Shield Against Gradient Leakage Attacks: Adaptive Privacy-Preserving Federated Learning

计算机科学 差别隐私 上传 通知 泄漏(经济) 趋同(经济学) 梯度下降 信息泄露 私人信息检索 联合学习 计算机安全 数据挖掘 人工智能 人工神经网络 宏观经济学 政治学 法学 经济 经济增长 操作系统
作者
Jiahui Hu,Zhibo Wang,Shen Yong-sheng,Bohan Lin,Peng Sun,Xiaoyi Pang,Jian Liu,Kui Ren
出处
期刊:IEEE ACM Transactions on Networking [Institute of Electrical and Electronics Engineers]
卷期号:32 (2): 1407-1422 被引量:16
标识
DOI:10.1109/tnet.2023.3317870
摘要

Federated learning (FL) requires frequent uploading and updating of model parameters, which is naturally vulnerable to gradient leakage attacks (GLAs) that reconstruct private training data through gradients. Although some works incorporate differential privacy (DP) into FL to mitigate such privacy issues, their performance is not satisfactory since they did not notice that GLA incurs heterogeneous risks of privacy leakage (RoPL) with respect to gradients from different communication rounds and clients. In this paper, we propose an Adaptive Privacy-Preserving Federated Learning (Adp-PPFL) framework to achieve satisfactory privacy protection against GLA, while ensuring good performance in terms of model accuracy and convergence speed. Specifically, a leakage risk-aware privacy decomposition mechanism is proposed to provide adaptive privacy protection to different communication rounds and clients by dynamically allocating the privacy budget according to the quantified RoPL. In particular, we exploratively design a round-level and a client-level RoPL quantification method to measure the possible risks of GLA breaking privacy from gradients in different communication rounds and clients respectively, which only employ the limited information in general FL settings. Furthermore, to improve the FL model training performance (i.e., convergence speed and global model accuracy), we propose an adaptive privacy-preserving local training mechanism that dynamically clips the gradients and decays the noises added to the clipped gradients during the local training process. Extensive experiments show that our framework outperforms the existing differentially private FL schemes on model accuracy, convergence, and attack resistance.
最长约 10秒,即可获得该文献文件

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
852应助丰富的冥茗采纳,获得10
刚刚
刚刚
李健应助逗号采纳,获得10
刚刚
xiayongguo完成签到,获得积分10
刚刚
LGY发布了新的文献求助10
2秒前
朱文韬发布了新的文献求助10
2秒前
3秒前
3秒前
4秒前
lizishu应助一只小BSS采纳,获得10
5秒前
WangBobo发布了新的文献求助10
5秒前
榕树完成签到 ,获得积分10
6秒前
纳格完成签到,获得积分10
6秒前
田様应助vivi采纳,获得10
8秒前
9秒前
天天快乐应助xmyyy采纳,获得10
9秒前
my196755发布了新的文献求助10
10秒前
10秒前
10秒前
可爱多应助杨帆采纳,获得10
10秒前
上岸吧完成签到,获得积分20
10秒前
yrr完成签到,获得积分10
11秒前
科研通AI6.2应助1111111111111采纳,获得10
12秒前
bkagyin应助科研通管家采纳,获得10
12秒前
完美世界应助科研通管家采纳,获得10
12秒前
田様应助科研通管家采纳,获得10
12秒前
12秒前
13秒前
13秒前
大个应助科研通管家采纳,获得10
13秒前
13秒前
13秒前
上官若男应助科研通管家采纳,获得10
13秒前
肥啾完成签到,获得积分10
13秒前
Ava应助科研通管家采纳,获得10
13秒前
传奇3应助科研通管家采纳,获得10
13秒前
13秒前
堇年完成签到 ,获得积分10
13秒前
13秒前
高分求助中
GL 2 A method for assessing the in-place cleanability of food processing equipment, Fourth Edition, December 2023 3000
Annie Ernaux: De la perte au corps glorieux 600
Writing Systems 500
类器官构建与应用:从基础到前沿 500
Optical Coating Design with the Essential Macleod 400
A revision of Limenitis helmanni and its related species (Nymphalidae) from Central and South China 400
Moore's Clinically Oriented Anatomy 10th Edition 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6796989
求助须知:如何正确求助?哪些是违规求助? 8516493
关于积分的说明 18137589
捐赠科研通 6111287
什么是DOI,文献DOI怎么找? 3024671
邀请新用户注册赠送积分活动 2001265
关于科研通互助平台的介绍 1992501