AIセキュリティポータル K Program
Lancelot: Towards Efficient and Privacy-Preserving Byzantine-Robust Federated Learning within Fully Homomorphic Encryption
Share
Abstract
In sectors such as finance and healthcare, where data governance is subject to rigorous regulatory requirements, the exchange and utilization of data are particularly challenging. Federated Learning (FL) has risen as a pioneering distributed machine learning paradigm that enables collaborative model training across multiple institutions while maintaining data decentralization. Despite its advantages, FL is vulnerable to adversarial threats, particularly poisoning attacks during model aggregation, a process typically managed by a central server. However, in these systems, neural network models still possess the capacity to inadvertently memorize and potentially expose individual training instances. This presents a significant privacy risk, as attackers could reconstruct private data by leveraging the information contained in the model itself. Existing solutions fall short of providing a viable, privacy-preserving BRFL system that is both completely secure against information leakage and computationally efficient. To address these concerns, we propose Lancelot, an innovative and computationally efficient BRFL framework that employs fully homomorphic encryption (FHE) to safeguard against malicious client activities while preserving data privacy. Our extensive testing, which includes medical imaging diagnostics and widely-used public image datasets, demonstrates that Lancelot significantly outperforms existing methods, offering more than a twenty-fold increase in processing speed, all while maintaining data privacy.
Truly privacy-preserving federated analytics for precision medicine with multiparty homomorphic encryption
David Froelicher, Juan R Troncoso-Pastoriza, Jean Louis Raisaro, Michel A Cuendet, Joao Sa Sousa, Hyunghoon Cho, Bonnie Berger, Jacques Fellay, Jean-Pierre Hubaux
Published: 2021
Decentralized federated learning through proxy model sharing
S. Kalra, J. Wen, J. C. Cresswell, M. Volkovs, H. Tizhoosh
Published: 2023
Federated learning for smart healthcare: A survey
Nguyen, D. C., Pham, Q.-V., Pathirana, P. N., Ding, M., Seneviratne, A., Lin, Z.
Published: 2022
A federated learning based privacy-preserving smart healthcare system
J. Li
Published: 2021
Poisoning attacks against support vector machines
B. Biggio, B. Nelson, P. Laskov
Published: 2012
Exploiting machine learning to subvert your spam filter
B. Nelson
Published: 2008
Local Model Poisoning Attacks to Byzantine-Robust Federated Learning
Minghong Fang, Xiaoyu Cao, Jinyuan Jia, Neil Zhenqiang Gong
Published: 2019.11.27
Analyzing Federated Learning through an Adversarial Lens
Arjun Nitin Bhagoji, Supriyo Chakraborty, Prateek Mittal, Seraphin Calo
Published: 2018.11.30
Dba: Distributed backdoor attacks against federated learning
C. Xie, K. Huang, P.-Y. Chen, B. Li
Published: 2020
Suppressing Poisoning Attacks on Federated Learning for Medical Imaging
Naif Alkhunaizi, Dmitry Kamzolov, Martin Takáč, Karthik Nandakumar
Published: 2022.7.15
Machine learning with adversaries: Byzantine tolerant gradient descent
Blanchard, P., El Mhamdi, E. M., Guerraoui, R., Stainer, J.
Published: 2017
Distributed Statistical Machine Learning in Adversarial Settings: Byzantine Gradient Descent
Yudong Chen, Lili Su, Jiaming Xu
Published: 2017.5.16
The Hidden Vulnerability of Distributed Learning in Byzantium
El Mahdi El Mhamdi, Rachid Guerraoui, Sébastien Rouault
Published: 2018.2.22
Byzantine-Resilient Stochastic Gradient Descent for Distributed Learning: A Lipschitz-Inspired Coordinate-wise Median Approach
Haibo Yang, Xin Zhang, Minghong Fang, Jia Liu
Published: 2019.9.10
Byzantine-robust distributed learning: Towards optimal statistical rates
Yin, D., Chen, Y., Kannan, R., Bartlett, P.
Published: 2018
Practical secure aggregation for privacy-preserving machine learning
K. Bonawitz
Published: 2017
Homomorphic encryption for arithmetic of approximate numbers
Jung Hee Cheon, Andrey Kim, Miran Kim, Yongsoo Song
Published: 2017
{BatchCrypt}: Efficient homomorphic encryption for {Cross-Silo} federated learning
C. Zhang
Published: 2020
Oort: efficient federated learning via guided participant selection
Fan Lai, Xiangfeng Zhu, Harsha V Madhyastha, Mosharaf Chowdhury
Published: 2021
Nvidia flare: Federated learning from simulation to real-world
H. R. Roth
Published: 2022
Fedml: A research library and benchmark for federated machine learning
C. He, S. Li, J. So, M. Zhang, H. Wang, X. Wang, P. Vepakomma, A. Singh, H. Qiu, L. Shen, P. Zhao, Y. Kang, Y. Liu, R. Raskar, Q. Yang, M. Annavaram, S. Avestimehr
Published: 2020
Openfhe: Open-source fully homomorphic encryption library
A. Al Badawi
Published: 2022
Gradient-based learning applied to document recognition
Y. LeCun, L. Bottou, Y. Bengio, P. Haffner
Published: 1998
Deep residual learning for image recognition
Kaiming He, Xiangyu Zhang, Shaoqing Ren, Jian Sun
Published: 2016
Mpaf: Model poisoning attacks to federated learning based on fake clients
Xiaoyu Cao, Neil Zhenqiang Gong
Published: 2022
Implementing and benchmarking word-wise homomorphic encryption schemes on gpu
H. Yang
Published: 2023
The mnist database of handwritten digit images for machine learning research
Li Deng
Published: 2012
Fashion-mnist: a novel image dataset for benchmarking machine learning algorithms
H. Xiao, K. Rasul, R. Vollgraf
Published: 2017
Pgada: perturbation-guided adversarial alignment for few-shot learning under the support-query shift
S. Jiang, W. Ding, H.-W. Chen, M.-S. Chen
Published: 2022
Federated learning on non-iid data silos: An experimental study
Q. Li, Y. Diao, Q. Chen, B. He
Published: 2021
Medmnist classification decathlon: A lightweight automl benchmark for medical image analysis
J. Yang, R. Shi, B. Ni
Published: 2020
Medmnist v2 - a large-scale lightweight benchmark for 2d and 3d biomedical image classification
J. Yang
Published: 2021
Communication-Efficient Learning of Deep Networks from Decentralized Data
H. Brendan McMahan, Eider Moore, Daniel Ramage, Seth Hampson, Blaise Agüera y Arcas
Published: 2016.2.18
Drynx: Decentralized, Secure, Verifiable System for Statistical Queries and Machine Learning on Distributed Datasets
David Froelicher, Juan Ramón Troncoso-Pastoriza, Joao Sa Sousa, Jean-Pierre Hubaux
Published: 2020
Web-based privacy-preserving multicenter medical data analysis tools via threshold homomorphic encryption: design and development study
Y. Lu, T. Zhou, Y. Tian, S. Zhu, J. Li
Published: 2020
Balancefl: Addressing class imbalance in long-tail federated learning
X. Shuai
Published: 2022
Clusterfl: A clustering-based federated learning system for human activity recognition
X. Ouyang, Z. Xie, J. Zhou, G. Xing, J. Huang
Published: 2022
Semi-parallel logistic regression for gwas on encrypted data
Kim, M., Song, Y., Li, B., Micciancio, D.
Published: 2019
Xnet: A real-time unified secure inference framework using homomorphic encryption
H. Yang
Published: 2023
Fully homomorphic encryption with polylog overhead
C. Gentry, S. Halevi, N. P. Smart
Published: 2012
A simplex method for function minimization
J. A. Nelder, R. Mead
Published: 1965
The HAM10000 dataset, a large collection of multi-source dermatoscopic images of common pigmented skin lesions
P. Tschandl, C. Rosendahl, H. Kittler
Published: 2018
Multiplication of many-digital numbers by automatic computers
A. A. Karatsuba, Y. P. Ofman
Published: 1962
Robust aggregation for federated learning
K. Pillutla, S. M. Kakade, Z. Harchaoui
Published: 2022
Combining Differential Privacy and Byzantine Resilience in Distributed SGD
Rachid Guerraoui, Nirupam Gupta, Rafael Pinot, Sebastien Rouault, John Stephan
Published: 2021.10.8
Differential privacy and byzantine resilience in sgd: Do they add up?
R. Guerraoui, N. Gupta, R. Pinot, S. Rouault, J. Stephan
Published: 2021
FLAME: taming backdoors in federated learning
Thien Duc Nguyen, Phillip Rieger, Huili Chen, Hossein Yalame, Helen Mollering, Hossein Fereidooni, Samuel Marchal, Markus Miettinen, Azalia Mirhoseini, Shaza Zeitouni, Farinaz Koushanfar, Ahmad-Reza Sadeghi, Thomas Schneider
Published: 2022
Elsa: Secure aggregation for federated learning with malicious actors
M. Rathee, C. Shen, S. Wagh, R. A. Popa
Published: 2023
Safefl: Mpc-friendly framework for private and robust federated learning
T. Gehlhar
Published: 2023
Byzantine-resilient secure federated learning
J. So, B. Guler, A. S. Avestimehr
Published: 2020
ShieldFL: Mitigating model poisoning attacks in privacy-preserving federated learning
Zhuoran Ma, Jianfeng Ma, Yinbin Miao, Yingjiu Li, Robert H Deng
Published: 2022
Flod: Oblivious defender for private byzantine-robust federated learning with dishonest-majority
Y. Dong, X. Chen, K. Li, D. Wang, S. Zeng
Published: 2021
Privacy-enhanced federated learning against poisoning adversaries
X. Liu, H. Li, G. Xu, Z. Chen, X. Huang, R. Lu
Published: 2021
FheFL: Fully Homomorphic Encryption Friendly Privacy-Preserving Federated Learning with Byzantine Users
Yogachandran Rahulamathavan, Charuka Herath, Xiaolan Liu, Sangarapillai Lambotharan, Carsten Maple
Published: 2023.6.8
BPFL: Towards efficient byzantine-robust and provably privacy-preserving federated learning
C. Nie, B. Wang, Y. Ji, Q. Li
Published: 2023
Privft: Private and fast text classification with homomorphic encryption
A. Al Badawi
Published: 2020
Accelerating fully homomorphic encryption through architecture-centric analysis and optimization
W. Jung
Published: 2021
Over 100x faster bootstrapping in fully homomorphic encryption through memory-centric optimization with GPUs
W. Jung, S. Kim, J. H. Ahn, J. H. Cheon, Y. Lee
Published: 2021
Carm: Cuda-accelerated rns multiplication in word-wise homomorphic encryption schemes for internet of things
S. ying Shen, H. Yang, Y. Liu, Z. Liu, Y. Zhao
Published: 2023
He-booster: An efficient polynomial arithmetic acceleration on gpus for fully homomorphic encryption
Z. Wang
Published: 2023
Large scale distributed deep networks
J. Dean
Published: 2012
Share