SupRTE: Suppressing Backdoor Injection in Federated Learning via Robust Trust Evaluation

被引:1
|
作者
Huang, Wenkai [1 ]
Li, Gaolei [1 ]
Yi, Xiaoyu [1 ]
Li, Jianhua [1 ]
Zhao, Chengcheng [1 ]
Yin, Ying [1 ]
机构
[1] Shanghai Jiao Tong Univ, Sch Elect Informat & Elect Engn, Shanghai 200240, Peoples R China
关键词
Servers; Training; Intelligent systems; Feature extraction; Security; Federated learning; Task analysis;
D O I
10.1109/MIS.2024.3392334
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This article proposes a novel scheme, SupRTE, to suppress backdoor injection in federated learning via robust trust evaluation, which effectively prevents malicious updates from infiltrating the model aggregation process. The robust trust evaluation process in SupRTE consists of two components: 1) the behavior representation extractor, which creates individual profiles for each client through multidimensional information, and 2) the trust scorer, which measures the discrepancies between malicious and benign clients as trust scores by utilizing grading and clustering strategies. According to these trust scores, SupRTE can dynamically adjust the weight of each participating client to effectively suppress the malicious backdoor injection. Remarkably, SupRTE can be easily deployed on the server without requiring any auxiliary information and is highly adaptable to various nonindependent identically distributed scenarios. Extensive experiments over three datasets against two kinds of backdoor variants are conducted. Experimental results demonstrate that SupRTE can significantly reduce the attack success rate to below 2% with a minimal impact on the main task accuracy and outperforms state-of-the-art defense methods.
引用
收藏
页码:66 / 77
页数:12
相关论文
共 50 条
  • [41] Robust Zero Trust Architecture: Joint Blockchain based Federated learning and Anomaly Detection based Framework
    Pokhrel, Shiva Raj
    Yang, Luxing
    Rajasegarar, Sutharshan
    Li, Gang
    PROCEEDINGS OF THE2024 SIGCOMM WORKSHOP ON ZERO TRUST ARCHITECTURE FOR NEXT GENERATION COMMUNICATIONS, ZTA-NEXTGEN 2024, 2024, : 7 - 12
  • [42] Enhancing Model Poisoning Attacks to Byzantine-Robust Federated Learning via Critical Learning Periods
    Yan, Gang
    Wang, Hao
    Yuan, Xu
    Li, Jian
    PROCEEDINGS OF 27TH INTERNATIONAL SYMPOSIUM ON RESEARCH IN ATTACKS, INTRUSIONS AND DEFENSES, RAID 2024, 2024, : 496 - 512
  • [43] Privacy-Preserving Byzantine-Robust Federated Learning via Blockchain Systems
    Miao, Yinbin
    Liu, Ziteng
    Li, Hongwei
    Choo, Kim-Kwang Raymond
    Deng, Robert H.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 2848 - 2861
  • [44] Privacy-Preserving Byzantine-Robust Federated Learning via Blockchain Systems
    Miao, Yinbin
    Liu, Ziteng
    Li, Hongwei
    Choo, Kim-Kwang Raymond
    Deng, Robert H.
    IEEE Transactions on Information Forensics and Security, 2022, 17 : 2848 - 2861
  • [45] Byzantine-Robust Federated Learning via Server-Side Mixtue of Experts
    Li, Jing (lj@ustc.edu.cn), 1600, Springer Science and Business Media Deutschland GmbH (14326 LNAI):
  • [46] Robust federated learning under statistical heterogeneity via hessian-weighted aggregation
    Ahmad, Adnan
    Luo, Wei
    Robles-Kelly, Antonio
    MACHINE LEARNING, 2023, 112 (02) : 633 - 654
  • [47] Towards Robust Federated Learning via Logits Calibration on Non-IID Data
    Qiao, Yu
    Adhikary, Apurba
    Zhang, Chaoning
    Hong, Choong Seon
    PROCEEDINGS OF 2024 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, NOMS 2024, 2024,
  • [48] Robust federated learning under statistical heterogeneity via hessian-weighted aggregation
    Adnan Ahmad
    Wei Luo
    Antonio Robles-Kelly
    Machine Learning, 2023, 112 : 633 - 654
  • [49] TFL-DT: A Trust Evaluation Scheme for Federated Learning in Digital Twin for Mobile Networks
    Guo, Jingjing
    Liu, Zhiquan
    Tian, Siyi
    Huang, Feiran
    Li, Jiaxing
    Li, Xinghua
    Igorevich, Kostromitin Konstantin
    Ma, Jianfeng
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2023, 41 (11) : 3548 - 3560
  • [50] Value Enhancement of Reinforcement Learning via Efficient and Robust Trust Region Optimization
    Shi, Chengchun
    Qi, Zhengling
    Wang, Jianing
    Zhou, Fan
    JOURNAL OF THE AMERICAN STATISTICAL ASSOCIATION, 2024, 119 (547) : 2011 - 2025