Double Perturbation-Based Privacy-Preserving Federated Learning against Inference Attack

被引:2
|
作者
Jiang, Yongqi [1 ]
Shi, Yanhang [1 ]
Chen, Siguang [1 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Internet Things, Nanjing, Peoples R China
基金
中国国家自然科学基金; 中国博士后科学基金;
关键词
Federated learning; inference attack; privacy; preservation; perturbation;
D O I
10.1109/GLOBECOM48099.2022.10001075
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated Learning (FL) is a well discussed distributed training framework, which allows scattered clients to collaboratively train a central model without directly sharing raw data. However, recent researches have stated that the model updates or gradients uploaded by FL can be used to infer sensitive data of clients, and this attack poses severe threats to FL. Several solutions are developed to address this threat. Although these solutions can achieve privacy preservation to a certain extent, their accuracy is severely degraded, and they are unable to provide strong privacy protection. Under this background, we propose a double perturbation-based privacy-preserving federated learning method, in which a feature extractor and an additional blurry function are utilized to improve the objective function of Conditional Generative Adversarial Networks (CGANs) and the generated data by CGANs are mixed with real data to construct fake-training data. Meanwhile, we design an algorithm to perturb the information contained in the gradient of fully connected layers that is most favorable for the attacker to reconstruct data. Finally, simulation results show that our developed method can effectively resist inference attack with a negligible decline in accuracy.
引用
收藏
页码:5451 / 5456
页数:6
相关论文
共 50 条
  • [21] Adaptive privacy-preserving federated learning
    Xiaoyuan Liu
    Hongwei Li
    Guowen Xu
    Rongxing Lu
    Miao He
    Peer-to-Peer Networking and Applications, 2020, 13 : 2356 - 2366
  • [22] Federated learning for privacy-preserving AI
    Cheng, Yong
    Liu, Yang
    Chen, Tianjian
    Yang, Qiang
    COMMUNICATIONS OF THE ACM, 2020, 63 (12) : 33 - 36
  • [23] Privacy-Preserving and Reliable Federated Learning
    Lu, Yi
    Zhang, Lei
    Wang, Lulu
    Gao, Yuanyuan
    ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2021, PT III, 2022, 13157 : 346 - 361
  • [24] Privacy-Preserving Distributed Multi-Task Learning against Inference Attack in Cloud Computing
    Ma, Xindi
    Ma, Jianfeng
    Kumari, Saru
    Wei, Fushan
    Shojafar, Mohammad
    Alazab, Mamoun
    ACM TRANSACTIONS ON INTERNET TECHNOLOGY, 2022, 22 (02)
  • [25] Poisoning Attack Mitigation for Privacy-Preserving Federated Learning-based Energy Theft Detection
    Srewa, Mahmoud
    Winfree, Michaela F.
    Ibrahem, Mohamed I.
    Nabil, Mahmoud
    Lu, Rongxing
    Alsharif, Ahmad
    ICC 2024 - IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, 2024, : 3962 - 3968
  • [26] A Verifiable Privacy-Preserving Federated Learning Framework Against Collusion Attacks
    Chen, Yange
    He, Suyu
    Wang, Baocang
    Feng, Zhanshen
    Zhu, Guanghui
    Tian, Zhihong
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2025, 24 (05) : 3918 - 3934
  • [27] Privacy-Preserving Deep Learning and Inference
    Riazi, M. Sadegh
    Koushanfar, Farinaz
    2018 IEEE/ACM INTERNATIONAL CONFERENCE ON COMPUTER-AIDED DESIGN (ICCAD) DIGEST OF TECHNICAL PAPERS, 2018,
  • [28] DefendFL: A Privacy-Preserving Federated Learning Scheme Against Poisoning Attacks
    Liu, Jiao
    Li, Xinghua
    Liu, Ximeng
    Zhang, Haiyan
    Miao, Yinbin
    Deng, Robert H.
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024,
  • [29] PPNNI: Privacy-Preserving Neural Network Inference Against Adversarial Example Attack
    He, Guanghui
    Ren, Yanli
    He, Gang
    Feng, Guorui
    Zhang, Xinpeng
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2024, 17 (06) : 4083 - 4096
  • [30] Privacy-preserving in Blockchain-based Federated Learning systems
    Sameera, K. M.
    Nicolazzo, Serena
    Arazzi, Marco
    Nocera, Antonino
    Rehiman, K. A. Rafidha
    Vinod, P.
    Conti, Mauro
    COMPUTER COMMUNICATIONS, 2024, 222 : 38 - 67