FREPD: A Robust Federated Learning Framework on Variational Autoencoder

被引:4
|
作者
Gu, Zhipin [1 ]
He, Liangzhong [2 ]
Li, Peiyan [1 ]
Sun, Peng [3 ]
Shi, Jiangyong [1 ]
Yang, Yuexiang [1 ]
机构
[1] Natl Univ Def Technol, Changsha 410000, Peoples R China
[2] China Mobile Suzhou Software Technol Co Ltd, Suzhou 215000, Peoples R China
[3] Eindhoven Univ Technol, NL-5641 BZ Eindhoven, Netherlands
来源
关键词
Federated learning; reconstruction error; probability distribution;
D O I
10.32604/csse.2021.017969
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning is an ideal solution to the limitation of not preserving the users' privacy information in edge computing. In federated learning, the cloud aggregates local model updates from the devices to generate a global model. To protect devices' privacy, the cloud is designed to have no visibility into how these updates are generated, making detecting and defending malicious model updates a challenging task. Unlike existing works that struggle to tolerate adversarial attacks, the paper manages to exclude malicious updates from the global model's aggregation. This paper focuses on Byzantine attack and backdoor attack in the federated learning setting. We propose a federated learning framework, which we call Federated Reconstruction Error Probability Distribution (FREPD). FREPD uses a VAE model to compute updates' reconstruction errors. Updates with higher reconstruction errors than the average reconstruction error are deemed as malicious updates and removed. Meanwhile, we apply the Kolmogorov-Smirnov test to choose a proper probability distribution function and tune its parameters to fit the distribution of reconstruction errors from observed benign updates. We then use the distribution function to estimate the probability that an unseen reconstruction error belongs to the benign reconstruction error distribution. Based on the probability, we classify the model updates as benign or malicious. Only benign updates are used to aggregate the global model. FREPD is tested with extensive experiments on independent and identically distributed (IID) and non-IID federated benchmarks, showing a competitive performance over existing aggregation methods under Byzantine attack and backdoor attack.
引用
收藏
页码:307 / 320
页数:14
相关论文
共 50 条
  • [31] Sequential Learning and Regularization in Variational Recurrent Autoencoder
    Chien, Jen-Tzung
    Tsai, Chih-Jung
    28TH EUROPEAN SIGNAL PROCESSING CONFERENCE (EUSIPCO 2020), 2021, : 1613 - 1617
  • [32] The Dreaming Variational Autoencoder for Reinforcement Learning Environments
    Andersen, Per-Arne
    Goodwin, Morten
    Granmo, Ole-Christoffer
    ARTIFICIAL INTELLIGENCE XXXV (AI 2018), 2018, 11311 : 143 - 155
  • [33] SRFL: A Secure & Robust Federated Learning framework for IoT with trusted execution environments
    Cao, Yihao
    Zhang, Jianbiao
    Zhao, Yaru
    Su, Pengchong
    Huang, Haoxiang
    Expert Systems with Applications, 2024, 239
  • [34] Variational Autoencoder Inverse Mapper: An End-to-End Deep Learning Framework for Inverse Problems
    Almaeen, Manal
    Alanazi, Yasir
    Sato, Nobuo
    Melnitchouk, W.
    Kuchera, Michelle P.
    Li, Yaohang
    2021 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2021,
  • [35] A Robust Game-Theoretical Federated Learning Framework With Joint Differential Privacy
    Zhang, Lefeng
    Zhu, Tianqing
    Xiong, Ping
    Zhou, Wanlei
    Yu, Philip S.
    IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2023, 35 (04) : 3333 - 3346
  • [36] Byzantine-Robust Multimodal Federated Learning Framework for Intelligent Connected Vehicle
    Wu, Ning
    Lin, Xiaoming
    Lu, Jianbin
    Zhang, Fan
    Chen, Weidong
    Tang, Jianlin
    Xiao, Jing
    ELECTRONICS, 2024, 13 (18)
  • [37] A Robust Detection and Correction Framework for GNN-Based Vertical Federated Learning
    Yang, Zhicheng
    Fan, Xiaoliang
    Wang, Zheng
    Wang, Zihui
    Wang, Cheng
    PATTERN RECOGNITION AND COMPUTER VISION, PRCV 2023, PT III, 2024, 14427 : 97 - 108
  • [38] SRFL: A Secure & Robust Federated Learning framework for IoT with trusted execution environments
    Cao, Yihao
    Zhang, Jianbiao
    Zhao, Yaru
    Su, Pengchong
    Huang, Haoxiang
    EXPERT SYSTEMS WITH APPLICATIONS, 2024, 239
  • [39] ABFL: A Blockchain-enabled Robust Framework for Secure and Trustworthy Federated Learning
    Cui, Bo
    Mei, Tianyu
    39TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, ACSAC 2023, 2023, : 636 - 646
  • [40] Flow field prediction of supercritical airfoils via variational autoencoder based deep learning framework
    Wang, Jing
    He, Cheng
    Li, Runze
    Chen, Haixin
    Zhai, Chen
    Zhang, Miao
    PHYSICS OF FLUIDS, 2021, 33 (08)