Comparative Analysis of Membership Inference Attacks in Federated and Centralized Learning

被引:2
|
作者
Abbasi Tadi, Ali [1 ]
Dayal, Saroj [1 ]
Alhadidi, Dima [1 ]
Mohammed, Noman [2 ]
机构
[1] Univ Windsor, Sch Comp Sci, Windsor, ON N9B 3P4, Canada
[2] Univ Manitoba, Dept Comp Sci, Winnipeg, MB R3T 2N2, Canada
基金
加拿大自然科学与工程研究理事会;
关键词
federated learning; membership inference attack; privacy; machine learning;
D O I
10.3390/info14110620
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The vulnerability of machine learning models to membership inference attacks, which aim to determine whether a specific record belongs to the training dataset, is explored in this paper. Federated learning allows multiple parties to independently train a model without sharing or centralizing their data, offering privacy advantages. However, when private datasets are used in federated learning and model access is granted, the risk of membership inference attacks emerges, potentially compromising sensitive data. To address this, effective defenses in a federated learning environment must be developed without compromising the utility of the target model. This study empirically investigates and compares membership inference attack methodologies in both federated and centralized learning environments, utilizing diverse optimizers and assessing attacks with and without defenses on image and tabular datasets. The findings demonstrate that a combination of knowledge distillation and conventional mitigation techniques (such as Gaussian dropout, Gaussian noise, and activity regularization) significantly mitigates the risk of information leakage in both federated and centralized settings.
引用
收藏
页数:26
相关论文
共 50 条
  • [11] TEAR: Exploring Temporal Evolution of Adversarial Robustness for Membership Inference Attacks Against Federated Learning
    Liu, Gaoyang
    Tian, Zehao
    Chen, Jian
    Wang, Chen
    Liu, Jiangchuan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 4996 - 5010
  • [12] LoDen: Making Every Client in Federated Learning a Defender Against the Poisoning Membership Inference Attacks
    Ma, Mengyao
    Zhang, Yanjun
    Chamikara, M. A. P.
    Zhang, Leo Yu
    Chhetri, Mohan Baruwal
    Bai, Guangdong
    PROCEEDINGS OF THE 2023 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, ASIA CCS 2023, 2023, : 122 - 135
  • [13] Membership Inference Attacks on Machine Learning: A Survey
    Hu, Hongsheng
    Salcic, Zoran
    Sun, Lichao
    Dobbie, Gillian
    Yu, Philip S.
    Zhang, Xuyun
    ACM COMPUTING SURVEYS, 2022, 54 (11S)
  • [14] Membership Inference Attacks: Analysis and Mitigation
    Shuvo, Md Shamimur Rahman
    Alhadidi, Dima
    2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 1411 - 1420
  • [15] Inference attacks based on GAN in federated learning
    Trung Ha
    Tran Khanh Dang
    INTERNATIONAL JOURNAL OF WEB INFORMATION SYSTEMS, 2022, 18 (2/3) : 117 - 136
  • [16] Fortifying Federated Learning against Membership Inference Attacks via Client-level Input Perturbation
    Yang, Yuchen
    Yuan, Haolin
    Hui, Bo
    Gong, Neil
    Fendley, Neil
    Burlina, Philippe
    Cao, Yinzhi
    2023 53RD ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS, DSN, 2023, : 288 - 301
  • [17] Mitigating Membership Inference Attacks in Machine Learning as a Service
    Bouhaddi, Myria
    Adi, Kamel
    2023 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE, CSR, 2023, : 262 - 268
  • [18] A Survey on Membership Inference Attacks Against Machine Learning
    Bai, Yang
    Chen, Ting
    Fan, Mingyu
    International Journal of Network Security, 2021, 23 (04) : 685 - 697
  • [19] Poster: Membership Inference Attacks via Contrastive Learning
    Chen, Depeng
    Liu, Xiao
    Cui, Jie
    Zhong, Hong
    PROCEEDINGS OF THE 2023 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, CCS 2023, 2023, : 3555 - 3557
  • [20] Membership Inference Attacks Against Machine Learning Models
    Shokri, Reza
    Stronati, Marco
    Song, Congzheng
    Shmatikov, Vitaly
    2017 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP), 2017, : 3 - 18