Computation and communication efficient approach for federated learning based urban sensing applications against inference attacks

被引:1
|
作者
Kapoor, Ayshika [1 ]
Kumar, Dheeraj [1 ]
机构
[1] Indian Inst Technol Roorkee, Dept Elect & Commun Engn, Roorkee 247667, Uttaranchal, India
关键词
Urban sensing; Federated learning; Spatial-temporal entropy; Secure multiparty computation; Privacy; Kullback-Leibler divergence; MOBILITY; PRIVACY;
D O I
10.1016/j.pmcj.2024.101875
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning based participatory sensing has gained much attention lately for the vital task of urban sensing due to privacy and security issues in conventional machine learning. However, inference attacks by the honest -but -curious application server or a malicious adversary can leak the personal attributes of the participants, such as their home and workplace locations, routines, and habits. Approaches proposed in the literature to prevent such information leakage, such as secure multi -party computation and homomorphic encryption, are infeasible for urban sensing applications owing to high communication and computation costs due to multiple rounds of communication between the user and the server. Moreover, for effective modeling of urban sensing phenomenon, the application model needs to be updated frequently - every few minutes or hours, resulting in periodic data -intensive updates by the participants, which severely strains the already limited resources of their mobile devices. This paper proposes a novel lowcost privacy -preserving framework for enhanced protection against the inference of participants' personal and private attributes from the data leaked through inference attacks. We propose a novel approach of strategically leaking selected location traces by providing computation and communication -light direct (local) model updates, whereas the rest of the model updates (when the user is at sensitive locations) are provided using secure multi -party computation. We propose two new methods based on spatiotemporal entropy and Kullback-Leibler divergence for automatically deciding which model updates need to be sent through secure multi -party computation and which can be sent directly. The proposed approach significantly reduces the computation and communication overhead for participants compared to the fully secure multi -party computation protocols. It provides enhanced protection against the deduction of personal attributes from inferred location traces compared to the direct model updates by confusing the application server or malicious adversary while inferring personal attributes from location traces. Numerical experiments on the popular Geolife GPS trajectories dataset validate our proposed approach by reducing the computation and communication requirements by the participants significantly and, at the same time, enhancing privacy by decreasing the number of inferred sensitive and private locations of participants.
引用
收藏
页数:21
相关论文
共 50 条
  • [41] LoDen: Making Every Client in Federated Learning a Defender Against the Poisoning Membership Inference Attacks
    Ma, Mengyao
    Zhang, Yanjun
    Chamikara, M. A. P.
    Zhang, Leo Yu
    Chhetri, Mohan Baruwal
    Bai, Guangdong
    PROCEEDINGS OF THE 2023 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, ASIA CCS 2023, 2023, : 122 - 135
  • [42] Theoretical Analysis and Performance Evaluation for Federated Edge Learning with Integrated Sensing, Communication and Computation
    Liang, Yipeng
    Chen, Qimei
    Zhu, Guangxu
    Jiang, Hao
    2023 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS, ICC WORKSHOPS, 2023, : 592 - 598
  • [43] TEAR: Exploring Temporal Evolution of Adversarial Robustness for Membership Inference Attacks Against Federated Learning
    Liu, Gaoyang
    Tian, Zehao
    Chen, Jian
    Wang, Chen
    Liu, Jiangchuan
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 4996 - 5010
  • [44] Collusion-Based Poisoning Attacks Against Blockchained Federated Learning
    Zhang, Xiaohui
    Shen, Tao
    Bai, Fenhua
    Zhang, Chi
    IEEE NETWORK, 2023, 37 (06): : 50 - 57
  • [45] Task-Agnostic Privacy-Preserving Representation Learning for Federated Learning against Attribute Inference Attacks
    Arevalo, Caridad Arroyo
    Noorbakhsh, Sayedeh Leila
    Dong, Yun
    Hong, Yuan
    Wang, Binghui
    THIRTY-EIGHTH AAAI CONFERENCE ON ARTIFICIAL INTELLIGENCE, VOL 38 NO 10, 2024, : 10909 - 10917
  • [46] DLShield: A Defense Approach Against Dirty Label Attacks in Heterogeneous Federated Learning
    Sameera, K. M.
    Abhinav, M.
    Amal, P. P.
    Abhiram, T. Babu
    Abishek, Raj K.
    Amal, Tomichen
    Anainal, P.
    Vinod, P.
    Rafidha, Rehiman K. A.
    Mauro, Conti
    SECURITY, PRIVACY, AND APPLIED CRYPTOGRAPHY ENGINEERING, SPACE 2024, 2025, 15351 : 129 - 148
  • [47] Defending Against Data Reconstruction Attacks in Federated Learning: An Information Theory Approach
    Tan, Qi
    Li, Qi
    Zhao, Yi
    Liu, Zhuotao
    Guo, Xiaobing
    Xu, Ke
    PROCEEDINGS OF THE 33RD USENIX SECURITY SYMPOSIUM, SECURITY 2024, 2024, : 325 - 342
  • [48] Communication-Efficient Personalized Federated Edge Learning for Decentralized Sensing in ISAC
    Zhu, Yonghui
    Zhang, Ronghui
    Cui, Yuanhao
    Wu, Sheng
    Jiang, Chunxiao
    Jing, Xiaojun
    2023 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS, ICC WORKSHOPS, 2023, : 207 - 212
  • [49] Multi-level membership inference attacks in federated Learning based on active GAN
    Hao Sui
    Xiaobing Sun
    Jiale Zhang
    Bing Chen
    Wenjuan Li
    Neural Computing and Applications, 2023, 35 : 17013 - 17027
  • [50] Multi-level membership inference attacks in federated Learning based on active GAN
    Sui, Hao
    Sun, Xiaobing
    Zhang, Jiale
    Chen, Bing
    Li, Wenjuan
    NEURAL COMPUTING & APPLICATIONS, 2023, 35 (23): : 17013 - 17027