FedSuper: A Byzantine-Robust Federated Learning Under Supervision

被引:0
|
作者
Zhao, Ping [1 ,2 ]
Jiang, Jin [1 ,2 ]
Zhang, Guanglin [1 ,2 ]
机构
[1] Donghua Univ, Coll Informat Sci & Technol, Shanghai, Peoples R China
[2] Donghua Univ, Coll Informat Sci & Technol, 2999 Renmin North Rd, Shanghai 201620, Peoples R China
基金
中国国家自然科学基金;
关键词
Federated learning; Byzantine attack; Byzantine ratio; non-IID; MOBILITY;
D O I
10.1145/3630099
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated Learning (FL) is a machine learning setting where multiple worker devices collaboratively train a model under the orchestration of a central server, while keeping the training data local. However, owing to the lack of supervision on worker devices, FL is vulnerable to Byzantine attacks where the worker devices controlled by an adversary arbitrarily generate poisoned local models and send to FL server, ultimately degrading the utility (e.g., model accuracy) of the global model. Most of existing Byzantine-robust algorithms, however, cannot well react to the threatening Byzantine attacks when the ratio of compromised worker devices (i.e., Byzantine ratio) is over 0.5 and worker devices ' local training datasets are not independent and identically distributed (non-IID). We propose a novel Byzantine-robust Federated Learning under Supervision (FedSuper), which can maintain robustness against Byzantine attacks even in the threatening scenario with a very high Byzantine ratio (0.9 in our experiments) and the largest level of non-IID data (1.0 in our experiments) when the state-of-the-art Byzantine attacks are conducted. The main idea of FedSuper is that the FL server supervises worker devices via injecting a shadow dataset into their local training processes. Moreover, according to the local models ' accuracies or losses on the shadow dataset, we design a Local Model Filter to remove poisoned local models and output an optimal global model. Extensive experimental results on three real-world datasets demonstrate the effectiveness and the superior performance of FedSuper, compared to five latest Byzantine-robust FL algorithms and two baselines, in defending
引用
收藏
页数:29
相关论文
共 50 条
  • [41] Byzantine-Robust Federated Learning via Server-Side Mixtue of Experts
    Li, Jing (lj@ustc.edu.cn), 1600, Springer Science and Business Media Deutschland GmbH (14326 LNAI):
  • [42] Privacy-Preserving Byzantine-Robust Federated Learning via Blockchain Systems
    Miao, Yinbin
    Liu, Ziteng
    Li, Hongwei
    Choo, Kim-Kwang Raymond
    Deng, Robert H.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 2848 - 2861
  • [43] Privacy-Preserving Byzantine-Robust Federated Learning via Blockchain Systems
    Miao, Yinbin
    Liu, Ziteng
    Li, Hongwei
    Choo, Kim-Kwang Raymond
    Deng, Robert H.
    IEEE Transactions on Information Forensics and Security, 2022, 17 : 2848 - 2861
  • [44] AFL: Attention-based Byzantine-robust Federated Learning with Vector Filter
    Chen, Hao
    Lv, Xixiang
    Zheng, Wei
    IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 595 - 600
  • [45] FedAegis: Edge-Based Byzantine-Robust Federated Learning for Heterogeneous Data
    Zhou, Fangtong
    Yu, Ruozhou
    Li, Zhouyu
    Gu, Huayue
    Wang, Xiaojian
    2022 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM 2022), 2022, : 3005 - 3010
  • [46] Defense against local model poisoning attacks to byzantine-robust federated learning
    Lu, Shiwei
    Li, Ruihu
    Chen, Xuan
    Ma, Yuena
    FRONTIERS OF COMPUTER SCIENCE, 2022, 16 (06)
  • [47] Defense against local model poisoning attacks to byzantine-robust federated learning
    LU Shiwei
    LI Ruihu
    CHEN Xuan
    MA Yuena
    Frontiers of Computer Science, 2022, 16 (06)
  • [48] Byzantine-Robust Compressed and Momentum-based Variance Reduction in Federated Learning
    Mao, Sihan
    Zhang, Jianguang
    Hu, Xiaodong
    Zheng, Xiaolin
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 814 - 820
  • [49] BYZANTINE-ROBUST FEDERATED DEEP DETERMINISTIC POLICY GRADIENT
    Lin, Qifeng
    Ling, Qing
    2022 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP), 2022, : 4013 - 4017
  • [50] Better Safe Than Sorry: Constructing Byzantine-Robust Federated Learning with Synthesized Trust
    Geng, Gangchao
    Cai, Tianyang
    Yang, Zheng
    ELECTRONICS, 2023, 12 (13)