Review for NeurIPS paper: Auditing Differentially Private Machine Learning: How Private is Private SGD?
–Neural Information Processing Systems
All three reviewers support acceptance of this paper. They agree that providing lower bounds on the privacy guarantees of DP-SGD is an important problem and that the paper makes significant headway on this problem. It would be worthwhile to incorporate changes to the camera ready version of the paper clarifying some of Reviewer 1's questions.
artificial intelligence, auditing differentially private machine learning, neurips paper, (1 more...)
Neural Information Processing Systems
Feb-8-2025, 15:05:36 GMT
- Technology: