Federated Learning: A Comparative Study of Defenses Against Poisoning Attacks

被引:0
|
作者
Carvalho, Ines [1 ]
Huff, Kenton [2 ]
Gruenwald, Le [2 ]
Bernardino, Jorge [1 ]
机构
[1] Polytech Univ Coimbra, Inst Engn Coimbra ISEC, Rua Misericordia, P-3045093 S Martinho Do Bispo, Coimbra, Portugal
[2] Univ Oklahoma, Sch Comp Sci, Norman, OK 73019 USA
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
federated learning; model poisoning attacks; adversarial learning; anomaly detection;
D O I
10.3390/app142210706
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Federated learning is a new paradigm where multiple data owners, referred to as clients, work together with a global server to train a shared machine learning model without disclosing their personal training data. Despite its many advantages, the system is vulnerable to client compromise by malicious agents attempting to modify the global model. Several defense algorithms against untargeted and targeted poisoning attacks on model updates in federated learning have been proposed and evaluated separately. This paper compares the performances of six state-of-the art defense algorithms-PCA + K-Means, KPCA + K-Means, CONTRA, KRUM, COOMED, and RPCA + PCA + K-Means. We explore a variety of situations not considered in the original papers. These include varying the percentage of Independent and Identically Distributed (IID) data, the number of clients, and the percentage of malicious clients. This comprehensive performance study provides the results that the users can use to select appropriate defense algorithms to employ based on the characteristics of their federated learning systems.
引用
收藏
页数:42
相关论文
共 50 条
  • [21] Evaluating Security and Robustness for Split Federated Learning Against Poisoning Attacks
    Wu, Xiaodong
    Yuan, Henry
    Li, Xiangman
    Ni, Jianbing
    Lu, Rongxing
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025, 20 : 175 - 190
  • [22] FEDCLEAN: A DEFENSE MECHANISM AGAINST PARAMETER POISONING ATTACKS IN FEDERATED LEARNING
    Kumar, Abhishek
    Khimani, Vivek
    Chatzopoulos, Dimitris
    Hui, Pan
    2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2022, : 4333 - 4337
  • [23] Low dimensional secure federated learning framework against poisoning attacks
    Erdol, Eda Sena
    Ustubioglu, Beste
    Erdol, Hakan
    Ulutas, Guzin
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 158 : 183 - 199
  • [24] Securing Federated Learning: Enhancing Defense Mechanisms against Poisoning Attacks
    Birdman, Benjamin
    Thamilarasu, Geethapriya
    2024 33RD INTERNATIONAL CONFERENCE ON COMPUTER COMMUNICATIONS AND NETWORKS, ICCCN 2024, 2024,
  • [25] Dependable federated learning for IoT intrusion detection against poisoning attacks
    Yang, Run
    He, Hui
    Wang, Yulong
    Qu, Yue
    Zhang, Weizhe
    COMPUTERS & SECURITY, 2023, 132
  • [26] Poisoning Attacks against Federated Learning in Load Forecasting of Smart Energy
    Qureshi, Naik Bakht Sania
    Kim, Dong-Hoon
    Lee, Jiwoo
    Lee, Eun-Kyu
    PROCEEDINGS OF THE IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM 2022, 2022,
  • [27] Beta Poisoning Attacks Against Machine Learning Models: Extensions, Limitations and Defenses
    Kara, Atakan
    Koprucu, Nursena
    Gursoy, M. Emre
    2022 IEEE 4TH INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS, AND APPLICATIONS, TPS-ISA, 2022, : 178 - 187
  • [28] Membership Inference Attacks and Defenses in Federated Learning: A Survey
    Bai, Li
    Hu, Haibo
    Ye, Qingqing
    Li, Haoyang
    Wang, Leixia
    Xu, Jianliang
    ACM COMPUTING SURVEYS, 2025, 57 (04)
  • [29] Improved Gradient Inversion Attacks and Defenses in Federated Learning
    Geng, Jiahui
    Mou, Yongli
    Li, Qing
    Li, Feifei
    Beyan, Oya
    Decker, Stefan
    Rong, Chunming
    IEEE TRANSACTIONS ON BIG DATA, 2024, 10 (06) : 839 - 850
  • [30] An Investigation of Recent Backdoor Attacks and Defenses in Federated Learning
    Chen, Qiuxian
    Tao, Yizheng
    2023 EIGHTH INTERNATIONAL CONFERENCE ON FOG AND MOBILE EDGE COMPUTING, FMEC, 2023, : 262 - 269