SAFELearning: Enable Backdoor Detectability In Federated Learning With Secure Aggregation

02/04/2021
by   Zhuosheng Zhang, et al.
0

For model privacy, local model parameters in federated learning shall be obfuscated before sent to the remote aggregator. This technique is referred to as secure aggregation. However, secure aggregation makes model poisoning attacks, e.g., to insert backdoors, more convenient given existing anomaly detection methods mostly require access to plaintext local models. This paper proposes SAFELearning which supports backdoor detection for secure aggregation. We achieve this through two new primitives - oblivious random grouping (ORG) and partial parameter disclosure (PPD). ORG partitions participants into one-time random subgroups with group configurations oblivious to participants; PPD allows secure partial disclosure of aggregated subgroup models for anomaly detection without leaking individual model privacy. SAFELearning is able to significantly reduce backdoor model accuracy without jeopardizing the main task accuracy under common backdoor strategies. Extensive experiments show SAFELearning reduces backdoor accuracy from 100% to 8.2% for ResNet-18 over CIFAR-10 when 10% participants are malicious.

READ FULL TEXT
research
11/10/2022

Secure Aggregation Is Not All You Need: Mitigating Privacy Attacks with Noise Tolerance in Federated Learning

Federated learning is a collaborative method that aims to preserve data ...
research
06/07/2021

Securing Secure Aggregation: Mitigating Multi-Round Privacy Leakage in Federated Learning

Secure aggregation is a critical component in federated learning, which ...
research
07/09/2022

Federated Learning with Quantum Secure Aggregation

This article illustrates a novel Quantum Secure Aggregation (QSA) scheme...
research
03/07/2023

Client-specific Property Inference against Secure Aggregation in Federated Learning

Federated learning has become a widely used paradigm for collaboratively...
research
07/16/2019

The Tradeoff Between Privacy and Accuracy in Anomaly Detection Using Federated XGBoost

Privacy has raised considerable concerns recently, especially with the a...
research
08/12/2021

SAFE: Secure Aggregation with Failover and Encryption

We propose and experimentally evaluate a novel secure aggregation algori...
research
05/16/2022

Federated Anomaly Detection over Distributed Data Streams

Sharing of telecommunication network data, for example, even at high agg...

Please sign up or login with your details

Forgot password? Click here to reset