Detection and Mitigation of Byzantine Attacks in Distributed Training

被引:0
|
作者
Konstantinidis, Konstantinos [1 ,2 ]
Vaswani, Namrata [1 ]
Ramamoorthy, Aditya [1 ]
机构
[1] Iowa State Univ, Dept Elect & Comp Engn, Ames, IA 50011 USA
[2] C3 ai Inc, Redwood City, CA 94063 USA
基金
美国国家科学基金会;
关键词
Training; Task analysis; Computational modeling; Behavioral sciences; Servers; Protocols; Resilience; Byzantine resilience; distributed training; gradient descent; deep learning; optimization; security; OPTIMIZATION; ALGORITHMS;
D O I
10.1109/TNET.2023.3324697
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
A plethora of modern machine learning tasks require the utilization of large-scale distributed clusters as a critical component of the training pipeline. However, abnormal Byzantine behavior of the worker nodes can derail the training and compromise the quality of the inference. Such behavior can be attributed to unintentional system malfunctions or orchestrated attacks; as a result, some nodes may return arbitrary results to the parameter server (PS) that coordinates the training. Recent work considers a wide range of attack models and has explored robust aggregation and/or computational redundancy to correct the distorted gradients. In this work, we consider attack models ranging from strong ones: q omniscient adversaries with full knowledge of the defense protocol that can change from iteration to iteration to weak ones: q randomly chosen adversaries with limited collusion abilities which only change every few iterations at a time. Our algorithms rely on redundant task assignments coupled with detection of adversarial behavior. We also show the convergence of our method to the optimal point under common assumptions and settings considered in literature. For strong attacks, we demonstrate a reduction in the fraction of distorted gradients ranging from 16%-99% as compared to the prior state-of-the-art. Our top-1 classification accuracy results on the CIFAR-10 data set demonstrate 25% advantage in accuracy (averaged over strong and weak scenarios) under the most sophisticated attacks compared to state-of-the-art methods.
引用
收藏
页码:1493 / 1508
页数:16
相关论文
共 50 条
  • [21] Detection and Mitigation of Wireless Link Layer Attacks
    Aung, May Aye Chan
    Thant, Khin Phyo
    [J]. 2017 IEEE/ACIS 15TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING RESEARCH, MANAGEMENT AND APPLICATIONS (SERA), 2017, : 173 - 178
  • [22] Detection and Mitigation of Insider Attacks in Financial Systems
    Pradesh, G., V
    Sangeetha, D.
    Kishore, Ram, V
    Sharan, Sai L.
    [J]. 2024 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATION AND APPLIED INFORMATICS, ACCAI 2024, 2024,
  • [23] Counter based Detection and Mitigation of Signalling Attacks
    Pavloski, Mihajlo
    Gorbil, Gokce
    Gelenbe, Erol
    [J]. 2015 12TH INTERNATIONAL JOINT CONFERENCE ON E-BUSINESS AND TELECOMMUNICATIONS (ICETE), VOL 4, 2015, : 413 - 418
  • [24] Detection and mitigation of vehicle platooning disruption attacks
    Zemmoudj, Salah
    Bermad, Nabila
    Bouallouche-Medjkoune, Louiza
    [J]. VEHICULAR COMMUNICATIONS, 2024, 47
  • [25] Toward a Distributed Approach for Detection and Mitigation of Denial-of-Service Attacks Within Industrial Internet of Things
    Borgiani, Vladimir
    Moratori, Patrick
    Kazienko, Juliano F.
    Tubino, Emilio R. R.
    Quincozes, Silvio E.
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (06) : 4569 - 4578
  • [26] A Distributed Mitigation Strategy against DoS attacks in Edge Computing
    Potrino, Giuseppe
    De Rango, Floriano
    Fazio, Peppino
    [J]. 2019 WIRELESS TELECOMMUNICATIONS SYMPOSIUM (WTS), 2019,
  • [27] DAGGER: Distributed Architecture for Granular Mitigation of Mobile Based Attacks
    Bakhit, Khaled
    Elhajj, Imad H.
    Chehab, Ali
    Kayssi, Ayman
    [J]. 2014 IEEE/ACS 11TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2014, : 259 - 265
  • [28] FABA: An Algorithm for Fast Aggregation against Byzantine Attacks in Distributed Neural Networks
    Xia, Qi
    Tao, Zeyi
    Hao, Zijiang
    Li, Qun
    [J]. PROCEEDINGS OF THE TWENTY-EIGHTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2019, : 4824 - 4830
  • [29] SLC: A Permissioned Blockchain for Secure Distributed Machine Learning against Byzantine Attacks
    Liang, Lun
    Cao, Xianghui
    Zhang, Jun
    Sun, Changyin
    [J]. 2020 CHINESE AUTOMATION CONGRESS (CAC 2020), 2020, : 7073 - 7078
  • [30] Distributed Inference With M-Ary Quantized Data in the Presence of Byzantine Attacks
    Nadendla, V. Sriram Siddhardh
    Han, Yunghsiang S.
    Varshney, Pramod K.
    [J]. IEEE TRANSACTIONS ON SIGNAL PROCESSING, 2014, 62 (10) : 2681 - 2695