Double Perturbation-Based Privacy-Preserving Federated Learning against Inference Attack

被引:2
|
作者
Jiang, Yongqi [1 ]
Shi, Yanhang [1 ]
Chen, Siguang [1 ]
机构
[1] Nanjing Univ Posts & Telecommun, Sch Internet Things, Nanjing, Peoples R China
基金
中国国家自然科学基金; 中国博士后科学基金;
关键词
Federated learning; inference attack; privacy; preservation; perturbation;
D O I
10.1109/GLOBECOM48099.2022.10001075
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Federated Learning (FL) is a well discussed distributed training framework, which allows scattered clients to collaboratively train a central model without directly sharing raw data. However, recent researches have stated that the model updates or gradients uploaded by FL can be used to infer sensitive data of clients, and this attack poses severe threats to FL. Several solutions are developed to address this threat. Although these solutions can achieve privacy preservation to a certain extent, their accuracy is severely degraded, and they are unable to provide strong privacy protection. Under this background, we propose a double perturbation-based privacy-preserving federated learning method, in which a feature extractor and an additional blurry function are utilized to improve the objective function of Conditional Generative Adversarial Networks (CGANs) and the generated data by CGANs are mixed with real data to construct fake-training data. Meanwhile, we design an algorithm to perturb the information contained in the gradient of fully connected layers that is most favorable for the attacker to reconstruct data. Finally, simulation results show that our developed method can effectively resist inference attack with a negligible decline in accuracy.
引用
收藏
页码:5451 / 5456
页数:6
相关论文
共 50 条
  • [41] Privacy-preserving Heterogeneous Federated Transfer Learning
    Gao, Dashan
    Liu, Yang
    Huang, Anbu
    Ju, Ce
    Yu, Han
    Yang, Qiang
    2019 IEEE INTERNATIONAL CONFERENCE ON BIG DATA (BIG DATA), 2019, : 2552 - 2559
  • [42] A Personalized Privacy-Preserving Scheme for Federated Learning
    Li, Zhenyu
    2022 IEEE INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING, BIG DATA AND ALGORITHMS (EEBDA), 2022, : 1352 - 1356
  • [43] Privacy-preserving federated learning for radiotherapy applications
    Hayati, H.
    Heijmans, S.
    Persoon, L.
    Murguia, C.
    van de Wouw, N.
    RADIOTHERAPY AND ONCOLOGY, 2023, 182 : S238 - S240
  • [44] POSTER: Privacy-preserving Federated Active Learning
    Kurniawan, Hendra
    Mambo, Masahiro
    SCIENCE OF CYBER SECURITY, SCISEC 2022 WORKSHOPS, 2022, 1680 : 223 - 226
  • [45] AddShare: A Privacy-Preserving Approach for Federated Learning
    Asare, Bernard Atiemo
    Branco, Paula
    Kiringa, Iluju
    Yeap, Tet
    COMPUTER SECURITY. ESORICS 2023 INTERNATIONAL WORKSHOPS, PT I, 2024, 14398 : 299 - 309
  • [46] A Syntactic Approach for Privacy-Preserving Federated Learning
    Choudhury, Olivia
    Gkoulalas-Divanis, Aris
    Salonidis, Theodoros
    Sylla, Issa
    Park, Yoonyoung
    Hsu, Grace
    Das, Amar
    ECAI 2020: 24TH EUROPEAN CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2020, 325 : 1762 - 1769
  • [47] PPFLV: privacy-preserving federated learning with verifiability
    Zhou, Qun
    Shen, Wenting
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (09): : 12727 - 12743
  • [48] Contribution Measurement in Privacy-Preserving Federated Learning
    Hsu, Ruei-hau
    Yu, Yi-an
    Su, Hsuan-cheng
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2024, 40 (06) : 1173 - 1196
  • [49] Privacy-Preserving Federated Learning in Fog Computing
    Zhou, Chunyi
    Fu, Anmin
    Yu, Shui
    Yang, Wei
    Wang, Huaqun
    Zhang, Yuqing
    IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (11): : 10782 - 10793
  • [50] Federated Learning for Privacy-Preserving Speaker Recognition
    Woubie, Abraham
    Backstrom, Tom
    IEEE ACCESS, 2021, 9 : 149477 - 149485