A More Secure Split: Enhancing the Security of Privacy-Preserving Split Learning

被引:0
|
作者
Khan, Tanveer [1 ]
Nguyen, Khoa [1 ]
Michalas, Antonis [1 ,2 ]
机构
[1] Tampere Univ, Tampere, Finland
[2] RISE Res Inst Sweden, Gothenburg, Sweden
来源
关键词
Activation Maps; Homomorphic Encryption; Machine Learning; Privacy; Split Learning;
D O I
10.1007/978-3-031-47748-5_17
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Split learning (SL) is a new collaborative learning technique that allows participants, e.g. a client and a server, to train machine learning models without the client sharing raw data. In this setting, the client initially applies its part of the machine learning model on the raw data to generate Activation Maps (AMs) and then sends them to the server to continue the training process. Previous works in the field demonstrated that reconstructing AMs could result in privacy leakage of client data. In addition to that, existing mitigation techniques that overcome the privacy leakage of SL prove to be significantly worse in terms of accuracy. In this paper, we improve upon previous works by constructing a protocol based on U-shaped SL that can operate on homomorphically encrypted data. More precisely, in our approach, the client applies homomorphic encryption on the AMs before sending them to the server, thus protecting user privacy. This is an important improvement that reduces privacy leakage in comparison to other SL-based works. Finally, our results show that, with the optimum set of parameters, training with HE data in the U-shaped SL setting only reduces accuracy by 2.65% compared to training on plaintext. In addition, raw training data privacy is preserved.
引用
收藏
页码:307 / 329
页数:23
相关论文
共 50 条
  • [1] Quantum Split Learning for Privacy-Preserving Information Management
    Park, Soohyun
    Baek, Hankyul
    Kim, Joongheon
    PROCEEDINGS OF THE 32ND ACM INTERNATIONAL CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, CIKM 2023, 2023, : 4239 - 4243
  • [2] Privacy-Preserving Traffic Flow Prediction: A Split Learning Approach
    Tran, Nam-Phuong
    Dao, Nhu-Ngoc
    Do, Quang-Tuan
    Nguyen, The-Vi
    Cho, Sungrae
    2023 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING, ICOIN, 2023, : 248 - 250
  • [3] Privacy-Preserving Split Learning via Pareto Optimal Search
    Yu, Xi
    Xiang, Liyao
    Wang, Shiming
    Long, Chengnian
    COMPUTER SECURITY - ESORICS 2023, PT IV, 2024, 14347 : 123 - 142
  • [4] Love or Hate? Share or Split? Privacy-Preserving Training Using Split Learning and Homomorphic Encryption
    Khan, Tanveer
    Khoa Nguyen
    Michalas, Antonis
    Bakas, Alexandros
    2023 20TH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST, PST, 2023, : 194 - 200
  • [5] FlexSplit: A Configurable, Privacy-Preserving Federated-Split Learning Framework
    Wu, Tiantong
    Bandara, H. M. N. Dilum
    Yeoh, Phee Lep
    Thilakarathna, Kanchana
    2023 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS, ICC WORKSHOPS, 2023, : 116 - 121
  • [6] Privacy-Preserving Split Learning via Patch Shuffling over Transformers
    Yao, Dixi
    Xiang, Liyao
    Xu, Hengyuan
    Ye, Hangyu
    Chen, Yingqi
    2022 IEEE INTERNATIONAL CONFERENCE ON DATA MINING (ICDM), 2022, : 638 - 647
  • [7] On the Security of Verifiable and Oblivious Secure Aggregation for Privacy-Preserving Federated Learning
    Wu, Jiahui
    Zhang, Weizhe
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4324 - 4326
  • [8] Split Aggregation: Lightweight Privacy-Preserving Federated Learning Resistant to Byzantine Attacks
    Lu, Zhi
    Lu, SongFeng
    Cui, YongQuan
    Tang, XueMing
    Wu, JunJun
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 5575 - 5590
  • [9] Privacy-Preserving Intrusion Detection System for Internet of Vehicles using Split Learning
    Agbaje, Paul
    Anjum, Afia
    Mitra, Arkajyoti
    Hounsinou, Sena
    Nwafor, Ebelechukwu
    Olufowobi, Habeeb
    PROCEEDINGS OF THE IEEE/ACM 10TH INTERNATIONAL CONFERENCE ON BIG DATA COMPUTING, APPLICATIONS AND TECHNOLOGIES, BDCAT 2023, 2023,
  • [10] LPPSLF: a lightweight privacy-preserving split learning framework for smart surveillance systems
    Wang, Liang
    Chen, Hao
    Zuo, Lina
    Liu, Haibo
    APPLIED INTELLIGENCE, 2025, 55 (07)