zPROBE: Zero Peek Robustness Checks for Federated Learning

06/24/2022
by   Zahra Ghodsi, et al.
6

Privacy-preserving federated learning allows multiple users to jointly train a model with coordination of a central server. The server only learns the final aggregation result, thereby preventing leakage of the users' (private) training data from the individual model updates. However, keeping the individual updates private allows malicious users to perform Byzantine attacks and degrade the model accuracy without being detected. Best existing defenses against Byzantine workers rely on robust rank-based statistics, e.g., the median, to find malicious updates. However, implementing privacy-preserving rank-based statistics is nontrivial and unscalable in the secure domain, as it requires sorting of all individual updates. We establish the first private robustness check that uses high break point rank-based statistics on aggregated model updates. By exploiting randomized clustering, we significantly improve the scalability of our defense without compromising privacy. We leverage the derived statistical bounds in zero-knowledge proofs to detect and remove malicious updates without revealing the private user updates. Our novel framework, zPROBE, enables Byzantine resilient and secure federated learning. Empirical evaluations demonstrate that zPROBE provides a low overhead solution to defend against state-of-the-art Byzantine attacks while preserving privacy.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/07/2022

Preserving Privacy and Security in Federated Learning

Federated learning is known to be vulnerable to security and privacy iss...
research
10/06/2021

Secure Byzantine-Robust Distributed Learning via Clustering

Federated learning systems that jointly preserve Byzantine robustness an...
research
08/04/2021

Secure and Privacy-Preserving Federated Learning via Co-Utility

The decentralized nature of federated learning, that often leverages the...
research
07/21/2020

Byzantine-Resilient Secure Federated Learning

Secure federated learning is a privacy-preserving framework to improve m...
research
06/12/2020

Backdoor Attacks on Federated Meta-Learning

Federated learning allows multiple users to collaboratively train a shar...
research
10/22/2021

MANDERA: Malicious Node Detection in Federated Learning via Ranking

Federated learning is a distributed learning paradigm which seeks to pre...
research
07/03/2019

Beyond content analysis: Detecting targeted ads via distributed counting

Being able to check whether an online advertisement has been targeted is...

Please sign up or login with your details

Forgot password? Click here to reset