Trojan attribute inference attack on gradient boosting decision trees

被引:0
|
作者
Ito, Kunihiro [1 ]
Enkhtaivan, Batnyam [1 ]
Teranishi, Isamu [1 ]
Sakuma, Jun [2 ]
机构
[1] NEC Corp Ltd, Kawasaki, Kanagawa, Japan
[2] Tokyo Inst Technol, RIKEN, Meguro Ku, Tokyo, Japan
关键词
D O I
10.1109/EuroSP60621.2024.00036
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
We propose a Trojan horse-type attribute inference attack (AIA) against the gradient boosting decision trees (GBDT) in the federated learning setting. Our Trojan AIA consists of a Trojan tree creation and an attribute inference. Both algorithms leverage the characteristics of the federated learning protocol for the GBDT training. First, the adversary creates a decision tree, a Trojan tree, that isolates a target data record from other data records. The adversary sends the Trojan tree to the server through the federated learning protocol at their round. Trojan tree forces the victim's tree to "memorize" a target attribute value of target data record that the adversary wants to know. The adversary can recover the target attribute value by observing the tree submitted by the victim if the victim uses the target data record for training the tree. For the regression task, we derive sufficient conditions for a successful attack. According to our theorem, if the target data record is distinct in the victim's dataset, the proposed attack is always successful. Experiments on multiple datasets and settings show results that align with the above theoretical analysis. Even if some conditions for theoretical analysis are relaxed, the proposed attack outperforms baseline attacks. To the best of our knowledge, this is the first study of an attribute inference attack against the GBDT in the federated learning setting.
引用
收藏
页码:542 / 559
页数:18
相关论文
共 50 条
  • [21] Explainable Steel Quality Prediction System Based on Gradient Boosting Decision Trees
    Takalo-Mattila, Janne
    Heiskanen, Mikko
    Kyllonen, Vesa
    Maatta, Leena
    Bogdanoff, Agne
    IEEE ACCESS, 2022, 10 : 68099 - 68110
  • [22] A mobile recommendation system based on Logistic Regression and Gradient Boosting Decision Trees
    Wang, Yaozheng
    Feng, Dawei
    Ii, Dongsheng
    Chen, Xinyuan
    Zhac, Yunxiang
    Niu, Xin
    2016 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2016, : 1896 - 1902
  • [23] Gradient boosting decision trees to study laboratory and field performance in pavement management
    Berangi, Mohammadjavad
    Lontra, Bernardo Mota
    Anupam, Kumar
    Erkens, Sandra
    Van Vliet, Dave
    Snippe, Almar
    Moenielal, Mahesh
    COMPUTER-AIDED CIVIL AND INFRASTRUCTURE ENGINEERING, 2025, 40 (01) : 3 - 32
  • [24] Retrieval-Based Gradient Boosting Decision Trees for Disease Risk Assessment
    Ma, Handong
    Cao, Jiahang
    Fang, Yuchen
    Zhang, Weinan
    Sheng, Wenbo
    Zhang, Shaodian
    Yu, Yong
    PROCEEDINGS OF THE 28TH ACM SIGKDD CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, KDD 2022, 2022, : 3468 - 3476
  • [25] HYBRID MODEL FOR NETWORK ANOMALY DETECTION WITH GRADIENT BOOSTING DECISION TREES AND TABTRANSFORMER
    Xu, Xinyue
    Zheng, Xiaolu
    2021 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH AND SIGNAL PROCESSING (ICASSP 2021), 2021, : 8538 - 8542
  • [26] Fast Gradient Boosting Decision Trees with Bit-Level Data Structures
    Devos, Laurens
    Meert, Wannes
    Davis, Jesse
    MACHINE LEARNING AND KNOWLEDGE DISCOVERY IN DATABASES, ECML PKDD 2019, PT I, 2020, 11906 : 590 - 606
  • [27] Automated formatting verification technique of paperwork based on the gradient boosting on decision trees
    Nasyrov, Nail
    Komarov, Mikhail
    Tartynskikh, Petr
    Gorlushkina, Nataliya
    9TH INTERNATIONAL YOUNG SCIENTISTS CONFERENCE IN COMPUTATIONAL SCIENCE, YSC2020, 2020, 178 : 365 - 374
  • [28] eFL-Boost: Efficient Federated Learning for Gradient Boosting Decision Trees
    Yamamoto, Fuki
    Ozawa, Seiichi
    Wang, Lihua
    IEEE ACCESS, 2022, 10 : 43954 - 43963
  • [29] Towards Fair and Decentralized Federated Learning System for Gradient Boosting Decision Trees
    Gao, Shiqi
    Li, Xianxian
    Shi, Zhenkui
    Liu, Peng
    Li, Chunpei
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [30] Classification of Pesticide Residues in Sorghum Based on Hyperspectral and Gradient Boosting Decision Trees
    Hu, Xinjun
    Zhang, Jiahong
    Lei, Yu
    Tian, Jianping
    Peng, Jianheng
    Chen, Manjiao
    JOURNAL OF FOOD SAFETY, 2024, 44 (05)