Robust and Secure Federated Learning Against Hybrid Attacks: A Generic Architecture

被引:1
|
作者
Hao, Xiaohan [1 ]
Lin, Chao [2 ]
Dong, Wenhan [1 ]
Huang, Xinyi [1 ]
Xiong, Hui [1 ]
机构
[1] Hong Kong Univ Sci & Technol Guangzhou, Artificial Intelligence Thrust, Informat Hub, Guangzhou 511455, Peoples R China
[2] Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350117, Peoples R China
基金
中国国家自然科学基金;
关键词
Federated learning; privacy protection; poisoning attacks; model inconsistency attacks; inference attacks; POISONING ATTACKS;
D O I
10.1109/TIFS.2023.3336521
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Federated Learning (FL) enables multiple clients to collaboratively train a model without sharing their private data. However, the deployment of FL in real-world applications is vulnerable to various attacks from both malicious servers and clients. While cryptographic methods are effective in resisting server-side attacks, they undermine the capability of client-side defenses that rely on plaintext updates. Several valuable defenses targeting hybrid attacks have been devised to address this challenge, concentrating on specific client-side threats. To improve scalability, we continue this research line to introduce a generic architecture covering more client-side attacks. In this paper, we propose a general architecture to enhance client-side defenses from plaintext to ciphertext domains. This architecture not only supports the server-side defenses, but also accommodates a broader range of client-side defenses, including Norm-based, Krum-based, and Cosine-based strategies. The core of our architecture is generic detection under ciphertext, which tackles the following conflict of integrating server-side and client-side defenses. That is, the former aims to protect parameters from exposure while the latter demands plaintext updates. We prove the security of our architecture through the Universal Composability framework. Additionally, we provide a comprehensive instantiation and extensive evaluations to demonstrate the effectiveness and robustness of our approach. Our experiments show that our architecture can maintain the effectiveness of current client-side defenses when parameters are encrypted, thus effectively resisting hybrid attacks.
引用
收藏
页码:1576 / 1588
页数:13
相关论文
共 50 条
  • [21] Defense against local model poisoning attacks to byzantine-robust federated learning
    LU Shiwei
    LI Ruihu
    CHEN Xuan
    MA Yuena
    Frontiers of Computer Science, 2022, 16 (06)
  • [22] Defense against local model poisoning attacks to byzantine-robust federated learning
    Shiwei Lu
    Ruihu Li
    Xuan Chen
    Yuena Ma
    Frontiers of Computer Science, 2022, 16
  • [23] Secure and Efficient Federated Learning Against Model Poisoning Attacks in Horizontal and Vertical Data Partitioning
    Yu, Chong
    Meng, Zhenyu
    Zhang, Wenmiao
    Lei, Lei
    Ni, Jianbing
    Zhang, Kuan
    Zhao, Hai
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024,
  • [24] A Hybrid Architecture for Federated and Centralized Learning
    Elbir, Ahmet M.
    Coleri, Sinem
    Papazafeiropoulos, Anastasios K.
    Kourtessis, Pandelis
    Chatzinotas, Symeon
    IEEE TRANSACTIONS ON COGNITIVE COMMUNICATIONS AND NETWORKING, 2022, 8 (03) : 1529 - 1542
  • [25] Toward Secure and Verifiable Hybrid Federated Learning
    Du, Runmeng
    Li, Xuru
    He, Daojing
    Choo, Kim-Kwang Raymond
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 2935 - 2950
  • [26] A Federated Learning Architecture for Blockchain DDoS Attacks Detection
    Xu, Chang
    Jin, Guoxie
    Lu, Rongxing
    Zhu, Liehuang
    Shen, Xiaodong
    Guan, Yunguo
    Sharif, Kashif
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2024, 17 (05) : 1911 - 1923
  • [27] A robust analysis of adversarial attacks on federated learning environments
    Nair, Akarsh K.
    Raj, Ebin Deni
    Sahoo, Jayakrushna
    COMPUTER STANDARDS & INTERFACES, 2023, 86
  • [28] Robust Secure Aggregation with Lightweight Verification for Federated Learning
    Huang, Chao
    Yao, Yanqing
    Zhang, Xiaojun
    Teng, Da
    Wang, Yingdong
    Zhou, Lei
    2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 582 - 589
  • [29] A federated learning architecture for secure and private neuroimaging analysis
    Stripelis, Dimitris
    Gupta, Umang
    Saleem, Hamza
    Dhinagar, Nikhil
    Ghai, Tanmay
    Anastasiou, Chrysovalantis
    Sanchez, Rafael
    Steeg, Greg Ver
    Ravi, Srivatsan
    Naveed, Muhammad
    Thompson, Paul M.
    Ambite, Jose Luis
    PATTERNS, 2024, 5 (08):
  • [30] Privacy preserving and secure robust federated learning: A survey
    Han, Qingdi
    Lu, Siqi
    Wang, Wenhao
    Qu, Haipeng
    Li, Jingsheng
    Gao, Yang
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (13):