SupRTE: Suppressing Backdoor Injection in Federated Learning via Robust Trust Evaluation

被引:1
|
作者
Huang, Wenkai [1 ]
Li, Gaolei [1 ]
Yi, Xiaoyu [1 ]
Li, Jianhua [1 ]
Zhao, Chengcheng [1 ]
Yin, Ying [1 ]
机构
[1] Shanghai Jiao Tong Univ, Sch Elect Informat & Elect Engn, Shanghai 200240, Peoples R China
关键词
Servers; Training; Intelligent systems; Feature extraction; Security; Federated learning; Task analysis;
D O I
10.1109/MIS.2024.3392334
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This article proposes a novel scheme, SupRTE, to suppress backdoor injection in federated learning via robust trust evaluation, which effectively prevents malicious updates from infiltrating the model aggregation process. The robust trust evaluation process in SupRTE consists of two components: 1) the behavior representation extractor, which creates individual profiles for each client through multidimensional information, and 2) the trust scorer, which measures the discrepancies between malicious and benign clients as trust scores by utilizing grading and clustering strategies. According to these trust scores, SupRTE can dynamically adjust the weight of each participating client to effectively suppress the malicious backdoor injection. Remarkably, SupRTE can be easily deployed on the server without requiring any auxiliary information and is highly adaptable to various nonindependent identically distributed scenarios. Extensive experiments over three datasets against two kinds of backdoor variants are conducted. Experimental results demonstrate that SupRTE can significantly reduce the attack success rate to below 2% with a minimal impact on the main task accuracy and outperforms state-of-the-art defense methods.
引用
收藏
页码:66 / 77
页数:12
相关论文
共 50 条
  • [31] FedDMC: Efficient and Robust Federated Learning via Detecting Malicious Clients
    Mu, Xutong
    Cheng, Ke
    Shen, Yulong
    Li, Xiaoxiao
    Chang, Zhao
    Zhang, Tao
    Ma, Xindi
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (06) : 5259 - 5274
  • [32] Robust Semi-Decentralized Federated Learning via Collaborative Relaying
    Yemini, Michal
    Saha, Rajarshi
    Ozfatura, Emre
    Gunduz, Deniz
    Goldsmith, Andrea J.
    IEEE TRANSACTIONS ON WIRELESS COMMUNICATIONS, 2024, 23 (07) : 7520 - 7536
  • [33] BadCleaner: Defending Backdoor Attacks in Federated Learning via Attention-Based Multi-Teacher Distillation
    Zhang, Jiale
    Zhu, Chengcheng
    Ge, Chunpeng
    Ma, Chuan
    Zhao, Yanchao
    Sun, Xiaobing
    Chen, Bing
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4559 - 4573
  • [34] Better Safe Than Sorry: Constructing Byzantine-Robust Federated Learning with Synthesized Trust
    Geng, Gangchao
    Cai, Tianyang
    Yang, Zheng
    ELECTRONICS, 2023, 12 (13)
  • [35] Contribution prediction in federated learning via client behavior evaluation
    Al-Saedi, Ahmed A.
    Boeva, Veselka
    Casalicchio, Emiliano
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2025, 166
  • [36] Robust Heterogeneous Federated Learning via Data-Free Knowledge Amalgamation
    Ma, Jun
    Fan, Zheng
    Fan, Chaoyu
    Kang, Qi
    ADVANCES IN SWARM INTELLIGENCE, PT II, ICSI 2024, 2024, 14789 : 61 - 71
  • [37] PILE: Robust Privacy-Preserving Federated Learning Via Verifiable Perturbations
    Tang, Xiangyun
    Shen, Meng
    Li, Qi
    Zhu, Liehuang
    Xue, Tengfei
    Qu, Qiang
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (06) : 5005 - 5023
  • [38] FLGuard: Byzantine-Robust Federated Learning via Ensemble of Contrastive Models
    Lee, Younghan
    Cho, Yungi
    Han, Woorim
    Bae, Ho
    Paek, Yunheung
    COMPUTER SECURITY - ESORICS 2023, PT IV, 2024, 14347 : 65 - 84
  • [39] Robust Multi-model Personalized Federated Learning via Model Distillation
    Muhammad, Adil
    Lin, Kai
    Gao, Jian
    Chen, Bincai
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2021, PT III, 2022, 13157 : 432 - 446
  • [40] FLGT: label-flipping-robust federated learning via guiding trustFLGT: label-flipping-robust federated learning via guiding trustH. Li et al.
    Hongjiao Li
    Zhenya Shi
    Ming Jin
    Anyang Yin
    Zhen Zhao
    Knowledge and Information Systems, 2025, 67 (4) : 3399 - 3422