A More Secure Split: Enhancing the Security of Privacy-Preserving Split Learning

被引:0
|
作者
Khan, Tanveer [1 ]
Nguyen, Khoa [1 ]
Michalas, Antonis [1 ,2 ]
机构
[1] Tampere Univ, Tampere, Finland
[2] RISE Res Inst Sweden, Gothenburg, Sweden
来源
关键词
Activation Maps; Homomorphic Encryption; Machine Learning; Privacy; Split Learning;
D O I
10.1007/978-3-031-47748-5_17
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Split learning (SL) is a new collaborative learning technique that allows participants, e.g. a client and a server, to train machine learning models without the client sharing raw data. In this setting, the client initially applies its part of the machine learning model on the raw data to generate Activation Maps (AMs) and then sends them to the server to continue the training process. Previous works in the field demonstrated that reconstructing AMs could result in privacy leakage of client data. In addition to that, existing mitigation techniques that overcome the privacy leakage of SL prove to be significantly worse in terms of accuracy. In this paper, we improve upon previous works by constructing a protocol based on U-shaped SL that can operate on homomorphically encrypted data. More precisely, in our approach, the client applies homomorphic encryption on the AMs before sending them to the server, thus protecting user privacy. This is an important improvement that reduces privacy leakage in comparison to other SL-based works. Finally, our results show that, with the optimum set of parameters, training with HE data in the U-shaped SL setting only reduces accuracy by 2.65% compared to training on plaintext. In addition, raw training data privacy is preserved.
引用
收藏
页码:307 / 329
页数:23
相关论文
共 50 条
  • [41] Demo: Split Computing-based Privacy-Preserving Image Classification and Object Detection
    Nishio, Takayuki
    Yorita, Kojin
    Ohta, Shoki
    Maejima, Kota
    Kodera, Kanare
    Horikawa, Yutaro
    Fukui, Kozo
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 1092 - 1093
  • [42] VOSA: Verifiable and Oblivious Secure Aggregation for Privacy-Preserving Federated Learning
    Wang, Yong
    Zhang, Aiqing
    Wu, Shu
    Yu, Shui
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (05) : 3601 - 3616
  • [43] PQSF: post-quantum secure privacy-preserving federated learning
    Zhang, Xia
    Deng, Haitao
    Wu, Rui
    Ren, Jingjing
    Ren, Yongjun
    SCIENTIFIC REPORTS, 2024, 14 (01):
  • [44] SAEV: Secure Aggregation and Efficient Verification for Privacy-Preserving Federated Learning
    Wang, Junkai
    Wang, Rong
    Xiong, Ling
    Xiong, Neal
    Liu, Zhicai
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (24): : 39681 - 39696
  • [45] SHAPER: A General Architecture for Privacy-Preserving Primitives in Secure Machine Learning
    Liang Z.
    Jin Q.
    Wang Z.
    Chen Z.
    Gu Z.
    Lu Y.
    Zhang F.
    IACR Transactions on Cryptographic Hardware and Embedded Systems, 2024, 2024 (02): : 819 - 843
  • [46] Privacy-preserving techniques for decentralized and secure machine learning in drug discovery
    Smajic, Aljosa
    Grandits, Melanie
    Ecker, Gerhard F.
    DRUG DISCOVERY TODAY, 2023, 28 (12)
  • [47] SVCA: Secure and Verifiable Chained Aggregation for Privacy-Preserving Federated Learning
    Xia, Yuanjun
    Liu, Yining
    Dong, Shi
    Li, Meng
    Guo, Cheng
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (10): : 18351 - 18365
  • [48] Secure Dataset Condensation for Privacy-Preserving and Efficient Vertical Federated Learning
    Gao, Dashan
    Wu, Canhui
    Zhang, Xiaojin
    Yao, Xin
    Yang, Qiang
    MACHINE LEARNING AND KNOWLEDGE DISCOVERY IN DATABASES: RESEARCH TRACK, PT I, ECML PKDD 2024, 2024, 14941 : 212 - 229
  • [49] Privacy-Preserving Collaborative Learning for Genome Analysis via Secure XGBoost
    Aldeen, Mohammed Shujaa
    Zhao, Chuan
    Chen, Zhenxiang
    Fang, Liming
    Liu, Zhe
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (06) : 5755 - 5765
  • [50] An effective and verifiable secure aggregation scheme with privacy-preserving for federated learning
    Wang, Rong
    Xiong, Ling
    Geng, Jiazhou
    Xie, Chun
    Li, Ruidong
    JOURNAL OF SYSTEMS ARCHITECTURE, 2025, 161