arrow
Return

Backdoor attacks against distributed swarm learning

delete2023-10-01
delete6
PRE
AI
K
Kongyang Chen
H
Huaiyuan Zhang
X
Xiangyu Feng
X
Xiaoting Zhang
B
Bing Mi
Z
Zhiping Jin *
DOI:10.1016/j.isatra.2023.03.034delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Traditional machine learning approaches often need a central server, where raw datasets or model updates are trained or aggregated in a centralized way. However, these approaches are vulnerable to many attacks, especially by the malicious server. Recently, a new distributed machine learning paradigm, called Swarm Learning (SL), has been proposed to support no-central-server based decentralized training. In each training round, each participant node has a chance to be selected to serve as a temporary server. Thus, these participant nodes do not need to share their private datasets to ensure a fair and secure model aggregation in a central server. To the best of our knowledge, there are no existing solutions about the security threats in swarm learning. In this paper, we investigate how to implant backdoor attacks against swarm learning to illustrate its potential security risk. Experiment results confirm the effectiveness of our method with high attack accuracies in different scenarios. We also study several defense methods to alleviate these backdoor attacks. (c) 2023 ISA. Published by Elsevier Ltd. All rights reserved.
Keywords:
Swarm learning
Backdoor attack
Distributed learning
Defense scheme

Journal

ISA Transactions cover
ISA Transactions
IF:
6.5
Papers:
5.9K
Citations:
2.0W

Organization

G
Guangzhou University
Scholars:
1.7W
Papers: 1.3W
Citations: 1.8W