• Home
  • Search
  • Image Classification Based on Layered Gradient Clipping Under Differential Privacy
  • Cite Icon6
  • https://doi.org/10.1109/access.2023.3249575Copy DOI Icon

Image Classification Based on Layered Gradient Clipping Under Differential Privacy

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Convolutional neural networks (CNNs) are widely used in the field of image classification. At the same time, users face the risk of privacy leakage because adversaries can reverse private information from the training parameters of CNNs. Adding Gaussian noise to the training parameters is an effective means to prevent adversaries from stealing private, but this tends to reduce the utility of the models. Therefore, how to find a balance between privacy and utility has become a hot research topic. In this paper, to improve the image classification ability of CNN models under differential privacy protection, we propose an image classification algorithm based on layered gradient clipping under differential privacy, ICGC-DP for short. Firstly, the gradient tensor is layered according to the neural network model. Secondly, for each layered gradient tensor, the median of <inline-formula xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink"> <tex-math notation="LaTeX">${L_{2}}$ </tex-math></inline-formula> norms is used as the clipping threshold. Moreover, to prevent the sensitivity from converging to zero, we add a bound on the sensitivity to ensure that all gradients can be protected by differential privacy. To further improve the classification utility of ICGC-DP, we design an adaptive weighted fusion module for it. The module assigns weights to prediction tensors according to the variance between them. We conduct comprehensive experiments on the Mnist, FashionMnist and CIFAR10 datasets, respectively. The experimental results show that, when the privacy budget <inline-formula xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink"> <tex-math notation="LaTeX">$\varepsilon = 2.0$ </tex-math></inline-formula> , which indicates that the algorithm adds a large noise, ICGC-DP achieves 97.36%, 88.72% and 72.63% classification accuracy for the Minist, FasionMnist and CIFAR10 datasets, respectively; when the privacy budget <inline-formula xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink"> <tex-math notation="LaTeX">$\varepsilon = 8.0$ </tex-math></inline-formula> , which means the algorithm adds less noise, the classification accuracy of ICGC-DP for Minist, FasionMnist and CIFAR10 datasets reaches 97.81%, 89.49% and 74.41%, respectively.

Similar Papers
  • Conference Article
  • Citations1

A Convolutional Hierarchical Neural Network Classifier

  • Dec 06, 2021
  • Ismail Gadzhiev +1
  • Research Article
  • Citations1

Improving Privacy Budget Auditing of Differentially Private Artificial Intelligence Models Through Variance of Model Parameters

  • Jan 01, 2025
  • IEEE Transactions on Information Forensics and Security
  • Weixin Zhao +6
  • Research Article
  • Citations2

An Asynchronous Federated Learning Aggregation Method Based on Adaptive Differential Privacy

  • Jul 16, 2025
  • Electronics
  • Jiawen Wu +5
  • Research Article
  • Citations2

Comparison of CNN Architecture of Image Classification Using CIFAR10 Datasets

  • Dec 21, 2023
  • International Journal on Engineering Technology
  • Yogesh Pant +4
  • Conference Article
  • Citations3

Exploration of Membership Inference Attack on Convolutional Neural Networks and Its Defenses

  • Oct 28, 2022
  • Yimian Yao
  • Book Chapter

Location Differential Privacy Protection Method Based on Generative Adversarial Network

  • Jan 01, 2022
  • Zhihan Wang +1
  • Research Article

ANALYSIS OF THE IMPACT OF PRELIMINARY NOISY IMAGE RESTORATION BY AUTOCODER ON THE ACCURACY OF CNN CLASSIFICATION

  • Dec 29, 2025
  • Bulletin of National Technical University "KhPI". Series: System Analysis, Control and Information Technologies
  • Danylo Yakovlev +2
  • Research Article
  • Citations2

Differential privacy protection algorithm for large data sources based on normalized information entropy Bayesian network

  • Aug 01, 2024
  • Journal of Physics: Conference Series
  • Guangyuan Ni +1
  • Research Article

A Privacy Protection Method for Power User Profiles That Integrates Improved Differential Privacy and Secret Sharing

  • Dec 09, 2025
  • SECURITY AND PRIVACY
  • Yun Fu +3
  • Research Article
  • Citations2

Web-aided data set expansion in deep learning: evaluating trainable activation functions in ResNet for improved image classification

  • Jul 12, 2024
  • International Journal of Web Information Systems
  • Zhiqiang Zhang +5
  • Book Chapter
  • Citations10

Optimal Distribution of Privacy Budget in Differential Privacy

  • Jan 01, 2019
  • Anis Bkakria +5
  • PDF
  • Research Article
  • Citations37

A Differential Privacy Support Vector Machine Classifier Based on Dual Variable Perturbation

  • Jan 01, 2019
  • IEEE Access
  • Yaling Zhang +2
  • Conference Article
  • Citations5

Architecturally Compressed CNN: An Embedded Realtime Classifier (NXP Bluebox2.0 with RTMaps)

  • Jan 01, 2019
  • Durvesh Pathak +1
  • Conference Article
  • Citations8

Differential Privacy Stochastic Gradient Descent with Adaptive Privacy Budget Allocation

  • Jan 15, 2021
  • Yun Xie +3
  • Conference Article

Sensitivity Support in Data Privacy Algorithms

  • Aug 26, 2022
  • Geocey Shejy +1
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.