In this paper, we study the concurrent composition of interactive mechanisms with adaptively chosen privacy-loss parameters. In this setting, the adversary can interleave queries to existing interactive mechanisms, as well as create new ones. We prove that every valid privacy filter and odometer for noninteractive mechanisms extends to the concurrent composition of interactive mechanisms if privacy loss is measured using $(\epsilon, \delta)$-DP, $f$-DP, or R\'enyi DP of fixed order. Our results offer strong theoretical foundations for enabling full adaptivity in composing differentially private interactive mechanisms, showing that concurrency does not affect the privacy guarantees. We also provide an implementation for users to deploy in practice.
翻译:本文研究具有自适应选择隐私损失参数的交互机制的并发组合问题。在此设置中,攻击者可以交叉查询现有交互机制,同时也可创建新的机制。我们证明,若使用固定阶的 $(\epsilon, \delta)$-DP、$f$-DP 或 Rényi DP 度量隐私损失,则所有针对非交互机制的有效隐私过滤器和里程表均可扩展至交互机制的并发组合。该结果为实现差分隐私交互机制的全自适应组合奠定了坚实的理论基础,表明并发性不会影响隐私保证。同时,我们还为实践部署提供了具体实现方案。