Byzantine-Resilient Secure Federated Learning

被引:106
|
作者
So, Jinhyun [1 ]
Guler, Basak [2 ]
Avestimehr, A. Salman [1 ]
机构
[1] Univ Southern Calif, Dept Elect & Comp Engn, Los Angeles, CA 90089 USA
[2] Univ Calif Riverside, Dept Elect & Comp Engn, Riverside, CA 92521 USA
关键词
Federated learning; privacy-preserving machine learning; Byzantine-resilience; distributed training in mobile networks;
D O I
10.1109/JSAC.2020.3041404
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Secure federated learning is a privacy-preserving framework to improve machine learning models by training over large volumes of data collected by mobile users. This is achieved through an iterative process where, at each iteration, users update a global model using their local datasets. Each user then masks its local update via random keys, and the masked models are aggregated at a central server to compute the global model for the next iteration. As the local updates are protected by random masks, the server cannot observe their true values. This presents a major challenge for the resilience of the model against adversarial (Byzantine) users, who can manipulate the global model by modifying their local updates or datasets. Towards addressing this challenge, this paper presents the first single-server Byzantine-resilient secure aggregation framework (BREA) for secure federated learning. BREA is based on an integrated stochastic quantization, verifiable outlier detection, and secure model aggregation approach to guarantee Byzantine-resilience, privacy, and convergence simultaneously. We provide theoretical convergence and privacy guarantees and characterize the fundamental trade-offs in terms of the network size, user dropouts, and privacy protection. Our experiments demonstrate convergence in the presence of Byzantine users, and comparable accuracy to conventional federated learning benchmarks.
引用
收藏
页码:2168 / 2181
页数:14
相关论文
共 50 条
  • [41] Byzantine-resilient distributed observers for LTI systems
    Mitra, Aritra
    Sundaram, Shreyas
    AUTOMATICA, 2019, 108
  • [42] BYZANTINE-RESILIENT DISTRIBUTED COMPUTING SYSTEMS.
    Patnaik, L.M.
    Balaji, S.
    Sadhana - Academy Proceedings in Engineering Sciences, 1987, 11 (1-2) : 81 - 91
  • [43] BISMR: Byzantine-resilient secure multicast routing in multi-hop wireless networks
    Curtmola, Reza
    Nita-Rotaru, Cristina
    2007 4TH ANNUAL IEEE COMMUNICATIONS SOCIETY CONFERENCE ON SENSOR, MESH AND AD-HOC COMMUNICATIONS AND NETWORKS, VOLS 1 AND 2, 2007, : 263 - +
  • [44] Byzantine-Resilient Convergence in Oblivious Robot Networks
    Bouzid, Zohir
    Potop-Butucaru, Maria Gradinariu
    Tixeuil, Sebastien
    DISTRIBUTED COMPUTING AND NETWORKING, 2009, 5408 : 275 - 280
  • [45] Data Encoding for Byzantine-Resilient Distributed Optimization
    Data, Deepesh
    Song, Linqi
    Diggavi, Suhas N.
    IEEE TRANSACTIONS ON INFORMATION THEORY, 2021, 67 (02) : 1117 - 1140
  • [46] SIoTFog: Byzantine-resilient IoT fog networking
    Jian-wen Xu
    Kaoru Ota
    Mian-xiong Dong
    An-feng Liu
    Qiang Li
    Frontiers of Information Technology & Electronic Engineering, 2018, 19 : 1546 - 1557
  • [47] BRIDGE: Byzantine-Resilient Decentralized Gradient Descent
    Fang, Cheng
    Yang, Zhixiong
    Bajwa, Waheed U.
    IEEE TRANSACTIONS ON SIGNAL AND INFORMATION PROCESSING OVER NETWORKS, 2022, 8 : 610 - 626
  • [48] Asynchronous Byzantine-Resilient Distributed Optimization with Momentum
    Wan, Yi
    Qu, Yifei
    Zhao, Zuyan
    Yang, Shaofu
    2022 41ST CHINESE CONTROL CONFERENCE (CCC), 2022, : 2022 - 2027
  • [49] Byzantine-Resilient Decentralized Stochastic Gradient Descent
    Guo, Shangwei
    Zhang, Tianwei
    Yu, Han
    Xie, Xiaofei
    Ma, Lei
    Xiang, Tao
    Liu, Yang
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS FOR VIDEO TECHNOLOGY, 2022, 32 (06) : 4096 - 4106
  • [50] Byzantine-Resilient Multi-Agent System
    Guerraoui, Rachid
    Maurer, Alexandre
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (06) : 4032 - 4038