An Enclave-Aided Byzantine-Robust Federated Aggregation Framework

被引:0
|
作者
Yao, Jingyi [1 ,2 ]
Song, Chen [1 ]
Li, Hongjia [1 ]
Wang, Yuxiang [1 ]
Yang, Qian [1 ]
Wang, Liming [1 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
D O I
10.1109/WCNC57260.2024.10570631
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning (FL) exhibits vulnerabilities to poisoning attacks, where Byzantine FL clients send malicious model updates to hamper the accuracy of the global model. However, these efforts are being circumvented by some more advanced stealthy poisoning attacks. In this paper, we propose an Enclave-aided Byzantine-robust Federated Aggregation (EBFA) framework. In particular, at each FL epoch, we first evaluate the layer-wise cosine similarity between the guide model (learned from an extra validation dataset) and local models, and then, utilize the boxplot method to construct a region of outliers to find Byzantine clients. To avoid the interference to the robust federated aggregation caused by classical privacy-preserving method, such as differential privacy and homomorphic encryption, we further design an efficient privacy-preserving scheme for robust aggregation via Trusted Execution Environment (TEE); and, to improve the efficiency, we only deploy the privacy-sensitive aggregation operations within resource limited TEE (or enclave). Finally, we perform extensive experiments on different datasets, and demonstrate that our proposed EBFA outperforms the state-of-the-art Byzantine-robust schemes (e.g., FLTrust) under non-IID settings. Moreover, our proposed enclave-aided privacy-preserving scheme could significantly improve the efficiency (over 40% for Alexnet) in comparison with the TEE-only scheme.
引用
收藏
页数:6
相关论文
共 50 条
  • [41] Byzantine-robust Federated Learning through Collaborative Malicious Gradient Filtering
    Xu, Jian
    Huang, Shao-Lun
    Song, Linqi
    Lan, Tian
    2022 IEEE 42ND INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2022), 2022, : 1223 - 1235
  • [42] FLGuard: Byzantine-Robust Federated Learning via Ensemble of Contrastive Models
    Lee, Younghan
    Cho, Yungi
    Han, Woorim
    Bae, Ho
    Paek, Yunheung
    COMPUTER SECURITY - ESORICS 2023, PT IV, 2024, 14347 : 65 - 84
  • [43] FedInv: Byzantine-Robust Federated Learning by Inversing Local Model Updates
    Zhao, Bo
    Sun, Peng
    Wang, Tao
    Jiang, Keyu
    THIRTY-SIXTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FOURTH CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE / TWELVETH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2022, : 9171 - 9179
  • [44] BFLMeta: Blockchain-Empowered Metaverse with Byzantine-Robust Federated Learning
    Vu Tuan Truong
    Hoang, Duc N. M.
    Long Bao Le
    IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 5537 - 5542
  • [45] PEAR: privacy-preserving and effective aggregation for byzantine-robust federated learning in real-world scenarios
    Sun, Han
    Zhang, Yan
    Zhuang, Huiping
    Li, Jiatong
    Xu, Zhen
    Wu, Liji
    COMPUTER JOURNAL, 2025,
  • [46] RSAM: Byzantine-Robust and Secure Model Aggregation in Federated Learning for Internet of Vehicles Using Private Approximate Median
    He, Yuanyuan
    Li, Peizhi
    Ni, Jianbing
    Deng, Xianjun
    Lu, Hongwei
    Zhang, Jie
    Yang, Laurence T.
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2024, 73 (05) : 6714 - 6726
  • [47] Byzantine robust aggregation in federated distillation with adversaries
    Li, Wenrui
    Gu, Hanlin
    Wan, Sheng
    Lu, Zhirong
    Xi, Wei
    Fan, Lixin
    Yang, Qiang
    Chen, Badong
    2024 IEEE 44TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS, ICDCS 2024, 2024, : 881 - 890
  • [48] Defense against local model poisoning attacks to byzantine-robust federated learning
    Shiwei Lu
    Ruihu Li
    Xuan Chen
    Yuena Ma
    Frontiers of Computer Science, 2022, 16
  • [49] Efficient Byzantine-Robust and Privacy-Preserving Federated Learning on Compressive Domain
    Hu, Guiqiang
    Li, Hongwei
    Fan, Wenshu
    Zhang, Yushu
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (04): : 7116 - 7127
  • [50] Byzantine-Robust Decentralized Learning via Remove-then-Clip Aggregation
    Yang, Caiyi
    Ghaderi, Javad
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 19, 2024, : 21735 - 21743