High-accuracy low-cost privacy-preserving federated learning in IoT systems via adaptive perturbation

被引:5
|
作者
Liu, Tian [1 ,2 ]
Hu, Xueyang [1 ]
Xu, Hairuo [1 ]
Shu, Tao [1 ]
Nguyen, Diep N. [3 ]
机构
[1] Auburn Univ, Dept Comp Sci & Software Engn, Auburn, AL 36849 USA
[2] Zhejiang Lab, Hangzhou, Peoples R China
[3] Univ Technol Sydney, Sch Elect & Data Engn, Sydney, NSW, Australia
基金
美国国家科学基金会;
关键词
Federated learning; Privacy-preserving; IoT; Convergence performance; Information leakage; Local privacy;
D O I
10.1016/j.jisa.2022.103309
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the rapid development of the Internet of Things (IoT), federated learning (FL) has been widely used to obtain insights from collected data while preserving data privacy. Differential privacy (DP) is an additive noise scheme that has been widely studied as a privacy-preserving approach on FL. However, privacy protection under DP usually comes at the cost of model accuracy for the underlying FL process. In this paper, we propose a novel low-cost (for both communication and computational overhead) adaptive noise perturbation/masking scheme to protect FL clients' privacy without degrading the global model accuracy. In particular, we set the magnitude of the additive noise to adaptively change with the magnitude of the local model updates. Then, a direction-based filtering scheme is used to accelerate the convergence of the FL model. A maximum tolerable noise bound for local clients is derived using the central limit theorem (CLT). The designed noise maximizes privacy protection for clients while preserving the accuracy and convergence rate of the FL model , as a result of the noise cancelling out and forming a more concentrated distribution after the aggregation operation on the server. We theoretically prove that FL with the proposed noise perturbation scheme retains the same accuracy and convergence rate (O(1/T) for convex loss functions and O(1/root T) for non-convex loss functions) as that of non-private FL with SGD. We also evaluate the performance of the proposed scheme in terms of convergence behavior, computational efficiency, and privacy protection against state-of-the-art privacy inference attacks on real-world datasets. Experimental results show that FL with our proposed perturbation scheme outperforms DP in the accuracy and convergence rate of the FL model in both client dropout and non -client dropout scenarios. Compared with DP, our proposed scheme does not incur additional computational and communication overhead. Our approach provides DP-comparable or better effectiveness in defending against privacy attacks under the same global model accuracy.
引用
收藏
页数:15
相关论文
共 50 条
  • [31] Privacy-preserving in Blockchain-based Federated Learning systems
    Sameera, K. M.
    Nicolazzo, Serena
    Arazzi, Marco
    Nocera, Antonino
    Rehiman, K. A. Rafidha
    Vinod, P.
    Conti, Mauro
    COMPUTER COMMUNICATIONS, 2024, 222 : 38 - 67
  • [32] A Survey on the use of Federated Learning in Privacy-Preserving Recommender Systems
    Chronis, Christos
    Varlamis, Iraklis
    Himeur, Yassine
    Sayed, Aya N.
    AL-Hasan, Tamim M.
    Nhlabatsi, Armstrong
    Bensaali, Faycal
    Dimitrakopoulos, George
    IEEE OPEN JOURNAL OF THE COMPUTER SOCIETY, 2024, 5 : 227 - 247
  • [33] Model-Agnostic Federated Learning for Privacy-Preserving Systems
    Almohri, Hussain M. J.
    Watson, Layne T.
    2023 IEEE SECURE DEVELOPMENT CONFERENCE, SECDEV, 2023, : 99 - 105
  • [34] Privacy-preserving Federated Learning for Industrial Defect Detection Systems via Differential Privacy and Image Obfuscation
    Lin, Chia-Yu
    Yeh, Yu-Chen
    Lu, Makena
    2024 IEEE CONFERENCE ON ARTIFICIAL INTELLIGENCE, CAI 2024, 2024, : 1136 - 1141
  • [35] Privacy-Preserving Fingerprint Recognition via Federated Adaptive Domain Generalization
    Yan, Yonghang
    Xie, Xin
    Ren, Hengyi
    Cao, Ying
    Chang, Hongwei
    CMC-COMPUTERS MATERIALS & CONTINUA, 2025, 82 (03): : 5035 - 5055
  • [36] Privacy-Preserving Continual Federated Clustering via Adaptive Resonance Theory
    Masuyama, Naoki
    Nojima, Yusuke
    Toda, Yuichiro
    Loo, Chu Kiong
    Ishibuchi, Hisao
    Kubota, Naoyuki
    IEEE ACCESS, 2024, 12 : 139692 - 139710
  • [37] Efficient Privacy-Preserving Federated Deep Learning for Network Intrusion of Industrial IoT
    He, Ningxin
    Zhang, Zehui
    Wang, Xiaotian
    Gao, Tiegang
    INTERNATIONAL JOURNAL OF INTELLIGENT SYSTEMS, 2023, 2023
  • [38] Federated In-Network Machine Learning for Privacy-Preserving IoT Traffic Analysis
    Zang, Mingy uan
    Zheng, Changgang
    Koziak, Tomasz
    Zilberman, Noa
    Dittmann, Lars
    ACM TRANSACTIONS ON INTERNET TECHNOLOGY, 2024, 24 (04)
  • [39] Privacy-Preserving and Traceable Federated Learning for data sharing in industrial IoT applications
    Chen, Junbao
    Xue, Jingfeng
    Wang, Yong
    Huang, Lu
    Baker, Thar
    Zhou, Zhixiong
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 213
  • [40] Securing the edge: privacy-preserving federated learning for insider threats in IoT networks
    Kamatchi, K.
    Uma, E.
    JOURNAL OF SUPERCOMPUTING, 2025, 81 (01):