FedRecovery: Differentially Private Machine Unlearning for Federated Learning Frameworks

计算机科学 差别隐私 人工智能 机器学习 再培训 信息隐私 联合学习 大数据 数据挖掘 计算机安全 国际贸易 业务
作者
Lefeng Zhang,Tianqing Zhu,Haibin Zhang,Ping Xiong,Wanlei Zhou
出处
期刊:IEEE Transactions on Information Forensics and Security [Institute of Electrical and Electronics Engineers]
卷期号:18: 4732-4746
标识
DOI:10.1109/tifs.2023.3297905
摘要

Over the past decades, the abundance of personal data has led to the rapid development of machine learning models and important advances in artificial intelligence (AI). However, alongside all the achievements, there are increasing privacy threats and security risks that may cause significant losses for data providers. Recent legislation requires that the private information about a user should be removed from a database as well as machine learning models upon certain deletion requests. While erasing data records from memory storage is straightforward, it is often challenging to remove the influence of particular data samples from a model that has already been trained. Machine unlearning is an emerging paradigm that aims to make machine learning models “forget” what they have learned about particular data. Nevertheless, the unlearning issue for federated learning has not been completely addressed due to its special working mode. First, existing solutions crucially rely on retraining-based model calibration, which is likely unavailable and can pose new privacy risks for federated learning frameworks. Second, today’s efficient unlearning strategies are mainly designed for convex problems, which are incapable of handling more complicated learning tasks like neural networks. To overcome these limitations, we took advantage of differential privacy and developed an efficient machine unlearning algorithm named FedRecovery. The FedRecovery erases the impact of a client by removing a weighted sum of gradient residuals from the global model, and tailors the Gaussian noise to make the unlearned model and retrained model statistically indistinguishable. Furthermore, the algorithm neither requires retraining-based fine-tuning nor needs the assumption of convexity. Theoretical analyses show the rigorous indistinguishability guarantee. Additionally, the experiment results on real-world datasets demonstrate that the FedRecovery is efficient and is able to produce a model that performs similarly to the retrained one.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
更新
大幅提高文件上传限制,最高150M (2024-4-1)

科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
NatalyaF完成签到,获得积分10
刚刚
bio-tang发布了新的文献求助30
1秒前
dawei完成签到,获得积分10
1秒前
FengMeichang完成签到,获得积分10
2秒前
2秒前
3秒前
4秒前
5秒前
北纬发布了新的文献求助10
5秒前
明亮的以蓝完成签到 ,获得积分10
5秒前
Yana1311完成签到,获得积分10
6秒前
hhh完成签到,获得积分10
7秒前
是大法官寒假快乐完成签到,获得积分10
9秒前
LIVE完成签到,获得积分10
10秒前
车剑锋发布了新的文献求助10
10秒前
11秒前
11秒前
11秒前
Ming完成签到,获得积分10
11秒前
15秒前
初心路发布了新的文献求助10
16秒前
noflatterer完成签到,获得积分10
17秒前
小玲仔发布了新的文献求助10
17秒前
CG2021发布了新的文献求助10
17秒前
亚鲁发布了新的文献求助10
17秒前
21秒前
smottom应助mengtingmei采纳,获得10
21秒前
贺可乐完成签到 ,获得积分10
21秒前
bkagyin应助lllllll采纳,获得10
23秒前
Dopamine完成签到,获得积分10
24秒前
赘婿应助埋头苦干科研采纳,获得10
24秒前
djf点儿完成签到 ,获得积分10
24秒前
zz完成签到,获得积分10
24秒前
祁问儿发布了新的文献求助10
25秒前
25秒前
26秒前
华仔应助玉子卿采纳,获得10
27秒前
27秒前
28秒前
烟花应助Jerry采纳,获得10
28秒前
高分求助中
【本贴是提醒信息,请勿应助】请在求助之前详细阅读求助说明!!!! 20000
One Man Talking: Selected Essays of Shao Xunmei, 1929–1939 1000
The Three Stars Each: The Astrolabes and Related Texts 900
Yuwu Song, Biographical Dictionary of the People's Republic of China 800
Multifunctional Agriculture, A New Paradigm for European Agriculture and Rural Development 600
Challenges, Strategies, and Resiliency in Disaster and Risk Management 500
Bernd Ziesemer - Maos deutscher Topagent: Wie China die Bundesrepublik eroberte 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 有机化学 工程类 生物化学 纳米技术 物理 内科学 计算机科学 化学工程 复合材料 遗传学 基因 物理化学 催化作用 电极 光电子学 量子力学
热门帖子
关注 科研通微信公众号,转发送积分 2480531
求助须知:如何正确求助?哪些是违规求助? 2143121
关于积分的说明 5465057
捐赠科研通 1865835
什么是DOI,文献DOI怎么找? 927481
版权声明 562942
科研通“疑难数据库(出版商)”最低求助积分说明 496183