arrow
Return

A robust federated learning algorithm for partially trusted environments

delete2025-01-01
delete0
PRE
AI
Y
Yong Li
T
TongTong Liu *
L
Ling, HaiChao
W
Wei Du
R
Ren, XiangLin
DOI:10.1016/j.cose.2024.104161delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Due to the distributed nature of federated learning, it is vulnerable to poisoning attacks during the training process. The model's resistance to poisoning attacks can be improved using robust aggregation algorithms. Current research on federated learning to resist poisoning attacks is mainly based on two settings: No trust or Byzantine robustness. However, both settings are not close enough to reality in practical scenarios. In many practical applications, some participants in federated learning are trustworthy. For example, participants who have participated in the training of this model before and performed very well, or participants with strong compliance and credibility such as governments and some national agencies participate in the training. In existing research, these trusted participants still have to accept the judgment of the aggregation node, which generates unnecessary computation, increases overhead, and does not take advantage of a trusted environment. Since there is no attack behavior on the trusted client, its training results are used to classify the trustworthiness of other untrusted clients and identify attack nodes with higher accuracy. Therefore, this paper proposes a robust federated learning algorithm for partially trusted environments. The proposed scheme uses the experimental results of trusted clients to judge the behavior of untrustworthy clients by the cosine similarity and the Local Outlier Factor and further identify and detect malicious clients. Experiments are performed on MNIST and CIFAR datasets. Comparison with other six aggregation algorithms under 30% attack scenario. And compared with the other four aggregation algorithms under 70% attack conditions. Our algorithm is more accurate than almost all of the other aggregation algorithms. The paper is the first to conduct robust research on federated learning in a partially trusted environment, and the proposed algorithm can more effectively resist poisoning attacks.
Keywords:
Federated learning
Robustness
Aggregation algorithm
Partially trusted environments
Poisoning attack

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

C
Changchun University of Technology
Scholars:
5.0K
Papers: 2.7K
Citations: 3.3K
Cited Papers

Cited Papers

FELIDS: Federated learning-based intrusion detection system for Internet of
err2022-07-01
err114
PREAI
errFriha, Othmane; Ferrag, Mohamed Amine; Shu, Lei; Maglaras, Leandros; Choo, Kim-Kwang Raymond; Nafaa, Mehdi
errShare
errSave
errShare
errSave
Sulphides
err2020-01-01
err0
PREAI
errJ. Theo Kloprogge; Barry J. Wood
errShare
errSave
VREFL: Verifiable and Reconnection-Efficient Federated Learning in IoT scenarios
err2022-11-01
err8
errOAAI
errYe, Heng; Liu, Jiqiang; Zhen, Hao; Jiang, Wenbin; Wang, Bin; Wang, Wei
errShare
errSave
Privacy-preserving malware detection in Android-based IoT devices through federated Markov chains
err2023-11-01
err32
errOAAI
errD'Angelo, Gianni; Farsimadan, Eslam; Ficco, Massimo; Palmieri, Francesco; Robustelli, Antonio
errShare
errSave
Discriminating DDoS Attacks from Flash Crowds Using Flow Correlation Coefficient
err2012-06-01
err155
PREAI
errYu, Shui; Zhou, Wanlei; Jia, Weijia; Guo, Song; Xiang, Yong; Tang, Feilong
errShare
errSave
TDFL: Truth Discovery Based Byzantine Robust Federated Learning
err2022-12-01
err18
PREAI
errXu, Chang; Jia, Yu; Zhu, Liehuang; Zhang, Chuan; Jin, Guoxie; Sharif, Kashif
errShare
errSave
researcher View more