Differentially private federated learning with local momentum updates and gradients filtering

被引:0
|
作者
Zhang, Shuaishuai [1 ]
Huang, Jie [1 ,2 ]
Li, Peihao [1 ]
Liang, Chuang [1 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 211189, Peoples R China
[2] Purple Mt Labs, Nanjing 211111, Peoples R China
关键词
Federated learning; Differential privacy; Gaussian mechanism; Momentum updates;
D O I
10.1016/j.ins.2024.120960
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Differential Privacy (DP) is applied in Federated Learning (FL) for defending against various privacy attacks. Existing methods based on Gaussian mechanism require the operations of clipping and adding noise, leading to significant accuracy degradation. In this paper, we propose a novel FL scheme named DPFL-LMG to provide user-level DP guarantee while maintaining a high model accuracy. Our main idea is to mitigate the negative effects of the clipping on the model convergence by decreasing the L-2 norm of local updates and the cross-client update variance. Specifically, our method includes two techniques, Local Momentum Updates (LMU) and Gradients Filtering (GF). LMU combines local updates of different rounds in a momentum way. It can significantly decrease the cross-client update variance by weakening the gradient noise in local updates caused by stochastic gradient descent (SGD) algorithm. GF estimates the gradient noise in each element of local updates by observing the element-wise variance. Elements with large noise are considered unnecessary and are zeroed out for the reduction of local update norms. We theoretically analyze the privacy guarantee and the convergence of our method. Experiments demonstrate that DPFL-LMG can effectively mitigate the accuracy degradation caused by clipping and outperform previous DPFL methods in the accuracy.
引用
收藏
页数:23
相关论文
共 50 条
  • [21] Differentially Private federated learning to Protect Identity in Stress Recognition
    Guelta, Bouchiba
    Benbakreti, Samir
    Boumediene, Kadda
    PRZEGLAD ELEKTROTECHNICZNY, 2024, 100 (06): : 36 - 41
  • [22] An Optimized Sparse Response Mechanism for Differentially Private Federated Learning
    Ma, Jiating
    Zhou, Yipeng
    Cui, Laizhong
    Guo, Song
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 2285 - 2295
  • [23] A Socially Optimal Data Marketplace With Differentially Private Federated Learning
    Sun, Peng
    Liao, Guocheng
    Chen, Xu
    Huang, Jianwei
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2024, 32 (03) : 2221 - 2236
  • [24] FedDP-SA: Boosting Differentially Private Federated Learning via Local Data Set Splitting
    Liu, Xuezheng
    Zhou, Yipeng
    Wu, Di
    Hu, Miao
    Hui Wang, Jessie
    Guizani, Mohsen
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (19): : 31687 - 31698
  • [25] DPLCF: Differentially Private Local Collaborative Filtering
    Gao, Chen
    Huang, Chao
    Lin, Dongsheng
    Jin, Depeng
    Li, Yong
    PROCEEDINGS OF THE 43RD INTERNATIONAL ACM SIGIR CONFERENCE ON RESEARCH AND DEVELOPMENT IN INFORMATION RETRIEVAL (SIGIR '20), 2020, : 961 - 970
  • [26] LAFD: Local-Differentially Private and Asynchronous Federated Learning With Direct Feedback Alignment
    Jung, Kijung
    Baek, Incheol
    Kim, Soohyung
    Chung, Yon Dohn
    IEEE ACCESS, 2023, 11 : 86754 - 86769
  • [27] Squeezing More Utility via Adaptive Clipping on Differentially Private Gradients in Federated Meta-Learning
    Wang, Ning
    Xiao, Yang
    Chen, Yimin
    Zhang, Ning
    Lou, Wenjing
    Hou, Y. Thomas
    PROCEEDINGS OF THE 38TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, ACSAC 2022, 2022, : 647 - 657
  • [28] Boosting Accuracy of Differentially Private Continuous Data Release for Federated Learning
    Cai, Jianping
    Ye, Qingqing
    Hu, Haibo
    Liu, Ximeng
    Fu, Yanggeng
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 10287 - 10301
  • [29] Analyze and Improve Differentially Private Federated Learning: A Model Robustness Perspective
    Zhang, Shuaishuai
    Huang, Jie
    Li, Peihao
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025, 20 : 807 - 821
  • [30] A Federated Learning Framework Based on Differentially Private Continuous Data Release
    Cai, Jianping
    Liu, Ximeng
    Ye, Qingqing
    Liu, Yang
    Wang, Yuyang
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4879 - 4894