FREPD: A Robust Federated Learning Framework on Variational Autoencoder

被引:4
|
作者
Gu, Zhipin [1 ]
He, Liangzhong [2 ]
Li, Peiyan [1 ]
Sun, Peng [3 ]
Shi, Jiangyong [1 ]
Yang, Yuexiang [1 ]
机构
[1] Natl Univ Def Technol, Changsha 410000, Peoples R China
[2] China Mobile Suzhou Software Technol Co Ltd, Suzhou 215000, Peoples R China
[3] Eindhoven Univ Technol, NL-5641 BZ Eindhoven, Netherlands
来源
关键词
Federated learning; reconstruction error; probability distribution;
D O I
10.32604/csse.2021.017969
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Federated learning is an ideal solution to the limitation of not preserving the users' privacy information in edge computing. In federated learning, the cloud aggregates local model updates from the devices to generate a global model. To protect devices' privacy, the cloud is designed to have no visibility into how these updates are generated, making detecting and defending malicious model updates a challenging task. Unlike existing works that struggle to tolerate adversarial attacks, the paper manages to exclude malicious updates from the global model's aggregation. This paper focuses on Byzantine attack and backdoor attack in the federated learning setting. We propose a federated learning framework, which we call Federated Reconstruction Error Probability Distribution (FREPD). FREPD uses a VAE model to compute updates' reconstruction errors. Updates with higher reconstruction errors than the average reconstruction error are deemed as malicious updates and removed. Meanwhile, we apply the Kolmogorov-Smirnov test to choose a proper probability distribution function and tune its parameters to fit the distribution of reconstruction errors from observed benign updates. We then use the distribution function to estimate the probability that an unseen reconstruction error belongs to the benign reconstruction error distribution. Based on the probability, we classify the model updates as benign or malicious. Only benign updates are used to aggregate the global model. FREPD is tested with extensive experiments on independent and identically distributed (IID) and non-IID federated benchmarks, showing a competitive performance over existing aggregation methods under Byzantine attack and backdoor attack.
引用
收藏
页码:307 / 320
页数:14
相关论文
共 50 条
  • [41] Deep Learning and Infrared Spectroscopy: Representation Learning with a β-Variational Autoencoder
    Grossutti, Michael
    D'Amico, Joseph
    Quintal, Jonathan
    MacFarlane, Hugh
    Quirk, Amanda
    Dutcher, John R.
    JOURNAL OF PHYSICAL CHEMISTRY LETTERS, 2022, 13 (25): : 5787 - 5793
  • [42] Student-t Variational Autoencoder for Robust Density Estimation
    Takahashi, Hiroshi
    Iwata, Tomoharu
    Yamanaka, Yuki
    Yamada, Masanori
    Yagi, Satoshi
    PROCEEDINGS OF THE TWENTY-SEVENTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2018, : 2696 - 2702
  • [43] A Framework for Sustainable Federated Learning
    Guler, Basak
    Yener, Aylin
    2021 19TH INTERNATIONAL SYMPOSIUM ON MODELING AND OPTIMIZATION IN MOBILE, AD HOC, AND WIRELESS NETWORKS (WIOPT), 2021,
  • [44] A Secure federated learning framework based on autoencoder and Long Short-Term Memory with generalized robust loss function for detection and prevention of data poisoning attacks
    Singh, Preeti
    BIOMEDICAL SIGNAL PROCESSING AND CONTROL, 2025, 102
  • [45] A Robust Image Watermarking Approach Using Cycle Variational Autoencoder
    Wei, Qiang
    Wang, Hu
    Zhang, Gongxuan
    SECURITY AND COMMUNICATION NETWORKS, 2020, 2020
  • [46] Encrypted Data Caching and Learning Framework for Robust Federated Learning-Based Mobile Edge Computing
    Nguyen, Chi-Hieu
    Saputra, Yuris Mulya
    Hoang, Dinh Thai
    Nguyen, Diep N.
    Nguyen, Van-Dinh
    Xiao, Yong
    Dutkiewicz, Eryk
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2024, 32 (03) : 2705 - 2720
  • [47] A efficient and robust privacy-preserving framework for cross-device federated learning
    Du, Weidong
    Li, Min
    Wu, Liqiang
    Han, Yiliang
    Zhou, Tanping
    Yang, Xiaoyuan
    COMPLEX & INTELLIGENT SYSTEMS, 2023, 9 (05) : 4923 - 4937
  • [48] FedDAA: a robust federated learning framework to protect privacy and defend against adversarial attack
    Lu, Shiwei
    Li, Ruihu
    Liu, Wenbin
    FRONTIERS OF COMPUTER SCIENCE, 2024, 18 (02)
  • [49] A Blockchain-based Multi-layer Decentralized Framework for Robust Federated Learning
    Wu, Di
    Wang, Nai
    Zhang, Jiale
    Zhang, Yuan
    Xiang, Yong
    Gao, Longxiang
    2022 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2022,
  • [50] A efficient and robust privacy-preserving framework for cross-device federated learning
    Weidong Du
    Min Li
    Liqiang Wu
    Yiliang Han
    Tanping Zhou
    Xiaoyuan Yang
    Complex & Intelligent Systems, 2023, 9 : 4923 - 4937