Fool Attackers by Imperceptible Noise: A Privacy-Preserving Adversarial Representation Mechanism for Collaborative Learning

被引:0
|
作者
Ruan, Na [1 ]
Chen, Jikun [1 ]
Huang, Tu [1 ]
Sun, Zekun [1 ]
Li, Jie [1 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Comp Sci, Shanghai 200240, Peoples R China
基金
国家重点研发计划;
关键词
Federated learning; Data models; Training; Task analysis; Noise; Privacy; Data privacy; collaborative learning; adversarial examples; quantification;
D O I
10.1109/TMC.2024.3405548
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The performance of deep learning models highly depends on the amount of training data. It is common practice for today's data holders to merge their datasets and train models collaboratively, which yet poses a threat to data privacy. Different from existing methods, such as secure multi-party computation (MPC) and federated learning (FL), we find representation learning has unique advantages in collaborative learning due to its low privacy budget, wide applicability to tasks and lower communication overhead. However, data representations face the threat of model inversion attacks. In this article, we formally define the collaborative learning scenario, and present ARS (for adversarial representation sharing), a collaborative learning framework wherein users share representations of data to train models, and add imperceptible adversarial noise to data representations against reconstruction or attribute extraction attacks. By theoretical analysis and evaluating ARS in different contexts, we demonstrate that our mechanism is effective against model inversion attacks, and can achieve great utility and low communication complexity while preserving data privacy. Moreover, the ARS framework has wide applicability, which can be easily extended to the vertical data partitioning scenario and utilized in different tasks.
引用
收藏
页码:11839 / 11852
页数:14
相关论文
共 50 条
  • [11] Privacy-Preserving Collaborative Deep Learning With Unreliable Participants
    Zhao, Lingchen
    Wang, Qian
    Zou, Qin
    Zhang, Yan
    Chen, Yanjiao
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 1486 - 1500
  • [12] PrivColl: Practical Privacy-Preserving Collaborative Machine Learning
    Zhang, Yanjun
    Bai, Guangdong
    Li, Xue
    Curtis, Caitlin
    Chen, Chen
    Ko, Ryan K. L.
    COMPUTER SECURITY - ESORICS 2020, PT I, 2020, 12308 : 399 - 418
  • [13] Flexible and Privacy-preserving Framework for Decentralized Collaborative Learning
    Ma, Zhuoran
    Ma, Jianfeng
    Miao, Yinbin
    Liu, Ximeng
    Zheng, Wei
    Li, Xiang
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [14] Privacy-preserving Collaborative Learning with Automatic Transformation Search
    Gao, Wei
    Guo, Shangwei
    Zhang, Tianwei
    Qiu, Han
    Wen, Yonggang
    Liu, Yang
    2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021, 2021, : 114 - 123
  • [15] Privacy-Preserving Collaborative Learning for Multiarmed Bandits in IoT
    Chen, Shuzhen
    Tao, Youming
    Yu, Dongxiao
    Li, Feng
    Gong, Bei
    Cheng, Xiuzhen
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (05) : 3276 - 3286
  • [16] Privacy-Preserving Collaborative Learning With Linear Communication Complexity
    Lu, Xingyu
    Sami, Hasin Us
    Guler, Basak
    IEEE TRANSACTIONS ON INFORMATION THEORY, 2024, 70 (08) : 5857 - 5887
  • [17] Privacy-Preserving Collaborative Learning Through Feature Extraction
    Sarmadi, Alireza
    Fu, Hao
    Krishnamurthy, Prashanth
    Garg, Siddharth
    Khorrami, Farshad
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (01) : 486 - 498
  • [18] Privacy-preserving collaborative filtering
    Polat, H
    Du, WL
    INTERNATIONAL JOURNAL OF ELECTRONIC COMMERCE, 2005, 9 (04) : 9 - 35
  • [19] Privacy-Preserving Medical Data Generation Using Adversarial Learning
    Das, Pronaya Prosun
    Tawadros, Despina
    Wiese, Lena
    INFORMATION SECURITY, ISC 2023, 2023, 14411 : 24 - 41
  • [20] Adversarial Learning of Privacy-Preserving and Task-Oriented Representations
    Xiao, Taihong
    Tsai, Yi-Hsuan
    Sohn, Kihyuk
    Chandraker, Manmohan
    Yang, Ming-Hsuan
    THIRTY-FOURTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, THE THIRTY-SECOND INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE CONFERENCE AND THE TENTH AAAI SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2020, 34 : 12434 - 12441