FedSuper: A Byzantine-Robust Federated Learning Under Supervision

被引:0
|
作者
Zhao, Ping [1 ,2 ]
Jiang, Jin [1 ,2 ]
Zhang, Guanglin [1 ,2 ]
机构
[1] Donghua Univ, Coll Informat Sci & Technol, Shanghai, Peoples R China
[2] Donghua Univ, Coll Informat Sci & Technol, 2999 Renmin North Rd, Shanghai 201620, Peoples R China
基金
中国国家自然科学基金;
关键词
Federated learning; Byzantine attack; Byzantine ratio; non-IID; MOBILITY;
D O I
10.1145/3630099
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated Learning (FL) is a machine learning setting where multiple worker devices collaboratively train a model under the orchestration of a central server, while keeping the training data local. However, owing to the lack of supervision on worker devices, FL is vulnerable to Byzantine attacks where the worker devices controlled by an adversary arbitrarily generate poisoned local models and send to FL server, ultimately degrading the utility (e.g., model accuracy) of the global model. Most of existing Byzantine-robust algorithms, however, cannot well react to the threatening Byzantine attacks when the ratio of compromised worker devices (i.e., Byzantine ratio) is over 0.5 and worker devices ' local training datasets are not independent and identically distributed (non-IID). We propose a novel Byzantine-robust Federated Learning under Supervision (FedSuper), which can maintain robustness against Byzantine attacks even in the threatening scenario with a very high Byzantine ratio (0.9 in our experiments) and the largest level of non-IID data (1.0 in our experiments) when the state-of-the-art Byzantine attacks are conducted. The main idea of FedSuper is that the FL server supervises worker devices via injecting a shadow dataset into their local training processes. Moreover, according to the local models ' accuracies or losses on the shadow dataset, we design a Local Model Filter to remove poisoned local models and output an optimal global model. Extensive experimental results on three real-world datasets demonstrate the effectiveness and the superior performance of FedSuper, compared to five latest Byzantine-robust FL algorithms and two baselines, in defending
引用
收藏
页数:29
相关论文
共 50 条
  • [31] Byzantine-robust federated learning over Non-IID data
    Ma X.
    Li Q.
    Jiang Q.
    Ma Z.
    Gao S.
    Tian Y.
    Ma J.
    Tongxin Xuebao/Journal on Communications, 2023, 44 (06): : 138 - 153
  • [32] Distance-Statistical based Byzantine-robust algorithms in Federated Learning
    Colosimo, Francesco
    De Rango, Floriano
    2024 IEEE 21ST CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE, CCNC, 2024, : 1034 - 1035
  • [33] Byzantine-robust Federated Learning through Collaborative Malicious Gradient Filtering
    Xu, Jian
    Huang, Shao-Lun
    Song, Linqi
    Lan, Tian
    2022 IEEE 42ND INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2022), 2022, : 1223 - 1235
  • [34] Byzantine-Robust Multimodal Federated Learning Framework for Intelligent Connected Vehicle
    Wu, Ning
    Lin, Xiaoming
    Lu, Jianbin
    Zhang, Fan
    Chen, Weidong
    Tang, Jianlin
    Xiao, Jing
    ELECTRONICS, 2024, 13 (18)
  • [35] FLGuard: Byzantine-Robust Federated Learning via Ensemble of Contrastive Models
    Lee, Younghan
    Cho, Yungi
    Han, Woorim
    Bae, Ho
    Paek, Yunheung
    COMPUTER SECURITY - ESORICS 2023, PT IV, 2024, 14347 : 65 - 84
  • [36] FedInv: Byzantine-Robust Federated Learning by Inversing Local Model Updates
    Zhao, Bo
    Sun, Peng
    Wang, Tao
    Jiang, Keyu
    THIRTY-SIXTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE / THIRTY-FOURTH CONFERENCE ON INNOVATIVE APPLICATIONS OF ARTIFICIAL INTELLIGENCE / TWELVETH SYMPOSIUM ON EDUCATIONAL ADVANCES IN ARTIFICIAL INTELLIGENCE, 2022, : 9171 - 9179
  • [37] BFLMeta: Blockchain-Empowered Metaverse with Byzantine-Robust Federated Learning
    Vu Tuan Truong
    Hoang, Duc N. M.
    Long Bao Le
    IEEE CONFERENCE ON GLOBAL COMMUNICATIONS, GLOBECOM, 2023, : 5537 - 5542
  • [38] Using Third-Party Auditor to Help Federated Learning: An Efficient Byzantine-Robust Federated Learning
    Zhang, Zhuangzhuang
    Wu, Libing
    He, Debiao
    Li, Jianxin
    Lu, Na
    Wei, Xuejiang
    IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2024, 9 (06): : 848 - 861
  • [39] Defense against local model poisoning attacks to byzantine-robust federated learning
    Shiwei Lu
    Ruihu Li
    Xuan Chen
    Yuena Ma
    Frontiers of Computer Science, 2022, 16
  • [40] Efficient Byzantine-Robust and Privacy-Preserving Federated Learning on Compressive Domain
    Hu, Guiqiang
    Li, Hongwei
    Fan, Wenshu
    Zhang, Yushu
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (04): : 7116 - 7127