Data Privacy (Fall 2026)

Course overview

This course asks how we can build useful data and AI systems without exposing the people behind them. For three real privacy failures and the defenses that answer them, see Why take this course?.

Who should enroll?

This course is open to all undergraduates.

Required preparation:

Helpful UVA courses, but not prerequisites:

No prior coursework in privacy, cybersecurity, machine learning, cryptography, or AI is required.

The optional readiness self-check gives a concrete picture of the programming, probability, and ML ideas used at the start of the course. It is ungraded and is not an enrollment requirement.

Course info

Announcements and assignment updates appear in Canvas. Use Canvas Inbox or email for questions that involve grades, accommodations, or other private matters.

Grading

Schedule

Week Tue Thu Milestones
01Aug 24-28

Course introduction

Privacy definitions and attack taxonomy

Readiness check
02Aug 31-Sep 4

Extraction and memorization

Membership inference and attack evaluation

03Sep 7-11

Security notions and adversarial ML overview

ML security attacks and LLM agent privacy surfaces

Lab 1 out
04Sep 14-18

Anonymization, linkage, and k-anonymity

Differential privacy: definitions and basic mechanisms

05Sep 21-25

Laplace and Gaussian mechanisms

Composition, selection, and sparse vector

Lab 1 due · Lab 2 out
06Sep 28-Oct 2

Private learning: DP-SGD and PATE

Advanced and local differential privacy

07Oct 5-9

No class: Fall Reading Days

Project pitch presentations

Project pitch
08Oct 12-16

Guest lecture: TEEs and confidential LLM serving

Closed-book paper Quiz 1

Quiz 1
09Oct 19-23

Introduction to privacy-enhancing technologies

Symmetric-key cryptography, hashes, and MACs

Lab 2 due · Lab 3 out
10Oct 26-30

Public-key cryptography and Diffie-Hellman

RSA, digital signatures, and timing attacks

Project proposal
11Nov 2-6

No class: Election Day

Secure multiparty computation

12Nov 9-13

MPC: secret sharing, malicious security, and oblivious transfer

Homomorphic encryption, zero knowledge, and verifiable computation

Lab 3 due · Lab 4 out
13Nov 16-20

Guest lecture: oblivious RAM (ORAM)

Closed-book paper Quiz 2

Quiz 2
14Nov 23-27

Network privacy and contextual integrity

No class: Thanksgiving recess

15Nov 30-Dec 4

Guest lecture: privacy in industry

Guest lecture: emerging privacy research

Lab 4 due
16Dec 7-11

Poster/demo session and course recap

No class: finals period

Poster/demo · Final report

More resources

AI access

Courses

Core differential privacy

Broader privacy, systems, and machine learning

Tutorials and practical guidance

Software

Lab and course libraries

Additional libraries

Books

Cryptography & MPC

Differential privacy