Hardening Confidential Federated Compute against Side-channel Attacks
This paper identifies side-channel vulnerabilities in Confidential Federated Compute platforms that could bypass differential privacy guarantees, demonstrating how DP can mitigate some of these risks.
Abstract
More Like ThisIn this work, we identify a set of side-channels in our Confidential Federated Compute platform that a hypothetical insider could exploit to circumvent differential privacy (DP) guarantees. We show how DP can mitigate two of the side-channels, one of which has been implemented in our open-source library.