{"id":"https://openalex.org/W7141562204","doi":"https://doi.org/10.48550/arxiv.2603.24695","title":"Amplified Patch-Level Differential Privacy for Free via Random Cropping","display_name":"Amplified Patch-Level Differential Privacy for Free via Random Cropping","publication_year":2026,"publication_date":"2026-03-25","ids":{"openalex":"https://openalex.org/W7141562204","doi":"https://doi.org/10.48550/arxiv.2603.24695"},"language":null,"primary_location":{"id":"doi:10.48550/arxiv.2603.24695","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.24695","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"type":"preprint","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.48550/arxiv.2603.24695","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5130758244","display_name":"Kaan Durmaz","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Durmaz, Kaan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019619325","display_name":"Jan Schuchardt","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Schuchardt, Jan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5130729211","display_name":"Sebastian Schmidt","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Schmidt, Sebastian","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5074504351","display_name":"Stephan G\u00fcnnemann","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"G\u00fcnnemann, Stephan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":4,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.944599986076355,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.944599986076355,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.011900000274181366,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.008500000461935997,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/randomness","display_name":"Randomness","score":0.8673999905586243},{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.7087000012397766},{"id":"https://openalex.org/keywords/stochastic-gradient-descent","display_name":"Stochastic gradient descent","score":0.5192999839782715},{"id":"https://openalex.org/keywords/sampling","display_name":"Sampling (signal processing)","score":0.4959000051021576},{"id":"https://openalex.org/keywords/estimator","display_name":"Estimator","score":0.41609999537467957},{"id":"https://openalex.org/keywords/face","display_name":"Face (sociological concept)","score":0.3928000032901764},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.3596000075340271},{"id":"https://openalex.org/keywords/relation","display_name":"Relation (database)","score":0.35740000009536743}],"concepts":[{"id":"https://openalex.org/C125112378","wikidata":"https://www.wikidata.org/wiki/Q176640","display_name":"Randomness","level":2,"score":0.8673999905586243},{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.7087000012397766},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6162999868392944},{"id":"https://openalex.org/C206688291","wikidata":"https://www.wikidata.org/wiki/Q7617819","display_name":"Stochastic gradient descent","level":3,"score":0.5192999839782715},{"id":"https://openalex.org/C140779682","wikidata":"https://www.wikidata.org/wiki/Q210868","display_name":"Sampling (signal processing)","level":3,"score":0.4959000051021576},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.42809998989105225},{"id":"https://openalex.org/C185429906","wikidata":"https://www.wikidata.org/wiki/Q1130160","display_name":"Estimator","level":2,"score":0.41609999537467957},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.4032999873161316},{"id":"https://openalex.org/C2779304628","wikidata":"https://www.wikidata.org/wiki/Q3503480","display_name":"Face (sociological concept)","level":2,"score":0.3928000032901764},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.365200012922287},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.3596000075340271},{"id":"https://openalex.org/C25343380","wikidata":"https://www.wikidata.org/wiki/Q277521","display_name":"Relation (database)","level":2,"score":0.35740000009536743},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.34060001373291016},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.3197000026702881},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.31630000472068787},{"id":"https://openalex.org/C36503486","wikidata":"https://www.wikidata.org/wiki/Q11235244","display_name":"Domain (mathematical analysis)","level":2,"score":0.3118000030517578},{"id":"https://openalex.org/C93226319","wikidata":"https://www.wikidata.org/wiki/Q193137","display_name":"Differential (mechanical device)","level":2,"score":0.3052999973297119},{"id":"https://openalex.org/C8272713","wikidata":"https://www.wikidata.org/wiki/Q176737","display_name":"Stochastic process","level":2,"score":0.3025999963283539},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.30079999566078186},{"id":"https://openalex.org/C160920958","wikidata":"https://www.wikidata.org/wiki/Q7662746","display_name":"Synthetic data","level":2,"score":0.30059999227523804},{"id":"https://openalex.org/C89600930","wikidata":"https://www.wikidata.org/wiki/Q1423946","display_name":"Segmentation","level":2,"score":0.2996000051498413},{"id":"https://openalex.org/C153258448","wikidata":"https://www.wikidata.org/wiki/Q1199743","display_name":"Gradient descent","level":3,"score":0.2800999879837036},{"id":"https://openalex.org/C99221444","wikidata":"https://www.wikidata.org/wiki/Q1532069","display_name":"Private information retrieval","level":2,"score":0.27720001339912415},{"id":"https://openalex.org/C2778152352","wikidata":"https://www.wikidata.org/wiki/Q5165061","display_name":"Content (measure theory)","level":2,"score":0.275299996137619},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.2655999958515167},{"id":"https://openalex.org/C151201525","wikidata":"https://www.wikidata.org/wiki/Q177239","display_name":"Limit (mathematics)","level":2,"score":0.2538999915122986}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.48550/arxiv.2603.24695","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.24695","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"doi:10.48550/arxiv.2603.24695","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2603.24695","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"article"},"sustainable_development_goals":[{"display_name":"Reduced inequalities","id":"https://metadata.un.org/sdg/10","score":0.41061893105506897}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Random":[0],"cropping":[1,53],"is":[2,42],"one":[3],"of":[4,17,68,183],"the":[5,15,60,134,160],"most":[6],"common":[7],"data":[8,113],"augmentation":[9],"techniques":[10],"in":[11,21,39,70,78],"computer":[12],"vision,":[13],"yet":[14],"role":[16],"its":[18],"inherent":[19],"randomness":[20,88,184],"training":[22,73,99],"differentially":[23,71,120],"private":[24,72,121],"machine":[25],"learning":[26],"models":[27],"has":[28],"thus":[29],"far":[30],"gone":[31],"unexplored.":[32],"We":[33,101],"observe":[34],"that":[35,57,156,172],"when":[36,126],"sensitive":[37],"content":[38,58],"an":[40],"image":[41],"spatially":[43],"localized,":[44],"such":[45],"as":[46],"a":[47,65,107,148],"face":[48],"or":[49,98],"license":[50],"plate,":[51],"random":[52,129],"can":[54,185],"probabilistically":[55],"exclude":[56],"from":[59],"model's":[61],"input.":[62],"This":[63,86],"introduces":[64],"third":[66],"source":[67],"stochasticity":[69],"with":[74,128,143,176],"stochastic":[75,122],"gradient":[76,81,123],"descent,":[77],"addition":[79],"to":[80,95,146],"noise":[82],"and":[83,114,138,167,179],"minibatch":[84,144],"sampling.":[85],"additional":[87,180,191],"amplifies":[89],"differential":[90],"privacy":[91,117,174],"without":[92],"requiring":[93],"changes":[94],"model":[96],"architecture":[97],"procedure.":[100],"formalize":[102],"this":[103],"effect":[104],"by":[105],"introducing":[106],"patch-level":[108,157],"neighboring":[109],"relation":[110],"for":[111,119],"vision":[112],"deriving":[115],"tight":[116],"bounds":[118],"descent":[124],"(DP-SGD)":[125],"combined":[127],"cropping.":[130],"Our":[131,169],"analysis":[132],"quantifies":[133],"patch":[135],"inclusion":[136],"probability":[137],"shows":[139],"how":[140],"it":[141],"composes":[142],"sampling":[145,151],"yield":[147,186],"lower":[149],"effective":[150],"rate.":[152],"Empirically,":[153],"we":[154],"validate":[155],"amplification":[158],"improves":[159],"privacy-utility":[161],"trade-off":[162],"across":[163],"multiple":[164],"segmentation":[165],"architectures":[166],"datasets.":[168],"results":[170],"demonstrate":[171],"aligning":[173],"accounting":[175],"domain":[177],"structure":[178],"existing":[181],"sources":[182],"stronger":[187],"guarantees":[188],"at":[189],"no":[190],"cost.":[192]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-03-28T00:00:00"}
