arrow
返回

Federated learning backdoor attack detection with persistence diagram

delete2024-01-01
delete0
PRE
AI
Z
Zihan Ma *
高
高天翀 (Tianchong Gao)
DOI:10.1016/j.cose.2023.103557delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Federated learning (FL) is an emerging decentralized machine learning method that allows multiple clients to participate in a joint mission by merging the local models into a global model. While FL provides the ultimate data privacy for each participant, the service providers can hardly verify the validity of local datasets, which gives malicious clients an opportunity to undermine the functionality of the global model, i.e., perpetrate the backdoor attack. To find the potential attackers among the clients, we propose a topological data analysis tool called Persistence Homology (PH). PH reveals the correlation between topological properties and the neurons' status, which tells us whether the model is well generalized or overfits on some specific samples. We trained a classifier based on the PH features of neural network models, eventually composing a secure federated learning mechanism. The results illustrated that our method can detect malicious clients with different types of backdoor attacks with high accuracy, even under the highly unbalanced non-i.i.d. data distribution condition.
Keyword:
Federated learning
Backdoor attack
Persistence homology
Topological data analysis
Neural network

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

S
southeast university - china
学者数:
5.3W
论文数: 4.9W
被引数: 57
引用论文

引用论文

Immortalization of neuroendocrine pinealocytes from transgenic mice by targeted tumorigenesis using the tryptophan hydroxylase promoter
err1996-04-01
err0
errOAAI
errJin H. Son; Joo H. Chung; Sung O. Huh; Dong H. Park; C. Peng; M.G. Rosenblum; Young I. Chung; Tong H. Joh
err分享
err收藏
没有更多内容