Beyond Model-Level Membership Privacy Leakage: an Adversarial Approach in Federated Learning

被引:31
|
作者
Chen, Jiale [1 ]
Zhang, Jiale [1 ]
Zhao, Yanchao [1 ]
Han, Hao [1 ]
Zhu, Kun [1 ]
Chen, Bing [1 ]
机构
[1] Nanjing Univ Aeronaut & Astronaut, Coll Comp Sci & Technol, Nanjing, Peoples R China
关键词
Federated learning; Membership inference; Generative adversarial networks; User-level;
D O I
10.1109/icccn49398.2020.9209744
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
With the rise of privacy concerns in traditional centralized machine learning services, the federated learning, which incorporates multiple participants to train a global model across their localized training data, has lately received significant attention in both industry and academia. However, recent researches reveal the inherent vulnerabilities of the federated learning for the membership inference attacks that the adversary could infer whether a given data record belongs to the model's training set. Although the state-of-the-art techniques could successfully deduce the membership information from the centralized machine learning models, it is still challenging to infer the membership to a more confined level, user-level. In this paper, We propose a novel user-level inference attack mechanism in federated learning. Specifically, we first give a comprehensive analysis of active and targeted membership inference attacks in the context of the federated learning. Then, by considering a more complicated scenario that the adversary can only passively observe the updating models from different iterations, we incorporate the generative adversarial networks into our method, which can enrich the training set for the final membership inference model. The extensive experimental results demonstrate the effectiveness of our proposed attacking approach in the case of single-label and multi-label.
引用
收藏
页数:9
相关论文
共 50 条
  • [1] Beyond Class-Level Privacy Leakage: Breaking Record-Level Privacy in Federated Learning
    Yuan, Xiaoyong
    Ma, Xiyao
    Zhang, Lan
    Fang, Yuguang
    Wu, Dapeng
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (04) : 2555 - 2565
  • [2] Privacy Leakage of Adversarial Training Models in Federated Learning Systems
    Zhang, Jingyang
    Chen, Yiran
    Li, Hai
    2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION WORKSHOPS, CVPRW 2022, 2022, : 107 - 113
  • [3] Beyond Inferring Class Representatives: User-Level Privacy Leakage From Federated Learning
    Wang, Zhibo
    Song, Mengkai
    Zhang, Zhifei
    Song, Yang
    Wang, Qian
    Qi, Hairong
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (IEEE INFOCOM 2019), 2019, : 2512 - 2520
  • [4] MemberShield: A framework for federated learning with membership privacy
    Ahmed, Faisal
    Sanchez, David
    Haddi, Zouhair
    Domingo-Ferrer, Josep
    NEURAL NETWORKS, 2025, 181
  • [5] Secure Decentralized Aggregation to Prevent Membership Privacy Leakage in Edge-Based Federated Learning
    Shen, Meng
    Wang, Jing
    Zhang, Jie
    Zhao, Qinglin
    Peng, Bohan
    Wu, Tong
    Zhu, Liehuang
    Xu, Ke
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2024, 11 (03): : 3105 - 3119
  • [6] Model-Level Dual Learning
    Xia, Yingce
    Tan, Xu
    Tian, Fei
    Qin, Tao
    Yu, Nenghai
    Liu, Tie-Yan
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 80, 2018, 80
  • [7] A QUANTITATIVE METRIC FOR PRIVACY LEAKAGE IN FEDERATED LEARNING
    Liu, Yong
    Zhu, Xinghua
    Wang, Jianzong
    Xiao, Jing
    2021 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP 2021), 2021, : 3065 - 3069
  • [8] FROM GRADIENT LEAKAGE TO ADVERSARIAL ATTACKS IN FEDERATED LEARNING
    Lim, Jia Qi
    Chan, Chee Seng
    2021 IEEE INTERNATIONAL CONFERENCE ON IMAGE PROCESSING (ICIP), 2021, : 3602 - 3606
  • [9] Machine Learning with Membership Privacy using Adversarial Regularization
    Nasr, Milad
    Shokri, Reza
    Houmansadr, Amir
    PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, : 634 - 646
  • [10] Trustworthy federated learning: privacy, security, and beyond
    Chen, Chunlu
    Liu, Ji
    Tan, Haowen
    Li, Xingjian
    Wang, Kevin I-Kai
    Li, Peng
    Sakurai, Kouichi
    Dou, Dejing
    KNOWLEDGE AND INFORMATION SYSTEMS, 2025, 67 (03) : 2321 - 2356