Certified Robustness in Federated Learning

06/06/2022
by   Motasem Alfarra, et al.
3

Federated learning has recently gained significant attention and popularity due to its effectiveness in training machine learning models on distributed data privately. However, as in the single-node supervised learning setup, models trained in federated learning suffer from vulnerability to imperceptible input transformations known as adversarial attacks, questioning their deployment in security-related applications. In this work, we study the interplay between federated training, personalization, and certified robustness. In particular, we deploy randomized smoothing, a widely-used and scalable certification method, to certify deep networks trained on a federated setup against input perturbations and transformations. We find that the simple federated averaging technique is effective in building not only more accurate, but also more certifiably-robust models, compared to training solely on local data. We further analyze personalization, a popular technique in federated training that increases the model's bias towards local data, on robustness. We show several advantages of personalization over both (that is, only training on local data and federated training) in building more robust models with faster training. Finally, we explore the robustness of mixtures of global and local (personalized) models, and find that the robustness of local models degrades as they diverge from the global model

READ FULL TEXT

page 15

page 17

research
06/15/2021

CRFL: Certifiably Robust Federated Learning against Backdoor Attacks

Federated Learning (FL) as a distributed learning paradigm that aggregat...
research
08/04/2021

FedJAX: Federated learning simulation with JAX

Federated learning is a machine learning technique that enables training...
research
07/13/2023

Layerwise Linear Mode Connectivity

In the federated setup one performs an aggregation of separate local mod...
research
07/26/2023

Efficient Estimation of the Local Robustness of Machine Learning Models

Machine learning models often need to be robust to noisy input data. The...
research
10/25/2021

Optimal Model Averaging: Towards Personalized Collaborative Learning

In federated learning, differences in the data or objectives between the...
research
01/20/2022

Survey on Federated Learning Threats: concepts, taxonomy on attacks and defences, experimental study and challenges

Federated learning is a machine learning paradigm that emerges as a solu...
research
10/22/2019

Federated Evaluation of On-device Personalization

Federated learning is a distributed, on-device computation framework tha...

Please sign up or login with your details

Forgot password? Click here to reset