亲爱的研友该休息了!由于当前在线用户较少,发布求助请尽量完整地填写文献信息,科研通机器人24小时在线,伴您度过漫漫科研夜!身体可是革命的本钱,早点休息,好梦!

Defending against Backdoors in Federated Learning with Robust Learning Rate

后门 计算机科学 对手 计算机安全 集合(抽象数据类型) 对抗制 方案(数学) 人工智能 数学 数学分析 程序设计语言
作者
Mustafa Safa Özdayi,Murat Kantarcıoğlu,Yulia R. Gel
出处
期刊:Proceedings of the ... AAAI Conference on Artificial Intelligence [Association for the Advancement of Artificial Intelligence (AAAI)]
卷期号:35 (10): 9268-9276 被引量:60
标识
DOI:10.1609/aaai.v35i10.17118
摘要

Federated learning (FL) allows a set of agents to collaboratively train a model without sharing their potentially sensitive data. This makes FL suitable for privacy-preserving applications. At the same time, FL is susceptible to adversarial attacks due to decentralized and unvetted data. One important line of attacks against FL is the backdoor attacks. In a backdoor attack, an adversary tries to embed a backdoor functionality to the model during training that can later be activated to cause a desired misclassification. To prevent backdoor attacks, we propose a lightweight defense that requires minimal change to the FL protocol. At a high level, our defense is based on carefully adjusting the aggregation server's learning rate, per dimension and per round, based on the sign information of agents' updates. We first conjecture the necessary steps to carry a successful backdoor attack in FL setting, and then, explicitly formulate the defense based on our conjecture. Through experiments, we provide empirical evidence that supports our conjecture, and we test our defense against backdoor attacks under different settings. We observe that either backdoor is completely eliminated, or its accuracy is significantly reduced. Overall, our experiments suggest that our defense significantly outperforms some of the recently proposed defenses in the literature. We achieve this by having minimal influence over the accuracy of the trained models. In addition, we also provide convergence rate analysis for our proposed scheme.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
yfq1018发布了新的文献求助10
1秒前
2秒前
Zsilu发布了新的文献求助10
2秒前
无轩发布了新的文献求助10
4秒前
5秒前
7秒前
beplayer1完成签到,获得积分10
10秒前
Zsilu完成签到,获得积分10
12秒前
慕青应助无轩采纳,获得10
13秒前
13秒前
16秒前
20秒前
Percy完成签到 ,获得积分10
23秒前
zhang完成签到,获得积分10
24秒前
跳跃无颜发布了新的文献求助10
25秒前
25秒前
Cosmosurfer完成签到,获得积分10
25秒前
27秒前
赘婿应助dart1023采纳,获得10
33秒前
yfq1018发布了新的文献求助10
33秒前
Yuan完成签到 ,获得积分10
34秒前
Jasper应助直率的亦凝采纳,获得10
38秒前
38秒前
42秒前
sssting发布了新的文献求助10
43秒前
科研通AI6.2应助张晓飞采纳,获得10
44秒前
科研通AI6.1应助屈春洋采纳,获得10
44秒前
46秒前
得意黑发布了新的文献求助10
49秒前
嘉心糖应助小曼采纳,获得10
49秒前
50秒前
51秒前
catherine完成签到,获得积分10
53秒前
54秒前
55秒前
bianco2007完成签到,获得积分10
56秒前
大胆的碧菡完成签到,获得积分10
56秒前
56秒前
57秒前
vv完成签到,获得积分10
58秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Kinesiophobia : a new view of chronic pain behavior 2000
Burger's Medicinal Chemistry, Drug Discovery and Development, Volumes 1 - 8, 8 Volume Set, 8th Edition 1800
Cronologia da história de Macau 1600
文献PREDICTION EQUATIONS FOR SHIPS' TURNING CIRCLES或期刊Transactions of the North East Coast Institution of Engineers and Shipbuilders第95卷 1000
BRITTLE FRACTURE IN WELDED SHIPS 1000
Lloyd's Register of Shipping's Approach to the Control of Incidents of Brittle Fracture in Ship Structures 1000
热门求助领域 (近24小时)
化学 材料科学 医学 生物 工程类 有机化学 纳米技术 计算机科学 化学工程 生物化学 物理 复合材料 内科学 催化作用 物理化学 光电子学 细胞生物学 基因 电极 遗传学
热门帖子
关注 科研通微信公众号,转发送积分 6150504
求助须知:如何正确求助?哪些是违规求助? 7979141
关于积分的说明 16575068
捐赠科研通 5262668
什么是DOI,文献DOI怎么找? 2808641
邀请新用户注册赠送积分活动 1788881
关于科研通互助平台的介绍 1656937