• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
成果搜索

author:

Yang, Ming (Yang, Ming.) [1] | Cheng, Hang (Cheng, Hang.) [2] (Scholars:程航) | Chen, Fei (Chen, Fei.) [3] (Scholars:陈飞) | Liu, Ximeng (Liu, Ximeng.) [4] (Scholars:刘西蒙) | Wang, Meiqing (Wang, Meiqing.) [5] (Scholars:王美清) | Li, Xibin (Li, Xibin.) [6]

Indexed by:

EI Scopus SCIE

Abstract:

Although federated learning can provide privacy protection for individual raw data, some studies have shown that the shared parameters or gradients under federated learning may still reveal user privacy. Differential privacy is a promising solution to the above problem due to its small computational overhead. At present, differential privacy-based federated learning generally focuses on the trade-off between privacy and model convergence. Even though differential privacy obscures sensitive information by adding a controlled amount of noise to the confidential data, it opens a new door for model poisoning attacks: attackers can use noise to escape anomaly detection. In this paper, we propose a novel model poisoning attack called Model Shuffle Attack (MSA), which designs a unique way to shuffle and scale the model parameters. If we treat the model as a black box, it behaves like a benign model on test set. Unlike other model poisoning attacks, the malicious model after MSA has high accuracy on test set while reducing the global model convergence speed and even causing the model to diverge. Extensive experiments show that under FedAvg and robust aggregation rules, MSA is able to significantly degrade performance of the global model while guaranteeing stealthiness.

Keyword:

Differential privacy Federated learning Model poisoning Privacy-preserving

Community:

  • [ 1 ] [Yang, Ming]Fuzhou Univ, Coll Comp Sci & Big Data, Fuzhou 350108, Fujian, Peoples R China
  • [ 2 ] [Chen, Fei]Fuzhou Univ, Coll Comp Sci & Big Data, Fuzhou 350108, Fujian, Peoples R China
  • [ 3 ] [Liu, Ximeng]Fuzhou Univ, Coll Comp Sci & Big Data, Fuzhou 350108, Fujian, Peoples R China
  • [ 4 ] [Li, Xibin]Fuzhou Univ, Coll Comp Sci & Big Data, Fuzhou 350108, Fujian, Peoples R China
  • [ 5 ] [Cheng, Hang]Fuzhou Univ, Sch Math & Stat, Fuzhou 350108, Fujian, Peoples R China
  • [ 6 ] [Wang, Meiqing]Fuzhou Univ, Sch Math & Stat, Fuzhou 350108, Fujian, Peoples R China
  • [ 7 ] [Cheng, Hang]Ctr Appl Math Fujian Prov, Fuzhou 350108, Fujian, Peoples R China

Reprint 's Address:

  • [Liu, Ximeng]Fuzhou Univ, Coll Comp Sci & Big Data, Fuzhou 350108, Fujian, Peoples R China;;[Cheng, Hang]Fuzhou Univ, Sch Math & Stat, Fuzhou 350108, Fujian, Peoples R China;;

Show more details

Related Keywords:

Related Article:

Source :

INFORMATION SCIENCES

ISSN: 0020-0255

Year: 2023

Volume: 630

Page: 158-172

0 . 0

JCR@2023

0 . 0 0 0

JCR@2023

ESI Discipline: COMPUTER SCIENCE;

ESI HC Threshold:32

CAS Journal Grade:1

Cited Count:

WoS CC Cited Count: 21

SCOPUS Cited Count: 28

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 1

Online/Total:157/10070487
Address:FZU Library(No.2 Xuyuan Road, Fuzhou, Fujian, PRC Post Code:350116) Contact Us:0591-22865326
Copyright:FZU Library Technical Support:Beijing Aegean Software Co., Ltd. 闽ICP备05005463号-1