BadCleaner: Defending Backdoor Attacks in Federated Learning Via Attention-Based Multi-Teacher Distillation

后门 计算机科学 人工智能 计算机安全 机器学习
作者
Jiale Zhang,Chengcheng Zhu,Chunpeng Ge,Chuan Ma,Yanchao Zhao,Xiaobing Sun,Bing Chen
出处
期刊:IEEE Transactions on Dependable and Secure Computing [IEEE Computer Society]
卷期号:21 (5): 4559-4573 被引量:6
标识
DOI:10.1109/tdsc.2024.3354049
摘要

As a privacy-preserving distributed learning paradigm, federated learning (FL) has been proven to be vulnerable to various attacks, among which backdoor attack is one of the toughest. In this attack, malicious users attempt to embed backdoor triggers into local models, resulting in the crafted inputs being misclassified as the targeted labels. To address such attack, several defense mechanisms are proposed, but may lose the effectiveness due to the following drawbacks. First, current methods heavily rely on massive labeled clean data, which is an impractical setting in FL. Moreover, an in-avoidable performance degradation usually occurs in the defensive procedure. To alleviate such concerns, we propose BadCleaner , a lossless and efficient backdoor defense scheme via attention-based federated multi-teacher distillation. Firstly, BadCleaner can effectively tune the backdoored joint model without performance degradation, by distilling the in-depth knowledge from multiple teachers with only a small part of unlabeled clean data. Secondly, to fully eliminate the hidden backdoor patterns, we present an attention transfer method to alleviate the attention of models to the trigger regions. The extensive evaluation demonstrates that BadCleaner can reduce the success rates of state-of-the-art backdoor attacks without compromising the model performance.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
TTTTT完成签到 ,获得积分10
1秒前
mimilv发布了新的文献求助10
4秒前
昏睡的衬衫完成签到,获得积分10
5秒前
笨笨水儿完成签到 ,获得积分10
5秒前
科研摆渡人完成签到,获得积分10
15秒前
jennie完成签到 ,获得积分10
18秒前
19秒前
20秒前
NTz发布了新的文献求助10
24秒前
somehow完成签到 ,获得积分10
24秒前
25秒前
科研通AI6.1应助六六采纳,获得10
25秒前
时尚的未来完成签到 ,获得积分10
26秒前
安雯完成签到 ,获得积分10
26秒前
30秒前
mimilv完成签到,获得积分10
32秒前
哈哈完成签到,获得积分10
33秒前
34秒前
Maestro_S发布了新的文献求助10
35秒前
张学友发布了新的文献求助10
37秒前
42秒前
Droplet完成签到,获得积分10
44秒前
HCT完成签到,获得积分10
45秒前
Maestro_S发布了新的文献求助10
48秒前
蒸馏水完成签到,获得积分10
48秒前
汉堡包应助NTz采纳,获得10
48秒前
dmr完成签到,获得积分10
50秒前
Sandy完成签到 ,获得积分10
50秒前
超级灰狼完成签到 ,获得积分10
52秒前
Jobs发布了新的文献求助20
52秒前
无奈山雁完成签到 ,获得积分10
54秒前
Maestro_S发布了新的文献求助10
56秒前
kk完成签到 ,获得积分10
59秒前
六六发布了新的文献求助10
1分钟前
MC123完成签到,获得积分10
1分钟前
1分钟前
Maestro_S发布了新的文献求助200
1分钟前
pengyang完成签到 ,获得积分10
1分钟前
莫歌完成签到 ,获得积分10
1分钟前
青柠完成签到 ,获得积分10
1分钟前
高分求助中
Adhesion Science: Principles & Practice 1234
Signals, Systems, and Signal Processing 610
Burger's Medicinal Chemistry and Drug Discovery 400
A Step-by-Step Guide to Qualitative Data Coding 2nd Edition 400
Impact of Storage Orientation and Duration on Prefilled Syringe Performance: Break-Loose and Glide Forces, and Injection Time Across Multiple Time Points 360
Programming for Chemical Engineers Using C, C++, and MATLAB 300
Upland Kenya wild flowers and ferns: a flora of the flowers, ferns, grasses, and sedges of highland Kenya 300
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6663032
求助须知:如何正确求助?哪些是违规求助? 8413090
关于积分的说明 17984387
捐赠科研通 5866946
什么是DOI,文献DOI怎么找? 2974950
邀请新用户注册赠送积分活动 1950864
关于科研通互助平台的介绍 1876592