Mitigating cross-client GANs-based attack in federated learning

被引:0
|
作者
Hong Huang
Xinyu Lei
Tao Xiang
机构
[1] Chongqing University,College of Computer Science
[2] Michigan Technological University,Department of Computer Science
来源
Multimedia Tools and Applications | 2024年 / 83卷
关键词
Federated learning; Privacy preserving; GANs; Ensemble learning; Knowledge distillation;
D O I
暂无
中图分类号
学科分类号
摘要
Machine learning makes multimedia data (e.g., images) more attractive, however, multimedia data is usually distributed and privacy sensitive. Multiple distributed multimedia clients can resort to federated learning (FL) to jointly learn a global shared model without requiring to share their private samples with any third-party entities. In this paper, we show that FL suffers from the cross-client generative adversarial networks (GANs)-based (C-GANs) attack, in which a malicious client (i.e., adversary) can reconstruct samples with the same distribution as the training samples from other clients (i.e., victims). Since a benign client’s data can be leaked to the adversary, this attack brings the risk of local data leakage for clients in many security-critical FL applications. Thus, we propose Fed-EDKD (i.e., Federated Ensemble Data-free Knowledge Distillation) technique to improve the current popular FL schemes to resist C-GANs attack. In Fed-EDKD, each client submits a local model to the server for obtaining an ensemble global model. Then, to avoid model expansion, Fed-EDKD adopts data-free knowledge distillation techniques to transfer knowledge from the ensemble global model to a compressed model. By this way, Fed-EDKD reduces the adversary’s control capability over the global model, so Fed-EDKD can effectively mitigate C-GANs attack. Finally, the experimental results demonstrate that Fed-EDKD significantly mitigates C-GANs attack while only incurring a slight accuracy degradation of FL.
引用
收藏
页码:10925 / 10949
页数:24
相关论文
共 50 条
  • [11] Mitigating bias in heterogeneous federated learning via stratified client selection
    Liu, Yazhi
    Xia, Haonan
    Li, Wei
    Niu, Teng
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2025, 18 (02)
  • [12] FedDefender: Client-Side Attack-Tolerant Federated Learning
    Park, Sungwon
    Han, Sungwon
    Wu, Fangzhao
    Kim, Sundong
    Zhu, Bin
    Xie, Xing
    Cha, Meeyoung
    PROCEEDINGS OF THE 29TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2023, 2023, : 1850 - 1861
  • [13] Sniper Backdoor: Single Client Targeted Backdoor Attack in Federated Learning
    Abad, Gorka
    Paguada, Servio
    Ersoy, Oguzhan
    Picek, Stjepan
    Ramirez-Duran, Victor Julio
    Urbieta, Aitor
    2023 IEEE CONFERENCE ON SECURE AND TRUSTWORTHY MACHINE LEARNING, SATML, 2023, : 377 - 391
  • [14] Mitigating Distributed Backdoor Attack in Federated Learning Through Mode Connectivity
    Walter, Kane
    Mohammady, Meisam
    Nepal, Surya
    Kanhere, Salil S.
    PROCEEDINGS OF THE 19TH ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, ACM ASIACCS 2024, 2024, : 1287 - 1298
  • [15] Efficient federated learning with cross-resource client collaboration
    Shen, Qi
    Yang, Liu
    INTERNATIONAL JOURNAL OF MACHINE LEARNING AND CYBERNETICS, 2025, 16 (02) : 931 - 945
  • [16] Client Selection Algorithm in Cross-device Federated Learning
    Zhang, Rui-Lin
    Du, Jin-Hua
    Yin, Hao
    Ruan Jian Xue Bao/Journal of Software, 2024, 35 (12): : 5725 - 5740
  • [17] Learning to Attack Federated Learning: A Model-based Reinforcement Learning Attack Framework
    Li, Henger
    Sun, Xiaolin
    Zheng, Zizhan
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 35 (NEURIPS 2022), 2022,
  • [18] Clustered Federated Learning Based on Client's Prototypes
    Lai, Weimin
    Xu, Zirong
    Yan, Qiao
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 909 - 914
  • [19] Federated learning based on asynchronous and adjusted client training
    Dai, Mingjun
    Zhao, Yinglin
    Yuan, Jialong
    Kianoush, Sanaz
    Savazzi, Stefano
    Li, Bingchun
    PHYSICAL COMMUNICATION, 2023, 61
  • [20] Contribution-based Federated Learning client selection
    Lin, Weiwei
    Xu, Yinhai
    Liu, Bo
    Li, Dongdong
    Huang, Tiansheng
    Shi, Fang
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2022, 37 (10) : 7235 - 7260