2006年,差分隐私保护作为一种新的隐私保护范式出现,因其不需要攻击者先验知识的假设,而被认为是一种非常可靠的保护机制。然而,作为隐私保护技术的主要参数ε的意义对于一般用户而言不十分明确。鉴于此,提出一个新的攻击模型,可以用来选取参数ε的值。详细分析了该攻击模型的特点,通过理论证明和模型的实证分析,最后给出了一个参数ε的选取计算式。
In 2006, differential privacy has emerged as a new paradigm for privacy protection with very conservative assumptions about the adversary's prior knowledge. It is believed that differential privacy mechanism can provide one of the strongest privacy guarantees. However, the meaning of the privacy budget parameter ε is still unclear for the general application users. In view of this, a new attack model, which can be used to choose the value for the parameter ε was proposed. A careful analytical study of the attack model and theoretical properties of the proposed approach was present.