FL2DP: Privacy-Preserving Federated Learning Via Differential Privacy for Artificial IoT

被引:10
作者
Gu, Chen [1 ]
Cui, Xuande [1 ]
Zhu, Xiaoling [1 ]
Hu, Donghui [1 ]
机构
[1] Hefei Univ Technol, Sch Comp Sci & Informat Engn, Hefei 230002, Peoples R China
关键词
Servers; Data privacy; Training; Privacy; Computational modeling; Data models; Sensitivity; Artificial internet of things; differential privacy (DP); exponential mechanism; federated learning (FL); gradient indistinguishability; FRAMEWORK;
D O I
10.1109/TII.2023.3331726
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning (FL) is a promising paradigm for collaboratively training networks on distributed clients while retaining data locally. Recent work has shown that personal data can be recovered even though clients only send gradients to the server. To against the gradient leakage issue, differential privacy (DP)-based solutions are proposed to protect data privacy by adding noise to the gradient before sending it to the server. However, the introduced noise affects the training efficiency of local clients, resulting in low model accuracy. Moreover, the identity privacy of clients has not been seriously considered in FL. In this article, we propose FL2DP, a privacy-preserving scheme focusing on protecting the data privacy as well as the identity privacy of clients. Different from the current schemes that add noise sampled from the Gaussian or Laplace distribution, in our scheme the noise is added to the gradient based on the exponential mechanism to achieve high training efficiency. Then, clients upload the perturbed gradients to a shuffler, which reassigns these gradients with different identities. We give a formal privacy definition called gradient indistinguishability to provide strict unlinkability for gradients shuffle. We propose a new gradient shuffling mechanism by adapting the DP-based exponential mechanism to satisfy gradient indistinguishability using the designed utility function. In this case, an attacker cannot infer the real identity of the client via the shuffled gradient. We conduct extensive experiments on two real-world datasets, and the results demonstrate the effectiveness of the proposed scheme.
引用
收藏
页码:5100 / 5111
页数:12
相关论文
共 48 条
[1]   Differentially Private Federated Learning with Local Regularization and Sparsification [J].
Cheng, Anda ;
Wang, Peisong ;
Zhang, Xi Sheryl ;
Cheng, Jian .
2022 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2022, :10112-10121
[2]   Secure and Privacy-Preserving Federated Learning via Co-Utility [J].
Domingo-Ferrer, Josep ;
Blanco-Justicia, Alberto ;
Manjon, Jesus ;
Sanchez, David .
IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (05) :3988-4000
[3]  
Dwork C, 2006, LECT NOTES COMPUT SC, V4052, P1
[4]   Calibrating noise to sensitivity in private data analysis [J].
Dwork, Cynthia ;
McSherry, Frank ;
Nissim, Kobbi ;
Smith, Adam .
THEORY OF CRYPTOGRAPHY, PROCEEDINGS, 2006, 3876 :265-284
[5]   The Algorithmic Foundations of Differential Privacy [J].
Dwork, Cynthia ;
Roth, Aaron .
FOUNDATIONS AND TRENDS IN THEORETICAL COMPUTER SCIENCE, 2013, 9 (3-4) :211-406
[6]   Sandbox Computing: A Data Privacy Trusted Sharing Paradigm Via Blockchain and Federated Learning [J].
Guo, Shaoyong ;
Zhang, Keqin ;
Gong, Bei ;
Chen, Liandong ;
Ren, Yinlin ;
Qi, Feng ;
Qiu, Xuesong .
IEEE TRANSACTIONS ON COMPUTERS, 2023, 72 (03) :800-810
[7]   Secure and Utility-Aware Data Collection with Condensed Local Differential Privacy [J].
Gursoy, Mehmet Emre ;
Tamersoy, Acar ;
Truex, Stacey ;
Wei, Wenqi ;
Liu, Ling .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (05) :2365-2378
[8]   An Efficient Identity-Based Conditional Privacy-Preserving Authentication Scheme for Vehicular Ad Hoc Networks [J].
He, Debiao ;
Zeadally, Sherali ;
Xu, Baowen ;
Huang, Xinyi .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2015, 10 (12) :2681-2691
[9]   Privacy-Preserving Federated Learning for Industrial Edge Computing via Hybrid Differential Privacy and Adaptive Compression [J].
Jiang, Bin ;
Li, Jianqiang ;
Wang, Huihui ;
Song, Houbing .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2023, 19 (02) :1136-1144
[10]   Blockchain-Based Federated Learning With Secure Aggregation in Trusted Execution Environment for Internet-of-Things [J].
Kalapaaking, Aditya Pribadi ;
Khalil, Ibrahim ;
Rahman, Mohammad Saidur ;
Atiquzzaman, Mohammed ;
Yi, Xun ;
Almashor, Mahathir .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2023, 19 (02) :1703-1714