Shadow backdoor attack: Multi-intensity backdoor attack against federated learning

后门 影子(心理学) 利用 计算机科学 计算机安全 模型攻击 心理学 心理治疗师
作者
Qixian Ren,Yu Zheng,Yang Liu,Yue Li,Jianfeng Ma
出处
期刊:Computers & Security [Elsevier BV]
卷期号:139: 103740-103740
标识
DOI:10.1016/j.cose.2024.103740
摘要

Federated learning systems enable data localization by aggregating model parameters from all parties for global model training, but they also expose new security threats due to their distributed learning approach and multi-party heterogeneous data distribution. Backdoor attacks exploit the inability of federated learning systems to audit client data, and have a huge advantage in injecting backdoor into global models by submitting poisoned model updates. That causes the global model to be backdoored after the aggregation model updates, leading to catastrophic model security problems. Current existing studies used a distributed strategy to deploy backdoor attack in federated learning, however, the attack persistence is not good enough. To achieve better attack performance, this paper proposes a novel backdoor attack method against federated learning systems, which we name Shadow Backdoor Attack (SBA). Our SBA method innovates on attack deployment and creatively introduces a new concept of Attacker Intensity, which distinguish the different roles of attackers in backdoor attack against federated learning. SBA implements attacks through a combination of different intensities attackers, which makes the sustained effect of the attack significantly improved compared with previous work. Several experiments demonstrate that SBA has a high attack success rate and more sustained attack effect. Moreover, we analyze the impact of trigger criteria in SBA and confirm the attack effectiveness of SBA against two robust FL algorithms.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
Alyssa完成签到,获得积分10
2秒前
3秒前
朝花夕拾完成签到,获得积分10
4秒前
5秒前
Jry应助bingsu108采纳,获得10
7秒前
8秒前
暴发户发布了新的文献求助30
10秒前
锋宇完成签到,获得积分10
12秒前
蜡笔小天关注了科研通微信公众号
12秒前
13秒前
初景发布了新的文献求助20
13秒前
小w不熬夜发布了新的文献求助10
13秒前
14秒前
16秒前
聚尔行完成签到,获得积分10
16秒前
布丁果冻完成签到,获得积分10
17秒前
MIRA沐涵发布了新的文献求助10
17秒前
17秒前
风趣元芹完成签到,获得积分20
17秒前
香蕉觅云应助xxt采纳,获得10
18秒前
landscape发布了新的文献求助10
19秒前
康康0919ing发布了新的文献求助10
20秒前
子V完成签到,获得积分10
20秒前
20秒前
abcd发布了新的文献求助10
21秒前
可乐666完成签到,获得积分10
21秒前
xhjh03完成签到,获得积分20
21秒前
暴发户完成签到,获得积分10
23秒前
lyw完成签到 ,获得积分10
23秒前
小天才完成签到,获得积分10
24秒前
25秒前
食分子完成签到,获得积分10
25秒前
25秒前
xhjh03发布了新的文献求助10
25秒前
能干老头完成签到 ,获得积分10
26秒前
27秒前
汉堡包应助壮壮不爱吃肉采纳,获得10
27秒前
小w不熬夜完成签到,获得积分20
27秒前
栗子栗栗子完成签到,获得积分10
27秒前
28秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
晶种分解过程与铝酸钠溶液混合强度关系的探讨 8888
Chemistry and Physics of Carbon Volume 18 800
The Organometallic Chemistry of the Transition Metals 800
Leading Academic-Practice Partnerships in Nursing and Healthcare: A Paradigm for Change 800
The formation of Australian attitudes towards China, 1918-1941 640
Signals, Systems, and Signal Processing 610
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6430339
求助须知:如何正确求助?哪些是违规求助? 8246364
关于积分的说明 17536707
捐赠科研通 5486740
什么是DOI,文献DOI怎么找? 2895867
邀请新用户注册赠送积分活动 1872323
关于科研通互助平台的介绍 1711877