Label-Flipping Attacks in GNN-Based Federated Learning

被引:0
|
作者
Yu, Shanqing [1 ,2 ]
Shen, Jie [1 ,2 ]
Xu, Shaocong [1 ,2 ]
Wang, Jinhuan [1 ,2 ]
Wang, Zeyu [1 ,2 ]
Xuan, Qi [1 ,2 ]
机构
[1] Zhejiang Univ Technol, Inst Cyberspace Secur, Coll Informat Engn, Hangzhou 310014, Peoples R China
[2] Zhejiang Univ Technol, Binjiang Inst Artificial Intelligence, Hangzhou 310056, Peoples R China
来源
IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING | 2025年 / 12卷 / 02期
基金
中国国家自然科学基金;
关键词
Federated learning; Security; Computational modeling; Training; Data models; Graph neural networks; Data privacy; Costs; Symbols; Robustness; graph neural network; label-flipping; data poisoning;
D O I
10.1109/TNSE.2025.3528831
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
Federated learning offers multi-party collaborative training but also poses several potential security risks. These security issues have been studied more extensively in the context of basic image models, but it is relatively less explored in the field of graphs. Compared to various existing graph-based attack methods, the label-flipping attack does not need to change the graph structure and it is highly stealthy. Therefore, this paper explores a Graph Federated Label Flipping Attack (Graph-FLFA) and proposes a new malicious gradient computation strategy for federated graph models. The goal of this attack method is to maximally disrupt the classification results of specific nodes in the node classification task, without affecting the classification performance of other nodes. This strategy exhibits strong specificity and stealthiness, effectively balancing the influence of various labels and ensuring significant attack effects even when the poisoning ratio is very low. Extensive experiments on four benchmark datasets demonstrate that Graph-FLFA has a high attack success rate in different GNN-based models, achieving the most advanced attack performance. Furthermore, it has the capability to evade detection methods employed in defensive measures.
引用
收藏
页码:1357 / 1368
页数:12
相关论文
共 50 条
  • [11] AWFC: Preventing Label Flipping Attacks Towards Federated Learning for Intelligent IoT
    Lv, Zhuo
    Cao, Hongbo
    Zhang, Feng
    Ren, Yuange
    Wang, Bin
    Chen, Cen
    Li, Nuannuan
    Chang, Hao
    Wang, Wei
    COMPUTER JOURNAL, 2022, 65 (11): : 2849 - 2859
  • [12] Data Quality Detection Mechanism Against Label Flipping Attacks in Federated Learning
    Jiang, Yifeng
    Zhang, Weiwen
    Chen, Yanxi
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 1625 - 1637
  • [13] A Novel Defense Mechanism Against Label-Flipping Attacks for Support Vector Machines
    Kuo, Ming-Yu
    Cheng, Bo-Chao
    2021 INTERNATIONAL CONFERENCE ON SECURITY AND INFORMATION TECHNOLOGIES WITH AI, INTERNET COMPUTING AND BIG-DATA APPLICATIONS, 2023, 314 : 247 - 256
  • [14] Discerning Limitations of GNN-based Attacks on Logic Locking
    Darjani, Armin
    Kavand, Nima
    Rai, Shubham
    Kumar, Akash
    2023 60TH ACM/IEEE DESIGN AUTOMATION CONFERENCE, DAC, 2023,
  • [15] Targeted Shilling Attacks on GNN-based Recommender Systems
    Guo, Sihan
    Bai, Ting
    Deng, Weihong
    PROCEEDINGS OF THE 32ND ACM INTERNATIONAL CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, CIKM 2023, 2023, : 649 - 658
  • [16] Thwarting GNN-Based Attacks Against Logic Locking
    Darjani, Armin
    Kavand, Nima
    Rai, Shubham
    Kumar, Akash
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 7200 - 7215
  • [17] FedAssess: analysis for efficient communication and security algorithms over various federated learning frameworks and mitigation of label-flipping attack
    Anusuya, R.
    Renuka, D. Karthika
    BULLETIN OF THE POLISH ACADEMY OF SCIENCES-TECHNICAL SCIENCES, 2024, 72 (03)
  • [18] Label Attentive Distillation for GNN-Based Graph Classification
    Hong, Xiaobin
    Li, Wenzhong
    Wang, Chaoqun
    Lin, Mingkai
    Lu, Sanglu
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 8, 2024, : 8499 - 8507
  • [19] Robust GNN-based Representation Learning for HLS
    Sohrabizadeh, Atefeh
    Bai, Yunsheng
    Sun, Yizhou
    Cong, Jason
    2023 IEEE/ACM INTERNATIONAL CONFERENCE ON COMPUTER AIDED DESIGN, ICCAD, 2023,
  • [20] GFedKG: GNN-based federated embedding model for knowledge graph completion
    Wang, Yuzhuo
    Wang, Hongzhi
    Liu, Xianglong
    Yan, Yu
    KNOWLEDGE-BASED SYSTEMS, 2024, 301