Robust and Secure Federated Learning Against Hybrid Attacks: A Generic Architecture

被引:1
|
作者
Hao, Xiaohan [1 ]
Lin, Chao [2 ]
Dong, Wenhan [1 ]
Huang, Xinyi [1 ]
Xiong, Hui [1 ]
机构
[1] Hong Kong Univ Sci & Technol Guangzhou, Artificial Intelligence Thrust, Informat Hub, Guangzhou 511455, Peoples R China
[2] Fujian Normal Univ, Coll Comp & Cyber Secur, Fuzhou 350117, Peoples R China
基金
中国国家自然科学基金;
关键词
Federated learning; privacy protection; poisoning attacks; model inconsistency attacks; inference attacks; POISONING ATTACKS;
D O I
10.1109/TIFS.2023.3336521
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Federated Learning (FL) enables multiple clients to collaboratively train a model without sharing their private data. However, the deployment of FL in real-world applications is vulnerable to various attacks from both malicious servers and clients. While cryptographic methods are effective in resisting server-side attacks, they undermine the capability of client-side defenses that rely on plaintext updates. Several valuable defenses targeting hybrid attacks have been devised to address this challenge, concentrating on specific client-side threats. To improve scalability, we continue this research line to introduce a generic architecture covering more client-side attacks. In this paper, we propose a general architecture to enhance client-side defenses from plaintext to ciphertext domains. This architecture not only supports the server-side defenses, but also accommodates a broader range of client-side defenses, including Norm-based, Krum-based, and Cosine-based strategies. The core of our architecture is generic detection under ciphertext, which tackles the following conflict of integrating server-side and client-side defenses. That is, the former aims to protect parameters from exposure while the latter demands plaintext updates. We prove the security of our architecture through the Universal Composability framework. Additionally, we provide a comprehensive instantiation and extensive evaluations to demonstrate the effectiveness and robustness of our approach. Our experiments show that our architecture can maintain the effectiveness of current client-side defenses when parameters are encrypted, thus effectively resisting hybrid attacks.
引用
收藏
页码:1576 / 1588
页数:13
相关论文
共 50 条
  • [31] Robust and privacy-preserving federated learning with distributed additive encryption against poisoning attacks
    Zhang, Fan
    Huang, Hui
    Chen, Zhixiong
    Huang, Zhenjie
    COMPUTER NETWORKS, 2024, 245
  • [32] Robust Aggregation Technique Against Poisoning Attacks in Multi-Stage Federated Learning Applications
    Siriwardhana, Yushan
    Porambage, Pawani
    Liyanage, Madhusanka
    Marchal, Samuel
    Ylianttila, Mika
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 956 - 962
  • [33] Autonomic Secure HPC Architecture Against Power Attacks
    Fargo, Farah
    Franza, Olivier
    2018 IEEE/ACS 15TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2018,
  • [34] Secure Model Aggregation Against Poisoning Attacks for Cross-Silo Federated Learning With Robustness and Fairness
    Mao, Yunlong
    Ye, Zhujing
    Yuan, Xinyu
    Zhong, Sheng
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 6321 - 6336
  • [35] RFVIR: A robust federated algorithm defending against Byzantine attacks
    Wang, Yongkang
    Zhai, Di-Hua
    Xia, Yuanqing
    INFORMATION FUSION, 2024, 105
  • [36] DisBezant: Secure and Robust Federated Learning Against Byzantine Attack in IoT-Enabled MTS
    Ma, Xindi
    Jiang, Qi
    Shojafar, Mohammad
    Alazab, Mamoun
    Kumar, Sachin
    Kumari, Saru
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (02) : 2492 - 2502
  • [37] A robust IoT architecture for smart inverters in microgrids using hybrid deep learning and signal processing against adversarial attacks
    Elsisi, Mahmoud
    Bergies, Shimaa
    INTERNET OF THINGS, 2025, 31
  • [38] Label Inference Attacks Against Vertical Federated Learning
    Fu, Chong
    Zhang, Xuhong
    Ji, Shouling
    Chen, Jinyin
    Wu, Jingzheng
    Guo, Shanqing
    Zhou, Jun
    Liu, Alex X.
    Wang, Ting
    PROCEEDINGS OF THE 31ST USENIX SECURITY SYMPOSIUM, 2022, : 1397 - 1414
  • [39] MATFL: Defending Against Synergetic Attacks in Federated Learning
    Yang, Wen
    Peng, Luyao
    Tang, Xiangyun
    Weng, Yu
    2023 IEEE INTERNATIONAL CONFERENCES ON INTERNET OF THINGS, ITHINGS IEEE GREEN COMPUTING AND COMMUNICATIONS, GREENCOM IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING, CPSCOM IEEE SMART DATA, SMARTDATA AND IEEE CONGRESS ON CYBERMATICS,CYBERMATICS, 2024, : 313 - 319
  • [40] A Federated Weighted Learning Algorithm Against Poisoning Attacks
    Yafei Ning
    Zirui Zhang
    Hu Li
    Yuhan Xia
    Ming Li
    International Journal of Computational Intelligence Systems, 18 (1)