A Novel Approach for Differential Privacy-Preserving Federated Learning

被引:0
|
作者
Elgabli, Anis [1 ,2 ]
Mesbah, Wessam [2 ,3 ]
机构
[1] King Fahd University of Petroleum and Minerals, Industrial and Systems Engineering Department, Dhahran,31261, Saudi Arabia
[2] King Fahd University of Petroleum and Minerals, Center for Communication Systems and Sensing, Dhahran,31261, Saudi Arabia
[3] King Fahd University of Petroleum and Minerals, Electrical Engineering Department, Dhahran,31261, Saudi Arabia
关键词
Adversarial machine learning - Contrastive Learning - Differential privacy - Privacy-preserving techniques - Stochastic models - Stochastic systems;
D O I
10.1109/OJCOMS.2024.3521651
中图分类号
学科分类号
摘要
In this paper, we start with a comprehensive evaluation of the effect of adding differential privacy (DP) to federated learning (FL) approaches, focusing on methodologies employing global (stochastic) gradient descent (SGD/GD), and local SGD/GD techniques. These global and local techniques are commonly referred to as FedSGD/FedGD and FedAvg, respectively. Our analysis reveals that, as far as only one local iteration is performed by each client before transmitting to the parameter server (PS) for FedGD, both FedGD and FedAvg achieve the same accuracy/loss for the same privacy guarantees, despite requiring different perturbation noise power. Furthermore, we propose a novel DP mechanism, which is shown to ensure privacy without compromising performance. In particular, we propose the sharing of a random seed (or a specified sequence of random seeds) among collaborative clients, where each client uses this seed to introduces perturbations to its updates prior to transmission to the PS. Importantly, due to the random seed sharing, clients possess the capability to negate the noise effects and recover their original global model. This mechanism preserves privacy both at a curiousPS or at external eavesdroppers without compromising the performance of the final model at each client, thus mitigating the risk of inversion attacks aimed at retrieving (partially or fully) the clients' data. Furthermore, the importance and effect of clipping in the practical implementation of DP mechanisms, in order to upper bound the perturbation noise, is discussed. Moreover, owing to the ability to cancel noise at individual clients, our proposed approach enables the introduction of arbitrarily high perturbation levels, and hence, clipping can be totally avoided, resulting in the same performance of noise-free standard FL approaches. © 2020 IEEE.
引用
收藏
页码:466 / 476
相关论文
共 50 条
  • [41] A verifiable and privacy-preserving blockchain-based federated learning approach
    Irshad Ullah
    Xiaoheng Deng
    Xinjun Pei
    Ping Jiang
    Husnain Mushtaq
    Peer-to-Peer Networking and Applications, 2023, 16 : 2256 - 2270
  • [42] A verifiable and privacy-preserving blockchain-based federated learning approach
    Ullah, Irshad
    Deng, Xiaoheng
    Pei, Xinjun
    Jiang, Ping
    Mushtaq, Husnain
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2023, 16 (05) : 2256 - 2270
  • [43] Towards driver distraction detection: a privacy-preserving federated learning approach
    Wenguang Zhou
    Zhiwei Jia
    Chao Feng
    Huali Lu
    Feng Lyu
    Ling Li
    Peer-to-Peer Networking and Applications, 2024, 17 : 896 - 910
  • [44] FedCCW: a privacy-preserving Byzantine-robust federated learning with local differential privacy for healthcare
    Lianfu Zhang
    Guangwei Fang
    Zuowen Tan
    Cluster Computing, 2025, 28 (3)
  • [45] PASTEL: Privacy-Preserving Federated Learning in Edge Computing
    Elhattab, Fatima
    Bouchenak, Sara
    Boscher, Cedric
    PROCEEDINGS OF THE ACM ON INTERACTIVE MOBILE WEARABLE AND UBIQUITOUS TECHNOLOGIES-IMWUT, 2023, 7 (04):
  • [46] Visual Object Detection for Privacy-Preserving Federated Learning
    Zhang, Jing
    Zhou, Jiting
    Guo, Jinyang
    Sun, Xiaohan
    IEEE ACCESS, 2023, 11 : 33324 - 33335
  • [47] PVFL: Verifiable federated learning and prediction with privacy-preserving
    Yin, Benxin
    Zhang, Hanlin
    Lin, Jie
    Kong, Fanyu
    Yu, Leyun
    COMPUTERS & SECURITY, 2024, 139
  • [48] Towards Efficient and Privacy-preserving Federated Deep Learning
    Hao, Meng
    Li, Hongwei
    Xu, Guowen
    Liu, Sen
    Yang, Haomiao
    ICC 2019 - 2019 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2019,
  • [49] Enforcing group fairness in privacy-preserving Federated Learning
    Chen, Chaomeng
    Zhou, Zhenhong
    Tang, Peng
    He, Longzhu
    Su, Sen
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 160 : 890 - 900
  • [50] Decentralized federated learning with privacy-preserving for recommendation systems
    Guo, Jianlan
    Zhao, Qinglin
    Li, Guangcheng
    Chen, Yuqiang
    Lao, Chengxue
    Feng, Li
    ENTERPRISE INFORMATION SYSTEMS, 2023, 17 (09)