What Can Differential Privacy Actually Protect?

Differential Privacy (DP) is, by now, the most widely adopted formal model of privacy protection used in industry [L23] and government [ABS22] but my sense is that its “semantics”, especially in the presence of correlated data and in the adversarial interactive setting, is still not broadly understood in the community, especially among practitioners. In the … More What Can Differential Privacy Actually Protect?

Privacy-Preserving Reinforcement Learning for Population Processes

We have just released another paper on arXiv: https://arxiv.org/abs/2406.17649 Here’s the abstract: We consider the problem of privacy protection in Reinforcement Learning (RL) algorithms that operate over population processes, a practical but understudied setting that includes, for example, the control of epidemics in large populations of dynamically interacting individuals. In this setting, the RL algorithm … More Privacy-Preserving Reinforcement Learning for Population Processes

Notes on the Bretagnolle-Huber Inequality

The Bretagnolle-Huber Inequality provides a bound on the total variation distance between two probability distributions in terms of their Kullback-Leibler divergence, and it is better than Pinsker’s Inequality when the KL divergence is larger than two, and it is never vacuous, as shown in this figure from [Canonne2023]. The following is an elementary proof, which … More Notes on the Bretagnolle-Huber Inequality

Improving the Quality of the Responsible AI Conversations

I have been incredibly frustrated with the lack of quality and content in many responsible AI (RAI) conversations. Almost all the (non-academic) RAI meetings I attended these past 12 months involve the speakers repeating words like fairness, accountability, and transparency basically for the entire duration of the meeting, with everyone nodding furiously in agreement about … More Improving the Quality of the Responsible AI Conversations

How To Deal with Database Reconstruction Attacks

I have been thinking about data security issues, in particular database-reconstruction attacks. To quote Wikipedia, a reconstruction attack is any method for partially reconstructing a private database from public aggregate information. The question I am specifically interested in is this: Can an attacker with general interactive query access to a dataset recover a piece of … More How To Deal with Database Reconstruction Attacks

Influence Flower

Regular users of arXiv.org may have noticed that on every paper’s page, under the Related Papers tab, one can now find the paper’s Influence Flower, which is a nice way to visualise citation influences among academic entities, including papers, authors, institutions, and research topics. The following, for example, are the author-centric and venue-centric influence flowers … More Influence Flower

Dynamic Knowledge Injection for AIXI Agents

My phd student just got a new paper accepted at the upcoming AAAI Conference on Artificial Intelligence. Here’s the abstract of the paper: Prior approximations of AIXI, a Bayesian optimality notion for general reinforcement learning, can only approximate AIXI’s Bayesian environment model using an a-priori defined set of models. This is a fundamental source of … More Dynamic Knowledge Injection for AIXI Agents

Variational Inference for Scalable 3D Object-centric Learning

My phd student has just released a paper on 3D Object-Centric Learning on arXiv. I am pretty proud of the work, although I really only understand around 40% of it. Here’s the abstract: We tackle the task of scalable unsupervised object-centric representation learning on 3D scenes. Existing approaches to object-centric representation learning show limitations in … More Variational Inference for Scalable 3D Object-centric Learning

A Simple Definition of Artificial Intelligence

There are many different definitions of Artificial Intelligence in the literature, all are suggestive and insightful. However, at the end of the day, I think there is really one simple enough to be understood and formalised rigorously. This is John McCarthy’s original definition of AI from 1955: “the science and engineering of making intelligent machines”. … More A Simple Definition of Artificial Intelligence

FinTracer and Friends

About 5 years ago, Tania Churchill and I assembled a team of researchers and engineers across AUSTRAC and ANU to work on privacy technologies for detecting criminal activities across the financial system, funded by the Fintel Alliance Expansion budget measure, the Investigative Analytics NPP (led by CSIRO’s Data61), and an ANU Translational Fellowship. The overall … More FinTracer and Friends