MATFL: Defending Against Synergetic Attacks in Federated Learning

被引:0
|
作者
Yang, Wen [1 ,2 ]
Peng, Luyao [1 ,2 ]
Tang, Xiangyun [1 ,2 ]
Weng, Yu [1 ,2 ]
机构
[1] Minzu Univ China, Sch Informat Engn, Beijing, Peoples R China
[2] Minzu Univ China, Key Lab Ethn Language Intelligent Anal & Secur Go, Beijing, Peoples R China
基金
国家重点研发计划;
关键词
federated learning; synergetic attacks; defence; adversarial samples; backdoor;
D O I
10.1109/iThings-GreenCom-CPSCom-SmartData-Cybermatics60724.2023.00072
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Federated Learning(FL) is a promising distributed learning architecture. However, it faces significant threats from malicious attacks, including adversarial samples and backdoor attacks. Although some work has proposed defences against these two types of attacks, there are already attacks that combine the two, known as synergetic attacks. This synergetic attack typically uses adversarial samples to create triggers and then implants a trojan into the global model via a backdoor attack. which has not been defended by previous single defence strategies and has not received any attention. To the best of our knowledge, we are the first to focus on this type of synergistic attacks in FL. To address this issue, we propose MATFL, which introduces majority aggregation into the adversarial learning framework. We conduct extensive experiments to analyze the effectiveness and aggregation efficiency of MATFL considering five defense methods across four attack scenarios. The results demonstrate that our MATFL can effectively defend against synergetic attacks while striking a balance between defence effectiveness, global model accuracy, and aggregation efficiency.
引用
收藏
页码:313 / 319
页数:7
相关论文
共 50 条
  • [31] Defending against Backdoors in Federated Learning with Robust Learning Rate
    Ozdayi, Mustafa Safa
    Kantarcioglu, Murat
    Gel, Yulia R.
    THIRTY-FIFTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THIRTY-THIRD CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE AND THE ELEVENTH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2021, 35 : 9268 - 9276
  • [32] Virtual Homogeneity Learning: Defending against Data Heterogeneity in Federated Learning
    Tang, Zhenheng
    Zhang, Yonggang
    Shi, Shaohuai
    He, Xin
    Han, Bo
    Chu, Xiaowen
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 162, 2022,
  • [33] Defending Deep Learning Models Against Adversarial Attacks
    Mani, Nag
    Moh, Melody
    Moh, Teng-Sheng
    INTERNATIONAL JOURNAL OF SOFTWARE SCIENCE AND COMPUTATIONAL INTELLIGENCE-IJSSCI, 2021, 13 (01): : 72 - 89
  • [34] An Accuracy-Lossless Perturbation Method for Defending Privacy Attacks in Federated Learning
    Yang, Xue
    Feng, Yan
    Fang, Weijun
    Shao, Jun
    Tang, Xiaohu
    Xia, Shu-Tao
    Lu, Rongxing
    PROCEEDINGS OF THE ACM WEB CONFERENCE 2022 (WWW'22), 2022, : 732 - 742
  • [35] OQFL: An Optimized Quantum-Based Federated Learning Framework for Defending Against Adversarial Attacks in Intelligent Transportation Systems
    Yamany, Waleed
    Moustafa, Nour
    Turnbull, Benjamin
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (01) : 893 - 903
  • [36] Efficient and Secure Federated Learning Against Backdoor Attacks
    Miao, Yinbin
    Xie, Rongpeng
    Li, Xinghua
    Liu, Zhiquan
    Choo, Kim-Kwang Raymond
    Deng, Robert H.
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4619 - 4636
  • [37] Label Inference Attacks Against Vertical Federated Learning
    Fu, Chong
    Zhang, Xuhong
    Ji, Shouling
    Chen, Jinyin
    Wu, Jingzheng
    Guo, Shanqing
    Zhou, Jun
    Liu, Alex X.
    Wang, Ting
    PROCEEDINGS OF THE 31ST USENIX SECURITY SYMPOSIUM, 2022, : 1397 - 1414
  • [38] Data Poisoning Attacks Against Federated Learning Systems
    Tolpegin, Vale
    Truex, Stacey
    Gursoy, Mehmet Emre
    Liu, Ling
    COMPUTER SECURITY - ESORICS 2020, PT I, 2020, 12308 : 480 - 501
  • [39] Attacks against Federated Learning Defense Systems and their Mitigation
    Lewis, Cody
    Varadharajan, Vijay
    Noman, Nasimul
    JOURNAL OF MACHINE LEARNING RESEARCH, 2023, 24
  • [40] DEFEAT: A decentralized federated learning against gradient attacks
    Lu, Guangxi
    Xiong, Zuobin
    Li, Ruinian
    Mohammad, Nael
    Li, Yingshu
    Li, Wei
    HIGH-CONFIDENCE COMPUTING, 2023, 3 (03):