Backdoor attacks and defenses in federated learning: Survey, challenges and future research directions

被引:15
|
作者
Nguyen, Thuy Dung [1 ,2 ]
Nguyen, Tuan [1 ,2 ]
Nguyen, Phi Le [3 ]
Pham, Hieu H. [1 ,2 ]
Doan, Khoa D. [1 ,2 ]
Wong, Kok-Seng [1 ,2 ]
机构
[1] VinUniv, Coll Engn & Comp Sci, Hanoi, Vietnam
[2] VinUni, Illinois Smart Hlth Ctr, Hanoi, Vietnam
[3] Hanoi Univ Sci & Technol, Hanoi, Vietnam
关键词
Federated learning; Decentralized learning; Backdoor attacks; Backdoor defenses; Systematic literature review; SECURITY; MODELS;
D O I
10.1016/j.engappai.2023.107166
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning (FL) is an approach within the realm of machine learning (ML) that allows the use of distributed data without compromising personal privacy. In FL, it becomes evident that the training data among participants frequently exhibit heterogeneous distribution characteristics. This inherent heterogeneity poses a substantial challenge for the orchestration server as it strives to assess the reliability of each local model update. Due to this challenge, FL becomes susceptible to various potential risks, with the ominous backdoor attack standing out as one of the most menacing threats. Backdoor attacks involve the insertion of malicious functionality into a targeted model through poisoned updates from malicious clients. These attacks can cause the global model to misbehave on specific inputs while appearing normal in other instances. Although the backdoor attacks received significant attention for their potential impact on practical deep learning applications, their exploration within the realm of FL remains limited. This survey seeks to address this gap by offering an all-encompassing examination of prevailing backdoor attack tactics and defenses in the context of FL. We include an exhaustive analysis of diverse approaches to provide a comprehensive understanding of this intricate landscape. Furthermore, we also discuss the challenges and potential future directions for attacks and defenses in the context of FL.
引用
收藏
页数:21
相关论文
共 50 条
  • [21] Privacy and Robustness in Federated Learning: Attacks and Defenses
    Lyu, Lingjuan
    Yu, Han
    Ma, Xingjun
    Chen, Chen
    Sun, Lichao
    Zhao, Jun
    Yang, Qiang
    Yu, Philip S.
    [J]. IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024, 35 (07) : 8726 - 8746
  • [22] Federated Learning for Medical Applications: A Taxonomy, Current Trends, Challenges, and Future Research Directions
    Rauniyar, Ashish
    Hagos, Desta Haileselassie
    Jha, Debesh
    Hakegard, Jan Erik
    Bagci, Ulas
    Rawat, Danda B.
    Vlassov, Vladimir
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (05): : 7374 - 7398
  • [23] On Model Outsourcing Adaptive Attacks to Deep Learning Backdoor Defenses
    Peng, Huaibing
    Qiu, Huming
    Ma, Hua
    Wang, Shuo
    Fu, Anmin
    Al-Sarawi, Said F.
    Abbott, Derek
    Gao, Yansong
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 2356 - 2369
  • [24] A Survey of Federated Learning From Data Perspective in the Healthcare Domain: Challenges, Methods, and Future Directions
    Taha, Zahraa Khduair
    Yaw, Chong Tak
    Koh, Siaw Paw
    Tiong, Sieh Kiong
    Kadirgama, Kumaran
    Benedict, Foo
    Tan, Jian Ding
    Balasubramaniam, Yogendra A. L.
    [J]. IEEE ACCESS, 2023, 11 : 45711 - 45735
  • [25] Federated Learning for IoUT: Concepts, Applications, Challenges and Future Directions
    Victor, Nancy
    Chengoden, Rajeswari
    Alazab, Mamoun
    Bhattacharya, Sweta
    Magnusson, Sindri
    Maddikunta, Praveen Kumar Reddy
    Ramana, Kadiyala
    Gadekallu, Thippa Reddy
    [J]. IEEE Internet of Things Magazine, 2022, 5 (04): : 36 - 41
  • [26] Data and Model Poisoning Backdoor Attacks on Wireless Federated Learning, and the Defense Mechanisms: A Comprehensive Survey
    Wan, Yichen
    Qu, Youyang
    Ni, Wei
    Xiang, Yong
    Gao, Longxiang
    Hossain, Ekram
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2024, 26 (03): : 1861 - 1897
  • [27] Identifying Backdoor Attacks in Federated Learning via Anomaly Detection
    Mi, Yuxi
    Sun, Yiheng
    Guan, Jihong
    Zhou, Shuigeng
    [J]. WEB AND BIG DATA, PT III, APWEB-WAIM 2023, 2024, 14333 : 111 - 126
  • [28] FMDL: Federated Mutual Distillation Learning for Defending Backdoor Attacks
    Sun, Hanqi
    Zhu, Wanquan
    Sun, Ziyu
    Cao, Mingsheng
    Liu, Wenbin
    [J]. ELECTRONICS, 2023, 12 (23)
  • [29] Revisiting Personalized Federated Learning: Robustness Against Backdoor Attacks
    Qin, Zeyu
    Yao, Liuyi
    Chen, Daoyuan
    Li, Yaliang
    Ding, Bolin
    Cheng, Minhao
    [J]. PROCEEDINGS OF THE 29TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2023, 2023, : 4743 - 4755
  • [30] GANcrop: A Contrastive Defense Against Backdoor Attacks in Federated Learning
    Gan, Xiaoyun
    Gan, Shanyu
    Su, Taizhi
    Liu, Peng
    [J]. 2024 5TH INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKS AND INTERNET OF THINGS, CNIOT 2024, 2024, : 606 - 612