In this work, we identify a set of side-channels in our Confidential Federated Compute platform that a hypothetical insider could exploit to circumvent differential privacy (DP) guarantees. We show how DP can mitigate two of the side-channels, one of which has been implemented in our open-source library.
翻译:在本工作中,我们识别出机密联邦计算平台中存在的一组侧信道漏洞,假设的内部威胁者可利用这些漏洞规避差分隐私(DP)保护机制。我们展示了DP如何缓解其中两种侧信道风险,其中一种缓解方案已在我们开源的代码库中实现。