, and employ data-driven adversarial training to alternately optimize the sanitizer, reconstructor, and two adversary models. Theoretically, we derive optimal solutions for Gaussian and binary variables. Crucially, this is the first work to explicitly model “collaborative recoverability” as a core privacy design objective—ensuring individual privacy while enabling controllable collective recoverability. Experiments demonstrate substantial increases in inference difficulty for unauthorized parties.

Technology Category

Application Category

📝 Abstract
We study a privacy-preserving data-sharing setting where a privatizer transforms private data into a sanitized version observed by an authorized reconstructor and two unauthorized adversaries, each with access to side information correlated with the private data. The reconstructor is evaluated under a distortion function, while each adversary is evaluated using a separate loss function. The privatizer ensures the reconstructor distortion remains below a fixed threshold while maximizing the minimum loss across the two adversaries. This two-adversary setting models cases where individual users cannot reconstruct the data accurately, but their combined side information enables estimation within the distortion threshold. The privatizer maximizes individual loss while permitting accurate reconstruction only through collaboration. This echoes secret-sharing principles, but with lossy rather than perfect recovery. We frame this as a constrained data-driven minimax optimization problem and propose a data-driven training procedure that alternately updates the privatizer, reconstructor, and adversaries. We also analyze the Gaussian and binary cases as special scenarios where optimal solutions can be obtained. These theoretical optimal results are benchmarks for evaluating the proposed minimax training approach.
Problem

Research questions and friction points this paper is trying to address.

Privacy-preserving data sharing with distortion constraints
Adversarial inference under correlated side information
Minimax optimization for sanitization and reconstruction balance
Innovation

Methods, ideas, or system contributions that make the work stand out.

Privacy-preserving data sanitization with distortion constraint
Minimax optimization for adversarial inference resistance
Data-driven training for privatizer and adversaries
🔎 Similar Papers
No similar papers found.
A
Amirarsalan Moatazedian
Helen and John C. Hartmann Department of Electrical and Computer Engineering, New Jersey Institute of Technology, Newark, New Jersey 07102, USA
Yauhen Yakimenka
Yauhen Yakimenka
Postdoctoral Research Associate, New Jersey Institute of Technology
coding theoryinformation theoryprivate information retrievalcompressed sensing
R
Rémi A. Chou
University of Texas at Arlington, Arlington, TX 76019, USA
J
Jörg Kliewer
Helen and John C. Hartmann Department of Electrical and Computer Engineering, New Jersey Institute of Technology, Newark, New Jersey 07102, USA