Federated Learning: A Comparative Study of Defenses Against Poisoning Attacks

被引:0
|
作者
Carvalho, Ines [1 ]
Huff, Kenton [2 ]
Gruenwald, Le [2 ]
Bernardino, Jorge [1 ]
机构
[1] Polytech Univ Coimbra, Inst Engn Coimbra ISEC, Rua Misericordia, P-3045093 S Martinho Do Bispo, Coimbra, Portugal
[2] Univ Oklahoma, Sch Comp Sci, Norman, OK 73019 USA
来源
APPLIED SCIENCES-BASEL | 2024年 / 14卷 / 22期
关键词
federated learning; model poisoning attacks; adversarial learning; anomaly detection;
D O I
10.3390/app142210706
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Federated learning is a new paradigm where multiple data owners, referred to as clients, work together with a global server to train a shared machine learning model without disclosing their personal training data. Despite its many advantages, the system is vulnerable to client compromise by malicious agents attempting to modify the global model. Several defense algorithms against untargeted and targeted poisoning attacks on model updates in federated learning have been proposed and evaluated separately. This paper compares the performances of six state-of-the art defense algorithms-PCA + K-Means, KPCA + K-Means, CONTRA, KRUM, COOMED, and RPCA + PCA + K-Means. We explore a variety of situations not considered in the original papers. These include varying the percentage of Independent and Identically Distributed (IID) data, the number of clients, and the percentage of malicious clients. This comprehensive performance study provides the results that the users can use to select appropriate defense algorithms to employ based on the characteristics of their federated learning systems.
引用
收藏
页数:42
相关论文
共 50 条
  • [41] FLShield: A Validation Based Federated Learning Framework to Defend Against Poisoning Attacks
    Kabir, Ehsanul
    Song, Zeyu
    Rashid, Md Rafi Ur
    Mehnaz, Shagufta
    45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024, 2024, : 2572 - 2590
  • [42] CCF Based System Framework In Federated Learning Against Data Poisoning Attacks
    Ahmed, Ibrahim M.
    Kashmoola, Manar Younis
    JOURNAL OF APPLIED SCIENCE AND ENGINEERING, 2023, 26 (07): : 973 - 981
  • [43] A Federated Learning Framework against Data Poisoning Attacks on the Basis of the Genetic Algorithm
    Zhai, Ran
    Chen, Xuebin
    Pei, Langtao
    Ma, Zheng
    ELECTRONICS, 2023, 12 (03)
  • [44] RobustFL: Robust Federated Learning Against Poisoning Attacks in Industrial IoT Systems
    Zhang, Jiale
    Ge, Chunpeng
    Hu, Feng
    Chen, Bing
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (09) : 6388 - 6397
  • [45] Resilience of Wireless Ad Hoc Federated Learning against Model Poisoning Attacks
    Tezuka, Naoya
    Ochiai, Hideya
    Sun, Yuwei
    Esaki, Hiroshi
    2022 IEEE 4TH INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS, AND APPLICATIONS, TPS-ISA, 2022, : 168 - 177
  • [46] PoisonGAN: Generative Poisoning Attacks Against Federated Learning in Edge Computing Systems
    Zhang, Jiale
    Chen, Bing
    Cheng, Xiang
    Huynh Thi Thanh Binh
    Yu, Shui
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (05) : 3310 - 3322
  • [47] A Robust and Efficient Federated Learning Algorithm Against Adaptive Model Poisoning Attacks
    Yang, Han
    Gu, Dongbing
    He, Jianhua
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (09): : 16289 - 16302
  • [48] DefendFL: A Privacy-Preserving Federated Learning Scheme Against Poisoning Attacks
    Liu, Jiao
    Li, Xinghua
    Liu, Ximeng
    Zhang, Haiyan
    Miao, Yinbin
    Deng, Robert H.
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024,
  • [49] A Differentially Private Federated Learning Model Against Poisoning Attacks in Edge Computing
    Zhou, Jun
    Wu, Nan
    Wang, Yisong
    Gu, Shouzhen
    Cao, Zhenfu
    Dong, Xiaolei
    Choo, Kim-Kwang Raymond
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (03) : 1941 - 1958
  • [50] Data Poisoning Attacks on Federated Machine Learning
    Sun, Gan
    Cong, Yang
    Dong, Jiahua
    Wang, Qiang
    Lyu, Lingjuan
    Liu, Ji
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (13) : 11365 - 11375