A Framework for Evaluating Client Privacy Leakages in Federated Learning

被引:42
|
作者
Wei, Wenqi [1 ]
Liu, Ling [1 ]
Loper, Margaret [1 ]
Chow, Ka-Ho [1 ]
Gursoy, Mehmet Emre [1 ]
Truex, Stacey [1 ]
Wu, Yanzhao [1 ]
机构
[1] Georgia Inst Technol, Atlanta, GA 30332 USA
来源
关键词
Privacy leakage attacks; Federated learning; Attack evaluation framework;
D O I
10.1007/978-3-030-58951-6_27
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Federated learning (FL) is an emerging distributed machine learning framework for collaborative model training with a network of clients (edge devices). FL offers default client privacy by allowing clients to keep their sensitive data on local devices and to only share local training parameter updates with the federated server. However, recent studies have shown that even sharing local parameter updates from a client to the federated server may be susceptible to gradient leakage attacks and intrude the client privacy regarding its training data. In this paper, we present a principled framework for evaluating and comparing different forms of client privacy leakage attacks. We first provide formal and experimental analysis to show how adversaries can reconstruct the private local training data by simply analyzing the shared parameter update from local training (e.g., local gradient or weight update vector). We then analyze how different hyperparameter configurations in federated learning and different settings of the attack algorithm may impact on both attack effectiveness and attack cost. Our framework also measures, evaluates, and analyzes the effectiveness of client privacy leakage attacks under different gradient compression ratios when using communication efficient FL protocols. Our experiments additionally include some preliminary mitigation strategies to highlight the importance of providing a systematic attack evaluation framework towards an in-depth understanding of the various forms of client privacy leakage threats in federated learning and developing theoretical foundations for attack mitigation.
引用
收藏
页码:545 / 566
页数:22
相关论文
共 50 条
  • [21] A Verifiable and Privacy-Preserving Federated Learning Training Framework
    Duan, Haohua
    Peng, Zedong
    Xiang, Liyao
    Hu, Yuncong
    Li, Bo
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 5046 - 5058
  • [22] A Cross-Client Coordinator in Federated Learning Framework for Conquering Heterogeneity
    Huang, Sheng
    Fu, Lele
    Li, Yuecheng
    Chen, Chuan
    Zheng, Zibin
    Dai, Hong-Ning
    [J]. IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024,
  • [23] HDFL: A Heterogeneity and Client Dropout-Aware Federated Learning Framework
    Zawad, Syed
    Anwar, Ali
    Zhou, Yi
    Baracaldo, Nathalie
    Yan, Feng
    [J]. 2023 IEEE/ACM 23RD INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND INTERNET COMPUTING, CCGRID, 2023, : 311 - 321
  • [24] Design and Development of Server-Client Cooperation Framework for Federated Learning
    Park, Jongbin
    Kum, Seung Woo
    [J]. 2022 THIRTEENTH INTERNATIONAL CONFERENCE ON UBIQUITOUS AND FUTURE NETWORKS (ICUFN), 2022, : 271 - 273
  • [25] Federated Learning and Privacy
    Bonawitz, Kallista
    Kairouz, Peter
    Mcmahan, Brendan
    Ramage, Daniel
    [J]. COMMUNICATIONS OF THE ACM, 2022, 65 (04) : 90 - 97
  • [26] InvisibleFL: Federated Learning over Non-Informative Intermediate Updates against Multimedia Privacy Leakages
    Li, Qiushi
    Zhu, Wenwu
    Wu, Chao
    Pan, Xinglin
    Yang, Fan
    Zhou, Yuezhi
    Zhang, Yaoxue
    [J]. MM '20: PROCEEDINGS OF THE 28TH ACM INTERNATIONAL CONFERENCE ON MULTIMEDIA, 2020, : 753 - 762
  • [27] FedDCS: A distributed client selection framework for cross device federated learning
    Panigrahi, Monalisa
    Bharti, Sourabh
    Sharma, Arun
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 144 : 24 - 36
  • [28] Federated Learning and Privacy
    Bonawitz, Kallista
    Kairouz, Peter
    McMahan, Brendan
    Ramage, Daniel
    [J]. Queue, 2021, 19 (05): : 87 - 114
  • [29] Federated Noisy Client Learning
    Tam, Kahou
    Li, Li
    Han, Bo
    Xu, Chengzhong
    Fu, Huazhu
    [J]. IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2023, : 1 - 14
  • [30] CriticalFL: A Critical Learning Periods Augmented Client Selection Framework for Efficient Federated Learning
    Yan, Gang
    Wang, Hao
    Yuan, Xu
    Li, Jian
    [J]. PROCEEDINGS OF THE 29TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2023, 2023, : 2898 - 2907