FREPD: A Robust Federated Learning Framework on Variational Autoencoder

被引:4
|
作者
Gu, Zhipin [1 ]
He, Liangzhong [2 ]
Li, Peiyan [1 ]
Sun, Peng [3 ]
Shi, Jiangyong [1 ]
Yang, Yuexiang [1 ]
机构
[1] Natl Univ Def Technol, Changsha 410000, Peoples R China
[2] China Mobile Suzhou Software Technol Co Ltd, Suzhou 215000, Peoples R China
[3] Eindhoven Univ Technol, NL-5641 BZ Eindhoven, Netherlands
来源
COMPUTER SYSTEMS SCIENCE AND ENGINEERING | 2021年 / 39卷 / 03期
关键词
Federated learning; reconstruction error; probability distribution;
D O I
10.32604/csse.2021.017969
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning is an ideal solution to the limitation of not preserving the users' privacy information in edge computing. In federated learning, the cloud aggregates local model updates from the devices to generate a global model. To protect devices' privacy, the cloud is designed to have no visibility into how these updates are generated, making detecting and defending malicious model updates a challenging task. Unlike existing works that struggle to tolerate adversarial attacks, the paper manages to exclude malicious updates from the global model's aggregation. This paper focuses on Byzantine attack and backdoor attack in the federated learning setting. We propose a federated learning framework, which we call Federated Reconstruction Error Probability Distribution (FREPD). FREPD uses a VAE model to compute updates' reconstruction errors. Updates with higher reconstruction errors than the average reconstruction error are deemed as malicious updates and removed. Meanwhile, we apply the Kolmogorov-Smirnov test to choose a proper probability distribution function and tune its parameters to fit the distribution of reconstruction errors from observed benign updates. We then use the distribution function to estimate the probability that an unseen reconstruction error belongs to the benign reconstruction error distribution. Based on the probability, we classify the model updates as benign or malicious. Only benign updates are used to aggregate the global model. FREPD is tested with extensive experiments on independent and identically distributed (IID) and non-IID federated benchmarks, showing a competitive performance over existing aggregation methods under Byzantine attack and backdoor attack.
引用
收藏
页码:307 / 320
页数:14
相关论文
共 50 条
  • [31] An Optimization Framework for Federated Edge Learning
    Li, Yangchen
    Cui, Ying
    Lau, Vincent
    IEEE TRANSACTIONS ON WIRELESS COMMUNICATIONS, 2023, 22 (02) : 934 - 949
  • [32] An Efficient Framework for Clustered Federated Learning
    Ghosh, Avishek
    Chung, Jichan
    Yin, Dong
    Ramchandran, Kannan
    IEEE TRANSACTIONS ON INFORMATION THEORY, 2022, 68 (12) : 8076 - 8091
  • [33] Visualization for Federated Learning: Challenges and Framework
    Pan R.
    Han D.
    Pan J.
    Zhou S.
    Wei Y.
    Mei H.
    Chen W.
    Jisuanji Fuzhu Sheji Yu Tuxingxue Xuebao/Journal of Computer-Aided Design and Computer Graphics, 2020, 32 (04): : 513 - 519
  • [34] IPLS: A Framework for Decentralized Federated Learning
    Pappas, Christodoulos
    Chatzopoulos, Dimitris
    Lalis, Spyros
    Vavalis, Manolis
    2021 IFIP NETWORKING CONFERENCE AND WORKSHOPS (IFIP NETWORKING), 2021,
  • [35] A Secure Federated Transfer Learning Framework
    Liu, Yang
    Kang, Yan
    Xing, Chaoping
    Chen, Tianjian
    Yang, Qiang
    IEEE INTELLIGENT SYSTEMS, 2020, 35 (04) : 70 - 82
  • [36] FLEX: Flexible Federated Learning Framework
    Herrera, F.
    Jimenez-Lopez, D.
    Argente-Garrido, A.
    Rodriguez-Barroso, N.
    Zuheros, C.
    Aguilera-Martos, I.
    Bello, B.
    Garcia-Marquez, M.
    Luzon, M. V.
    INFORMATION FUSION, 2025, 117
  • [37] Gradient Compression with a Variational Coding Scheme for Federated Learning
    Kathariya, Birendra
    Li, Zhu
    Chen, Jianle
    Van der Auwera, Geert
    2021 INTERNATIONAL CONFERENCE ON VISUAL COMMUNICATIONS AND IMAGE PROCESSING (VCIP), 2021,
  • [38] Privacy preserving federated learning with convolutional variational bottlenecks
    Daniel Scheliga
    Patrick Mäder
    Marco Seeland
    Cybersecurity, 8 (1)
  • [39] A Federated Learning Framework for Stenosis Detection
    Di Cosmo, Mariachiara
    Migliorelli, Giovanna
    Francioni, Matteo
    Mucaj, Andi
    Maolo, Alessandro
    Aprile, Alessandro
    Frontoni, Emanuele
    Fiorentino, Maria Chiara
    Moccia, Sara
    IMAGE ANALYSIS AND PROCESSING - ICIAP 2023 WORKSHOPS, PT II, 2024, 14366 : 211 - 222
  • [40] A Robust and Privacy-Aware Federated Learning Framework for Non-Intrusive Load Monitoring
    Agarwal, Vidushi
    Ardakanian, Omid
    Pal, Sujata
    IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2024, 9 (05): : 766 - 777