Dynamic Defense Against Byzantine Poisoning Attacks in Federated Learning

July 29, 2020 ยท Declared Dead ยท ๐Ÿ› Future generations computer systems

๐Ÿ‘ป CAUSE OF DEATH: Ghosted
No code link whatsoever

"No code URL or promise found in abstract"

Evidence collected by the PWNC Scanner

Authors Nuria Rodrรญguez-Barroso, Eugenio Martรญnez-Cรกmara, M. Victoria Luzรณn, Francisco Herrera arXiv ID 2007.15030 Category cs.LG: Machine Learning Cross-listed cs.AI, cs.CR, stat.ML Citations 43 Venue Future generations computer systems Last Checked 6 months ago
Abstract
Federated learning, as a distributed learning that conducts the training on the local devices without accessing to the training data, is vulnerable to Byzatine poisoning adversarial attacks. We argue that the federated learning model has to avoid those kind of adversarial attacks through filtering out the adversarial clients by means of the federated aggregation operator. We propose a dynamic federated aggregation operator that dynamically discards those adversarial clients and allows to prevent the corruption of the global learning model. We assess it as a defense against adversarial attacks deploying a deep learning classification model in a federated learning setting on the Fed-EMNIST Digits, Fashion MNIST and CIFAR-10 image datasets. The results show that the dynamic selection of the clients to aggregate enhances the performance of the global learning model and discards the adversarial and poor (with low quality models) clients.
Community shame:
Not yet rated
Community Contributions

Found the code? Know the venue? Think something is wrong? Let us know!

๐Ÿ“œ Similar Papers

In the same crypt โ€” Machine Learning

Died the same way โ€” ๐Ÿ‘ป Ghosted