背景(考古学)
计算机科学
对抗制
数据共享
保密
透视图(图形)
对抗性机器学习
计算机安全
协作学习
信息隐私
人工智能
领域(数学)
数据科学
机器学习
知识管理
数学
病理
纯数学
生物
医学
古生物学
替代医学
作者
Dmitrii Usynin,Alexander Ziller,Marcus R. Makowski,Rickmer Braren,Daniel Rueckert,Ben Glocker,Georgios Kaissis,Jonathan Passerat‐Palmbach
标识
DOI:10.1038/s42256-021-00390-3
摘要
Despite the rapid increase of data available to train machine-learning algorithms in many domains, several applications suffer from a paucity of representative and diverse data. The medical and financial sectors are, for example, constrained by legal, ethical, regulatory and privacy concerns preventing data sharing between institutions. Collaborative learning systems, such as federated learning, are designed to circumvent such restrictions and provide a privacy-preserving alternative by eschewing data sharing and relying instead on the distributed remote execution of algorithms. However, such systems are susceptible to malicious adversarial interference attempting to undermine their utility or divulge confidential information. Here we present an overview and analysis of current adversarial attacks and their mitigations in the context of collaborative machine learning. We discuss the applicability of attack vectors to specific learning contexts and attempt to formulate a generic foundation for adversarial influence and mitigation mechanisms. We moreover show that a number of context-specific learning conditions are exploited in similar fashion across all settings. Lastly, we provide a focused perspective on open challenges and promising areas of future research in the field. When the training data for machine learning are highly personal or sensitive, collaborative approaches can help a collective of stakeholders to train a model together without having to share any data. But there are still risks to the privacy of the data. This Perspective provides an overview of potential attacks on collaborative machine learning and how these threats could be addressed.
科研通智能强力驱动
Strongly Powered by AbleSci AI