Differentially private federated learning with local momentum updates and gradients filtering

被引:0
|
作者
Zhang, Shuaishuai [1 ]
Huang, Jie [1 ,2 ]
Li, Peihao [1 ]
Liang, Chuang [1 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 211189, Peoples R China
[2] Purple Mt Labs, Nanjing 211111, Peoples R China
关键词
Federated learning; Differential privacy; Gaussian mechanism; Momentum updates;
D O I
10.1016/j.ins.2024.120960
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Differential Privacy (DP) is applied in Federated Learning (FL) for defending against various privacy attacks. Existing methods based on Gaussian mechanism require the operations of clipping and adding noise, leading to significant accuracy degradation. In this paper, we propose a novel FL scheme named DPFL-LMG to provide user-level DP guarantee while maintaining a high model accuracy. Our main idea is to mitigate the negative effects of the clipping on the model convergence by decreasing the L-2 norm of local updates and the cross-client update variance. Specifically, our method includes two techniques, Local Momentum Updates (LMU) and Gradients Filtering (GF). LMU combines local updates of different rounds in a momentum way. It can significantly decrease the cross-client update variance by weakening the gradient noise in local updates caused by stochastic gradient descent (SGD) algorithm. GF estimates the gradient noise in each element of local updates by observing the element-wise variance. Elements with large noise are considered unnecessary and are zeroed out for the reduction of local update norms. We theoretically analyze the privacy guarantee and the convergence of our method. Experiments demonstrate that DPFL-LMG can effectively mitigate the accuracy degradation caused by clipping and outperform previous DPFL methods in the accuracy.
引用
收藏
页数:23
相关论文
共 50 条
  • [1] Local differentially private federated learning with homomorphic encryption
    Jianzhe Zhao
    Chenxi Huang
    Wenji Wang
    Rulin Xie
    Rongrong Dong
    Stan Matwin
    The Journal of Supercomputing, 2023, 79 : 19365 - 19395
  • [2] Differentially Private Federated Learning with Local Regularization and Sparsification
    Cheng, Anda
    Wang, Peisong
    Zhang, Xi Sheryl
    Cheng, Jian
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2022, : 10112 - 10121
  • [3] Local differentially private federated learning with homomorphic encryption
    Zhao, Jianzhe
    Huang, Chenxi
    Wang, Wenji
    Xie, Rulin
    Dong, Rongrong
    Matwin, Stan
    JOURNAL OF SUPERCOMPUTING, 2023, 79 (17): : 19365 - 19395
  • [4] A Fine-Grained Differentially Private Federated Learning Against Leakage From Gradients
    Zhu, Linghui
    Liu, Xinyi
    Li, Yiming
    Yang, Xue
    Xia, Shu-Tao
    Lu, Rongxing
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (13) : 11500 - 11512
  • [5] Exploring the Practicality of Differentially Private Federated Learning: A Local Iteration Tuning Approach
    Zhou, Yipeng
    Wang, Runze
    Liu, Jiahao
    Wu, Di
    Yu, Shui
    Wen, Yonggang
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 3280 - 3294
  • [6] ALI-DPFL: Differentially Private Federated Learning with Adaptive Local Iterations
    Ling, Xinpeng
    Fu, Jie
    Wang, Kuncan
    Liu, Haitao
    Chen, Zhili
    PROCEEDINGS 2024 IEEE 25TH INTERNATIONAL SYMPOSIUM ON A WORLD OF WIRELESS, MOBILE AND MULTIMEDIA NETWORKS, WOWMOM 2024, 2024, : 349 - 358
  • [7] Compression Boosts Differentially Private Federated Learning
    Kerkouche, Raouf
    Acs, Gergely
    Castelluccia, Claude
    Geneves, Pierre
    2021 IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY (EUROS&P 2021), 2021, : 304 - 318
  • [8] Differentially Private Federated Learning on Heterogeneous Data
    Noble, Maxence
    Bellet, Aurelien
    Dieuleveut, Aymeric
    INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE AND STATISTICS, VOL 151, 2022, 151
  • [9] Differentially private federated learning with Laplacian smoothing
    Liang, Zhicong
    Wang, Bao
    Gu, Quanquan
    Osher, Stanley
    Yao, Yuan
    APPLIED AND COMPUTATIONAL HARMONIC ANALYSIS, 2024, 72
  • [10] The Skellam Mechanism for Differentially Private Federated Learning
    Agarwal, Naman
    Kairouz, Peter
    Liu, Ziyu
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021,