Federated Learning: A Comparative Study of Defenses Against Poisoning Attacks

被引:0
|
作者
Carvalho, Ines [1 ]
Huff, Kenton [2 ]
Gruenwald, Le [2 ]
Bernardino, Jorge [1 ]
机构
[1] Polytech Univ Coimbra, Inst Engn Coimbra ISEC, Rua Misericordia, P-3045093 S Martinho Do Bispo, Coimbra, Portugal
[2] Univ Oklahoma, Sch Comp Sci, Norman, OK 73019 USA
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
federated learning; model poisoning attacks; adversarial learning; anomaly detection;
D O I
10.3390/app142210706
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Federated learning is a new paradigm where multiple data owners, referred to as clients, work together with a global server to train a shared machine learning model without disclosing their personal training data. Despite its many advantages, the system is vulnerable to client compromise by malicious agents attempting to modify the global model. Several defense algorithms against untargeted and targeted poisoning attacks on model updates in federated learning have been proposed and evaluated separately. This paper compares the performances of six state-of-the art defense algorithms-PCA + K-Means, KPCA + K-Means, CONTRA, KRUM, COOMED, and RPCA + PCA + K-Means. We explore a variety of situations not considered in the original papers. These include varying the percentage of Independent and Identically Distributed (IID) data, the number of clients, and the percentage of malicious clients. This comprehensive performance study provides the results that the users can use to select appropriate defense algorithms to employ based on the characteristics of their federated learning systems.
引用
收藏
页数:42
相关论文
共 50 条
  • [31] Evaluating Gradient Inversion Attacks and Defenses in Federated Learning
    Huang, Yangsibo
    Gupta, Samyak
    Song, Zhao
    Li, Kai
    Arora, Sanjeev
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 34 (NEURIPS 2021), 2021, 34
  • [32] Evaluation of Various Defense Techniques Against Targeted Poisoning Attacks in Federated Learning
    Richards, Charles
    Khemani, Sofia
    Li, Feng
    2022 IEEE 19TH INTERNATIONAL CONFERENCE ON MOBILE AD HOC AND SMART SYSTEMS (MASS 2022), 2022, : 693 - 698
  • [33] RECESS Vaccine for Federated Learning: Proactive Defense Against Model Poisoning Attacks
    Yan, Haonan
    Zhang, Wenjing
    Chen, Qian
    Li, Xiaoguang
    Sun, Wenhai
    Li, Hui
    Lin, Xiaodong
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [34] FedRDF: A Robust and Dynamic Aggregation Function Against Poisoning Attacks in Federated Learning
    Campos, Enrique Marmol
    Gonzalez-Vidal, Aurora
    Hernandez-Ramos, Jose L.
    Skarmeta, Antonio
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTING, 2025, 13 (01) : 48 - 67
  • [35] Moat: Model Agnostic Defense against Targeted Poisoning Attacks in Federated Learning
    Manna, Arpan
    Kasyap, Harsh
    Tripathy, Somanath
    INFORMATION AND COMMUNICATIONS SECURITY (ICICS 2021), PT I, 2021, 12918 : 38 - 55
  • [36] FedRRA: Reputation-Aware Robust Federated Learning against Poisoning Attacks
    Yi, Liping
    Shi, Xiaorong
    Wang, Wenrui
    Wang, Gang
    Liu, Xiaoguang
    2023 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS, IJCNN, 2023,
  • [37] Decentralized Defense: Leveraging Blockchain against Poisoning Attacks in Federated Learning Systems
    Thennakoon, Rashmi
    Wanigasundara, Arosha
    Weerasinghe, Sanjaya
    Seneviratne, Chatura
    Siriwardhana, Yushan
    Liyanage, Madhusanka
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 950 - 955
  • [38] TrustBandit: Optimizing Client Selection for Robust Federated Learning Against Poisoning Attacks
    Deressa, Biniyam
    Hasan, M. Anwar
    IEEE INFOCOM 2024-IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS, INFOCOM WKSHPS 2024, 2024,
  • [39] SPFL: A Self-Purified Federated Learning Method Against Poisoning Attacks
    Liu, Zizhen
    He, Weiyang
    Chang, Chip-Hong
    Ye, Jing
    Li, Huawei
    Li, Xiaowei
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 6604 - 6619
  • [40] On the Analysis of Model Poisoning Attacks against Blockchain-based Federated Learning
    Olapojoye, Rukayat
    Baza, Mohamed
    Salman, Tara
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 943 - 949