VPFL: Enabling verifiability and privacy in federated learning with zero-knowledge proofs

被引:0
|
作者
Ma, Juan [1 ]
Liu, Hao [2 ]
Zhang, Mingyue [1 ]
Liu, Zhiming [1 ]
机构
[1] Southwest Univ, Coll Comp & Informat Sci, Software Coll, Chongqing 400715, Peoples R China
[2] Guangzhou Univ, Cyberspace Inst Adv Technol, Guangzhou 510799, Peoples R China
关键词
Verifiable; Privacy-reserving; Security model; zero-knowledge range proofs; Federated learning; ATTACKS; SECURE; MEMBERSHIP; EFFICIENT;
D O I
10.1016/j.knosys.2024.112115
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Federated learning has become increasingly popular in recent years and is widely applied to various fields of machine learning. However, the localized execution of federated learning lacks visibility of the training process to a third party (e.g., the model user or auditor), which raises the need to verify the training process. Privacy concerns over the public release of sensitive data for verification purposes are a prominent issue. Therefore, enabling a public verification of the training process without revealing sensitive data is a challenge. In this paper, we focus on verifiability and privacy in federated learning and propose a verifiable and privacy -preserving federated learning scheme (VPFL). We first employ zero -knowledge proofs to allow a third party to publicly verify the training process, which enhances the transparency of the training process and the reliability of the model. Then, to further protect the privacy of sensitive data, we exploit a commitment scheme to ensure that no information about sensitive data is leaked to a third party. We conduct extensive experiments to evaluate the performance of our scheme. For federated learning with 100 clients, our scheme only takes 13.1s to generate evidence and 8.8s to verify it. In addition, we compared our scheme with other schemes, and we observed that our scheme satisfies both the security properties of verifiability and privacy.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Trusted Model Aggregation With Zero-Knowledge Proofs in Federated Learning
    Ma, Renwen
    Hwang, Kai
    Li, Mo
    Miao, Yiming
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2024, 35 (11) : 2284 - 2296
  • [2] ZERO-KNOWLEDGE PROOFS
    MCGEOCH, CC
    AMERICAN MATHEMATICAL MONTHLY, 1993, 100 (07): : 682 - 685
  • [3] ZERO-KNOWLEDGE PROOFS
    WAYNER, P
    BYTE, 1987, 12 (11): : 149 - 152
  • [4] Blockchain-based Federated Learning Utilizing Zero-Knowledge Proofs for Verifiable Training and Aggregation
    Ebrahimi, Elmira
    Sober, Michael
    Hoang, Anh-Tu
    Ileri, Can Umut
    Sanders, William
    Schulte, Stefan
    2024 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN, BLOCKCHAIN 2024, 2024, : 54 - 63
  • [5] ON THE KNOWLEDGE TIGHTNESS OF ZERO-KNOWLEDGE PROOFS
    ITOH, T
    KAWAKUBO, A
    IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 1994, E77A (01) : 47 - 55
  • [6] Zero-knowledge proofs of retrievability
    Yan Zhu
    HuaiXi Wang
    ZeXing Hu
    Gail-Joon Ahn
    HongXin Hu
    Science China Information Sciences, 2011, 54 : 1608 - 1617
  • [7] Zero-knowledge proofs of retrievability
    Zhu Yan
    Wang HuaiXi
    Hu ZeXing
    Ahn, Gail-Joon
    Hu HongXin
    SCIENCE CHINA-INFORMATION SCIENCES, 2011, 54 (08) : 1608 - 1617
  • [8] Zero-knowledge proofs of retrievability
    AHN Gail-Joon
    Science China(Information Sciences), 2011, 54 (08) : 1608 - 1617
  • [9] Zero-knowledge proofs of identity
    Feige, Uriel
    Fiat, Amos
    Shamir, Adi
    Journal of Cryptology, 1988, 1 (02) : 77 - 94
  • [10] Unifying Zero-Knowledge Proofs of Knowledge
    Maurer, Ueli
    PROGRESS IN CRYPTOLOGY - AFRICACRYPT 2009, 2009, 5580 : 272 - 286