Adaptive Backdoor Attacks Against Dataset Distillation for Federated Learning

被引:0
|
作者
Chai, Ze [1 ,2 ]
Gao, Zhipeng [1 ,2 ]
Lin, Yijing [1 ,2 ]
Zhao, Chen [1 ,2 ]
Yu, Xinlei [1 ,2 ]
Xie, Zhiqiang [1 ,2 ]
机构
[1] Beijing Univ Posts & Telecommun, Beijing, Peoples R China
[2] State Key Lab Networking & Switching Technol, Beijing, Peoples R China
来源
ICC 2024 - IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS | 2024年
关键词
Backdoor Attacks; Dataset Distillation; Federated Learning;
D O I
10.1109/ICC51166.2024.10622462
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Dataset distillation is utilized to condense large datasets into smaller synthetic counterparts, effectively reducing their size while preserving their crucial characteristics. In Federated Learning (FL) scenarios, where individual devices or servers often lack substantial computational power or storage capacity, the use of dataset distillation becomes particularly advantageous for processing large volumes of data efficiently. Current research in dataset distillation for FL has primarily focused on enhancing accuracy and reducing communication complexity, but it has largely neglected the potential risk of backdoor attacks. To solve this issue, in this paper, we propose three adaptive dataset condensation based backdoor attacks against dataset distillation for FL. Adaptive attacks in dataset distillation for FL dynamically modify triggers during the training process. These triggers, embedded in the synthetic data, are designed to bypass traditional security detection. Moreover, these attacks employ self-adaptive perturbations to effectively respond to variations in the model's parameters. Experimental results show that the proposed adaptive attacks achieve at least 5.87% higher success rates, while maintaining almost the same clean test accuracy, compared to three benchmark methods.
引用
收藏
页码:4614 / 4619
页数:6
相关论文
共 50 条
  • [21] Collusive Backdoor Attacks in Federated Learning Frameworks for IoT Systems
    Alharbi, Saier
    Guo, Yifan
    Yu, Wei
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (11): : 19694 - 19707
  • [22] BadCleaner: Defending Backdoor Attacks in Federated Learning via Attention-Based Multi-Teacher Distillation
    Zhang, Jiale
    Zhu, Chengcheng
    Ge, Chunpeng
    Ma, Chuan
    Zhao, Yanchao
    Sun, Xiaobing
    Chen, Bing
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4559 - 4573
  • [23] Distributed Backdoor Attacks in Federated Learning Generated by DynamicTriggers
    Wang, Jian
    Shen, Hong
    Liu, Xuehua
    Zhou, Hua
    Li, Yuli
    INFORMATION SECURITY THEORY AND PRACTICE, WISTP 2024, 2024, 14625 : 178 - 193
  • [24] Scope: On Detecting Constrained Backdoor Attacks in Federated Learning
    Huang, Siquan
    Li, Yijiang
    Yan, Xingfu
    Gao, Ying
    Chen, Chong
    Shi, Leyu
    Chen, Biao
    Ng, Wing W. Y.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2025, 20 : 3302 - 3315
  • [25] SARS: A Personalized Federated Learning Framework Towards Fairness and Robustness against Backdoor Attacks
    Zhang, Webin
    Li, Youpeng
    An, Lingling
    Wan, Bo
    Wang, Xuyu
    PROCEEDINGS OF THE ACM ON INTERACTIVE MOBILE WEARABLE AND UBIQUITOUS TECHNOLOGIES-IMWUT, 2024, 8 (04):
  • [26] Towards Practical Backdoor Attacks on Federated Learning Systems
    Shi, Chenghui
    Ji, Shouling
    Pan, Xudong
    Zhang, Xuhong
    Zhang, Mi
    Yang, Min
    Zhou, Jun
    Yin, Jianwei
    Wang, Ting
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (06) : 5431 - 5447
  • [27] Backdoor Attacks in Peer-to-Peer Federated Learning
    Syros, Georgios
    Yar, Gokberk
    Boboila, Simona
    Nita-Rotaru, Cristina
    Oprea, Alina
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2025, 28 (01)
  • [28] A Blockchain-Based Federated-Learning Framework for Defense against Backdoor Attacks
    Li, Lu
    Qin, Jiwei
    Luo, Jintao
    ELECTRONICS, 2023, 12 (11)
  • [29] Never Too Late: Tracing and Mitigating Backdoor Attacks in Federated Learning
    Zeng, Hui
    Zhou, Tongqing
    Wu, Xinyi
    Cai, Zhiping
    2022 41ST INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS (SRDS 2022), 2022, : 69 - 81
  • [30] Backdoor Attack Against Dataset Distillation in Natural Language Processing
    Chen, Yuhao
    Xu, Weida
    Zhang, Sicong
    Xu, Yang
    APPLIED SCIENCES-BASEL, 2024, 14 (23):