Skip to content

Two-Stage NAS for On-Device Privacy Preservation Across Heterogeneous Computational Resources

Oct 2026 · IEEE Transactions on Mobile Computing · Vol 25, pp. 18814-18831 · 0 citations · 72 references

Abstract

Edge devices handle sensitive user data, raising significant security and privacy concerns when shared with data collectors for downstream learning tasks. One potential solution leverages differentially private generative models, keeping original data on user devices and creating obfuscated variants for transmission. However, this approach presents two challenges: 1) Obfuscated data that closely resembles the original compromises privacy, whereas excessive dissimilarity diminishes its utility. 2) Diverse computing capabilities of edge devices hinder deploying such models across hardware platforms. To address these issues, we first introduce Differential Privacy with Adaptive Clipping and Noise Scaling (DP-ACNS), which dynamically adjusts privacy parameters to better balance privacy and utility than conventional DP training. Next, to overcome deployment challenges, we propose a two-stage Neural Architecture Search (NAS) approach. In Stage 1, we utilize DP-ACNS to centrally train an over-parameterized network on proxy data. Following this, we iteratively apply symmetric pruning with subsequent knowledge distillation to generate pretrained architectures. In Stage 2, we conduct a feedback-driven evolutionary search to identify optimal architectures that meet edge computational constraints, and adapt them via minimal fine-tuning on target devices. Experimental results demonstrate that our approach effectively balances privacy and utility while maintaining performance across diverse computational environments in edge computing.

View source

Similar papers

#artificial intelligence Preprint Aug 2026

Auditing and Mitigating Privacy Leakage in Cloud-Edge Collaborative Decoding

CoVeil is proposed, a defense mechanism which dynamically optimizes transmitted signals to suppress leakage during decoding time while preserving the collaborative quality, and consistently improves the privacy-utility trade-off over existing baselines by reducing data leakage.

Ke-Jia Zhang, Tianyuan Zou, Zi-Xuan Gu et al. · 0 citations
2026

PI-SAFE: Practical Privacy-Preserving LLM Inference With Adversarial Fine-Tuning for Optimized Utility

Cloud-based Large Language Model (LLM) inference services typically require users to submit plain-text inputs, thereby posing severe privacy risks. Existing privacy-preserving paradigms are mostly task-specific and often necessitate pervasive modifications to the entire server-side model. This reliance introduces subst...

Wentao Zhong, Yu-Ting Li, Di-Cong Yu et al. · 0 citations

Doppio : Communication-Efficient and Secure Multi-Party Shuffle Differential Privacy

The augmented multi-party shuffle DP (AMP-SDP) model is proposed, which re-architects the data pipeline with a lightweight, versatile secret-shared intermediary layer that decentralizes trust while minimizing online communication costs and provides structural security hardening against both shuffler compromise and user-sid...

Wentao Dong, Yang Cao, Cong Wang et al. · 0 citations
Conference Aug 2026

Federated Learning Architectures and Communication-Efficient Optimisation for Privacy-Preserving Distributed AI Systems

Federated learning (FL) trains a shared model across data holders that cannot pool their records, but deployments remain bounded by three coupled costs: uplink traffic from repeated model exchange, accuracy loss under statistically heterogeneous clients, and the information that updates still leak. These are usually at...

Harshavardhan Peddireddy, Sandeep Kumar Gadde, Prasad Bheemavarapu et al. · 0 citations
#machine learning Preprint Sep 2026

Privacy-Preserving Split Learning for Federated LLM Fine-Tuning

This work addresses leakage through a learned obfuscate-and-recover scheme that protects participants' private datasets while still allowing an independently deployable model to be trained on the server side, making split-based federated LLM fine-tuning practically viable.

Heng Jin, Chao-Yu Zhang, He-Xuan Yu et al. · 1 citation

Related blog posts

Microsoft Research Blog Oct 6, 2026

What AI gets wrong and what failure teaches us

Jennifer Neville did not want to go into computer science—but that’s exactly where she landed. Neville discusses the starts and stops that led to her professional sweet spot and her work identifying “surprising failures” making it hard for AI to handle complexity.  The post What AI gets wrong and what failure teaches us appeared first on Microsoft Research.

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.