arrow
返回

Data Poisoning Attacks on Federated Machine Learning

delete2022-07-01
delete104
delete
OA
AI
G
Gan Sun
丛杨 (Yang Cong) *
J
Jiahua Dong
Q
Qiang Wang
L
Lingjuan Lyu
J
Ji Liu
DOI:10.1109/JIOT.2021.3128646delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Federated machine learning which enables resource-constrained node devices (e.g., Internet of Things (IoT) devices and smartphones) to establish a knowledge-shared model while keeping the raw data local, could provide privacy preservation, and economic benefit by designing an effective communication protocol. However, this communication protocol can be adopted by attackers to launch data poisoning attacks for different nodes, which has been shown as a big threat to most machine learning models. Therefore, we in this article intend to study the model vulnerability of federated machine learning, and even on IoT systems. To be specific, we here attempt to attacking a popular federated multitask learning framework, which uses a general multitask learning framework to handle statistical challenges in the federated learning setting. The problem of calculating optimal poisoning attacks on federated multitask learning is formulated as a bilevel program, which is adaptive to the arbitrary selection of target nodes and source attacking nodes. We then propose a novel systems-aware optimization method, called as attack on federated learning (AT(2)FL), to efficiently derive the implicit gradients for poisoned data, and further attain optimal attack strategies in the federated machine learning. This is an earlier work, to our knowledge, that explores attacking federated machine learning via data poisoning. Finally, experiments on several real-world data sets demonstrate that when the attackers directly poison the target nodes or indirectly poison the related nodes via using the communication protocol, the federated multitask learning model is sensitive to both poisoning attacks.
Keyword:
Machine learning
Collaborative work
Data models
Protocols
Training
Internet of Things
Task analysis
Bilevel optimization
data poisoning
federated machine learning
multitask learning

期刊

IEEE Internet of Things Journal 封面图
IEEE Internet of Things Journal
IF:
8.9
论文数:
1.4W
被引数:
7.8W

机构

U
university of chinese academy of sciences, cas
学者数:
4.1W
论文数: 3.8W
被引数: 75
C
chinese academy of sciences
学者数:
56.7W
论文数: 45.0W
被引数: 704
引用论文

引用论文

Thermal application of composites of iron and magnesium in thermosyphon solar water heating system
err2021-08-10
err0
PREAI
errAkash Kumar Sahu; Gouri Sankhar Brahma; Rudrarapu Aravind; Trilochan Swain
err分享
err收藏
Federated Learning for Task and Resource Allocation in Wireless High-Altitude Balloon Networks
err2021-12-15
err51
errOAAI
errWang, Sihua; Chen, Mingzhe; Yin, Changchuan; Saad, Walid; Hong, Choong Seon; Cui, Shuguang; Poor, H. Vincent
err分享
err收藏
err分享
err收藏
Identification of a heteromorphic microsatellite within the thymidine kinase gene in L5178Y mouse lymphoma cells
err1996-12-01
err0
PREAI
errMelissa C. Liechty; Herbert Crosby; Anita Murthy; Lisa M. Davis; William J. Caspary; John C. Hozier
err分享
err收藏
α-Haloenolates of Esters; III.- A Novel High-Yield Preparation of α,α-Dichloroesters
err1975-01-01
err0
PREAI
errJ. VILLIERAS; J. R. DISNAR; P. PERRIOT; J. F. NORMANT
err分享
err收藏
Iron carbonyl complexes of dimethyl cyclooctatetraene-1,8-dicarboxylate
err2002-05-01
err0
PREAI
errRobert C. Kerber; Dean Glasser; Barbara Luck
err分享
err收藏
学者 查看更多内容