FREPD: A Robust Federated Learning Framework on Variational Autoencoder

被引:4
|
作者
Gu, Zhipin [1 ]
He, Liangzhong [2 ]
Li, Peiyan [1 ]
Sun, Peng [3 ]
Shi, Jiangyong [1 ]
Yang, Yuexiang [1 ]
机构
[1] Natl Univ Def Technol, Changsha 410000, Peoples R China
[2] China Mobile Suzhou Software Technol Co Ltd, Suzhou 215000, Peoples R China
[3] Eindhoven Univ Technol, NL-5641 BZ Eindhoven, Netherlands
来源
COMPUTER SYSTEMS SCIENCE AND ENGINEERING | 2021年 / 39卷 / 03期
关键词
Federated learning; reconstruction error; probability distribution;
D O I
10.32604/csse.2021.017969
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning is an ideal solution to the limitation of not preserving the users' privacy information in edge computing. In federated learning, the cloud aggregates local model updates from the devices to generate a global model. To protect devices' privacy, the cloud is designed to have no visibility into how these updates are generated, making detecting and defending malicious model updates a challenging task. Unlike existing works that struggle to tolerate adversarial attacks, the paper manages to exclude malicious updates from the global model's aggregation. This paper focuses on Byzantine attack and backdoor attack in the federated learning setting. We propose a federated learning framework, which we call Federated Reconstruction Error Probability Distribution (FREPD). FREPD uses a VAE model to compute updates' reconstruction errors. Updates with higher reconstruction errors than the average reconstruction error are deemed as malicious updates and removed. Meanwhile, we apply the Kolmogorov-Smirnov test to choose a proper probability distribution function and tune its parameters to fit the distribution of reconstruction errors from observed benign updates. We then use the distribution function to estimate the probability that an unseen reconstruction error belongs to the benign reconstruction error distribution. Based on the probability, we classify the model updates as benign or malicious. Only benign updates are used to aggregate the global model. FREPD is tested with extensive experiments on independent and identically distributed (IID) and non-IID federated benchmarks, showing a competitive performance over existing aggregation methods under Byzantine attack and backdoor attack.
引用
收藏
页码:307 / 320
页数:14
相关论文
共 50 条
  • [21] Federated learning meets Bayesian neural network: Robust and uncertainty-aware distributed variational inference
    Li, Pengfei
    Hu, Qinghua
    Wang, Xiaofei
    NEURAL NETWORKS, 2025, 185
  • [22] ARFL: Adaptive and Robust Federated Learning
    Uddin, Md Palash
    Xiang, Yong
    Cai, Borui
    Lu, Xuequan
    Yearwood, John
    Gao, Longxiang
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2024, 23 (05) : 5401 - 5417
  • [23] Efficient, Private and Robust Federated Learning
    Hao, Meng
    Li, Hongwei
    Xu, Guowen
    Chen, Hanxiao
    Zhang, Tianwei
    37TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, ACSAC 2021, 2021, : 45 - 60
  • [24] Robust Aggregation Function in Federated Learning
    Taheri, Rahim
    Arabikhan, Farzad
    Gegov, Alexander
    Akbari, Negar
    ADVANCES IN INFORMATION SYSTEMS, ARTIFICIAL INTELLIGENCE AND KNOWLEDGE MANAGEMENT, ICIKS 2023, 2024, 486 : 168 - 175
  • [25] Robust federated learning with voting and scaling
    Liang, Xiang-Yu
    Zhang, Heng-Ru
    Tang, Wei
    Min, Fan
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2024, 153 : 113 - 124
  • [26] Robust Federated Learning with Realistic Corruption
    Zhao, Puning
    Wu, Jiafei
    Liu, Zhe
    WEB AND BIG DATA, APWEB-WAIM 2024, PT IV, 2024, 14964 : 228 - 242
  • [27] A Fair Federated Learning Framework With Reinforcement Learning
    Sun, Yaqi
    Si, Shijing
    Wang, Jianzong
    Dong, Yuhan
    Zhu, Zhitao
    Xiao, Jing
    2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2022,
  • [28] Robust Federated Learning With Noisy Communication
    Ang, Fan
    Chen, Li
    Zhao, Nan
    Chen, Yunfei
    Wang, Weidong
    Yu, F. Richard
    IEEE TRANSACTIONS ON COMMUNICATIONS, 2020, 68 (06) : 3452 - 3464
  • [29] SecureBoost: A Lossless Federated Learning Framework
    Cheng, Kewei
    Fan, Tao
    Jin, Yilun
    Liu, Yang
    Chen, Tianjian
    Papadopoulos, Dimitrios
    Yang, Qiang
    IEEE INTELLIGENT SYSTEMS, 2021, 36 (06) : 87 - 98
  • [30] On the Federated Learning Framework for Cooperative Perception
    Zhang, Zhenrong
    Liu, Jianan
    Zhou, Xi
    Huang, Tao
    Han, Qing-Long
    Liu, Jingxin
    Liu, Hongbin
    IEEE ROBOTICS AND AUTOMATION LETTERS, 2024, 9 (11): : 9423 - 9430