Sie befinden Sich nicht im Netzwerk der Universität Paderborn. Der Zugriff auf elektronische Ressourcen ist gegebenenfalls nur via VPN oder Shibboleth (DFN-AAI) möglich. mehr Informationen...
Ergebnis 24 von 324
IEEE transactions on information forensics and security, 2024, Vol.19, p.1576-1588
2024

Details

Autor(en) / Beteiligte
Titel
Robust and Secure Federated Learning Against Hybrid Attacks: A Generic Architecture
Ist Teil von
  • IEEE transactions on information forensics and security, 2024, Vol.19, p.1576-1588
Ort / Verlag
IEEE
Erscheinungsjahr
2024
Link zum Volltext
Quelle
IEEE Electronic Library (IEL)
Beschreibungen/Notizen
  • Federated Learning (FL) enables multiple clients to collaboratively train a model without sharing their private data. However, the deployment of FL in real-world applications is vulnerable to various attacks from both malicious servers and clients. While cryptographic methods are effective in resisting server-side attacks, they undermine the capability of client-side defenses that rely on plaintext updates. Several valuable defenses targeting hybrid attacks have been devised to address this challenge, concentrating on specific client-side threats. To improve scalability, we continue this research line to introduce a generic architecture covering more client-side attacks. In this paper, we propose a general architecture to enhance client-side defenses from plaintext to ciphertext domains. This architecture not only supports the server-side defenses, but also accommodates a broader range of client-side defenses, including Norm-based, Krum-based, and Cosine-based strategies. The core of our architecture is generic detection under ciphertext, which tackles the following conflict of integrating server-side and client-side defenses. That is, the former aims to protect parameters from exposure while the latter demands plaintext updates. We prove the security of our architecture through the Universal Composability framework. Additionally, we provide a comprehensive instantiation and extensive evaluations to demonstrate the effectiveness and robustness of our approach. Our experiments show that our architecture can maintain the effectiveness of current client-side defenses when parameters are encrypted, thus effectively resisting hybrid attacks.
Sprache
Englisch
Identifikatoren
ISSN: 1556-6013
eISSN: 1556-6021
DOI: 10.1109/TIFS.2023.3336521
Titel-ID: cdi_crossref_primary_10_1109_TIFS_2023_3336521

Weiterführende Literatur

Empfehlungen zum selben Thema automatisch vorgeschlagen von bX