AIセキュリティポータル K Program
FedRDF: A Robust and Dynamic Aggregation Function against Poisoning Attacks in Federated Learning
Share
Abstract
Federated Learning (FL) represents a promising approach to typical privacy concerns associated with centralized Machine Learning (ML) deployments. Despite its well-known advantages, FL is vulnerable to security attacks such as Byzantine behaviors and poisoning attacks, which can significantly degrade model performance and hinder convergence. The effectiveness of existing approaches to mitigate complex attacks, such as median, trimmed mean, or Krum aggregation functions, has been only partially demonstrated in the case of specific attacks. Our study introduces a novel robust aggregation mechanism utilizing the Fourier Transform (FT), which is able to effectively handling sophisticated attacks without prior knowledge of the number of attackers. Employing this data technique, weights generated by FL clients are projected into the frequency domain to ascertain their density function, selecting the one exhibiting the highest frequency. Consequently, malicious clients' weights are excluded. Our proposed approach was tested against various model poisoning attacks, demonstrating superior performance over state-of-the-art aggregation methods.
Communication-Efficient Learning of Deep Networks from Decentralized Data
H. Brendan McMahan, Eider Moore, Daniel Ramage, Seth Hampson, Blaise Agüera y Arcas
Published: 2016.2.18
The eu general data protection regulation (gdpr): European regulation that has a global impact
M. Goddard
Published: 2017
Federated learning in smart cities: Privacy and security survey
A.-H. Rasha, T. Li, W. Huang, J. Gu, C. Li
Published: 2023
Survey on federated learning threats: Concepts, taxonomy on attacks and defences, experimental study and challenges
N. Rodríguez-Barroso, D. Jimenez-López, M. V. Luzón, F. Herrera, E. Martínez-Camara
Published: 2023
Federated cyberattack detection for internet of things-enabled smart cities
S. N. Matheu, E. Marmol, J. L. Hernández-Ramos, A. Skarmeta, G. Baldini
Published: 2022
Evaluating federated learning for intrusion detection in internet of things: Review and challenges
E. M. Campos, P. F. Saura, A. Gonzalez-Vidal, J. L. Hernández-Ramos, J. B. Bernabe, G. Baldini, A. Skarmeta
Published: 2021
Poisoning attacks in federated learning: A survey
G. Xia, J. Chen, C. Yu, J. Ma
Published: 2023
Intrusion Detection based on Federated Learning: a systematic review
Jose L. Hernandez-Ramos, Georgios Karopoulos, Efstratios Chatzoglou, Vasileios Kouliaridis, Enrique Marmol, Aurora Gonzalez-Vidal, Georgios Kambourakis
Published: 2023.8.18
Analyzing Federated Learning through an Adversarial Lens
Arjun Nitin Bhagoji, Supriyo Chakraborty, Prateek Mittal, Seraphin Calo
Published: 2018.11.30
Byzantine-robust distributed learning: Towards optimal statistical rates
Yin, D., Chen, Y., Kannan, R., Bartlett, P.
Published: 2018
Machine learning with adversaries: Byzantine tolerant gradient descent
Blanchard, P., El Mhamdi, E. M., Guerraoui, R., Stainer, J.
Published: 2017
Fourier transforms: an introduction for engineers
R. M. Gray, J. W. Goodman
Published: 2012
Manipulating the byzantine: Optimizing model poisoning attacks and defenses for federated learning
V. Shejwalkar, A. Houmansadr
Published: 2021
Can machine learning be secure?
M. Barreno, B. Nelson, R. Sears, A. D. Joseph, J. D. Tygar
Published: 2006
Poisoning Attacks to Graph-Based Recommender Systems
Minghong Fang, Guolei Yang, Neil Zhenqiang Gong, Jia Liu
Published: 2018.9.12
A comprehensive survey on poisoning attacks and countermeasures in machine learning
Z. Tian, L. Cui, J. Liang, S. Yu
Published: 2022
Trojdrl: evaluation of backdoor attacks on deep reinforcement learning
P. Kiourti, K. Wardega, S. Jha, W. Li
Published: 2020
Beats: Blocks of eigenvalues algorithm for time series segmentation
A. Gonzalez-Vidal, P. Barnaghi, A. F. Skarmeta
Published: 2018
Experiencing sax: a novel symbolic representation of time series
J. Lin, E. Keogh, L. Wei, S. Lonardi
Published: 2007
A piecewise aggregate approximation lower-bound estimate for posteriorgram-based dynamic time warping
Y. Zhang, J. Glass
Published: 2011
Fourier series
G. P. Tolstov
Published: 2012
A first course in Fourier analysis
D. W. Kammler
Published: 2007
Fourier analysis: an introduction
E. M. Stein, R. Shakarchi
Published: 2011
Challenges and Approaches for Mitigating Byzantine Attacks in Federated Learning
Junyu Shi, Wei Wan, Shengshan Hu, Jianrong Lu, Leo Yu Zhang
Published: 2021.12.29
Federated learning for malware detection in iot devices
V. Rey, P. M. S. Sanchez, A. H. Celdrán, G. Bovet
Published: 2022
Byzantine-resilient secure federated learning
J. So, B. Guler, A. S. Avestimehr
Published: 2020
Intrusion detection based on privacy-preserving federated learning for the industrial iot
P. Ruzafa-Alcazar, P. Fernández-Saura, E. M. Mármol-Campos, A. Gonzalez-Vidal, J. L. Hernández-Ramos, J. Bernal-Bernabe, A. F. Skarmeta
Published: 2021
Robust aggregation for federated learning
K. Pillutla, S. M. Kakade, Z. Harchaoui
Published: 2022
Byzantine-robust aggregation in federated learning empowered industrial iot
S. Li, E. Ngai, T. Voigt
Published: 2021
Survey of personalization techniques for federated learning
V. Kulkarni, M. Kulkarni, A. Pant
Published: 2020
Fltrust: Byzantine-robust federated learning via trust bootstrapping
X. Cao, M. Fang, J. Liu, N. Z. Gong
Published: 2021
Lomar: A local defense against poisoning attack on federated learning
X. Li, Z. Qu, S. Zhao, B. Tang, Z. Lu, Y. Liu
Published: 2021
Transform-domain federated learning for edge-enabled iot intelligence
L. Zhao, L. Cai, W.-S. Lu
Published: 2022
Fully decentralized federated learning
A. Lalitha, S. Shekhar, T. Javidi, F. Koushanfar
Published: 2018
Back to the drawing board: A critical evaluation of poisoning attacks on production federated learning
V. Shejwalkar, A. Houmansadr, P. Kairouz, D. Ramage
Published: 2022
Sageflow: Robust federated learning against both stragglers and adversaries
J. Park, D.-J. Han, M. Choi, J. Moon
Published: 2021
Local Model Poisoning Attacks to Byzantine-Robust Federated Learning
Minghong Fang, Xiaoyu Cao, Jinyuan Jia, Neil Zhenqiang Gong
Published: 2019.11.27
Fourier transform method to determine the probability density function from a given set of random samples
K. Nanbu
Published: 1995
Kolmogorov–smirnov test: Overview
V. W. Berger, Y. Zhou
Published: 2014
Emnist: Extending mnist to handwritten letters
G. Cohen, S. Afshar, J. Tapson, A. van Schaik
Published: 2017
Entropy estimates of small data sets
J. A. Bonachela, H. Hinrichsen, M. A. Munoz
Published: 2008
The elements of statistical learning: data mining, inference, and prediction
T. Hastie, R. Tibshirani, J. H. Friedman, J. H. Friedman
Published: 2009
Share