2025
Tighter Privacy Auditing of DP-SGD in the Hidden State Threat Model
ICLR 2025poster
Machine learning models can be trained with formal privacy guarantees via differentially private optimizers such as DP-SGD. In this work, we focus on a threat model where the adversary has access only to the final model, with no visibility into intermediate updates. In the literature, this ``hidden…