Dynamic Defense Against Byzantine Poisoning Attacks in Federated Learning

AI-generated keywords: Federated learning Byzantine poisoning attacks Dynamic Defense Against Byzantine Attacks (DDaBA) Adversarial clients Resilient and secure distributed learning

AI-generated Key Points

  • Vulnerability of federated learning models to Byzantine poisoning attacks
  • Proposal of a novel approach called Dynamic Defense Against Byzantine Poisoning Attacks (DDaBA)
  • DDaBA dynamically filters out adversarial clients during the aggregation process in real-time
  • Effectiveness of DDaBA demonstrated through experiments on image datasets like Fed-EMNIST Digits, Fashion MNIST, and CIFAR-10
  • Improvement in global learning model performance by dynamically selecting clients for aggregation
  • Enhanced security and robustness of federated learning systems against malicious attacks
Also access our AI generated: Comprehensive summary, Lay summary, Blog-like article; or ask questions about this paper to our AI assistant.

Authors: Nuria Rodríguez-Barroso, Eugenio Martínez-Cámara, M. Victoria Luzón, Francisco Herrera

Future Generation Computer Systems, 133 (2022), 1-9
10 pages
License: CC BY 4.0

Abstract: Federated learning, as a distributed learning that conducts the training on the local devices without accessing to the training data, is vulnerable to Byzatine poisoning adversarial attacks. We argue that the federated learning model has to avoid those kind of adversarial attacks through filtering out the adversarial clients by means of the federated aggregation operator. We propose a dynamic federated aggregation operator that dynamically discards those adversarial clients and allows to prevent the corruption of the global learning model. We assess it as a defense against adversarial attacks deploying a deep learning classification model in a federated learning setting on the Fed-EMNIST Digits, Fashion MNIST and CIFAR-10 image datasets. The results show that the dynamic selection of the clients to aggregate enhances the performance of the global learning model and discards the adversarial and poor (with low quality models) clients.

Submitted to arXiv on 29 Jul. 2020

Ask questions about this paper to our AI assistant

You can also chat with multiple papers at once here.

AI assistant instructions?

Results of the summarizing process for the arXiv paper: 2007.15030v2

In their paper titled "Dynamic Defense Against Byzantine Poisoning Attacks in Federated Learning," Nuria Rodríguez-Barroso, Eugenio Martínez-Cámara, M. Victoria Luzón, and Francisco Herrera address the vulnerability of federated learning models to . These attacks can compromise the integrity of the global learning model by corrupting it with malicious data from . To mitigate this threat, the authors propose a novel approach called . The key idea behind DDaBA is to dynamically filter out adversarial clients during the aggregation process in federated learning. Traditional federated aggregation operators have been ineffective at preventing such attacks or rely on assumptions about the nature of adversarial clients. In contrast, DDaBA dynamically adjusts its aggregation strategy to discard potentially malicious clients in real-time. To evaluate the effectiveness of DDaBA, the authors conducted experiments using deep learning classification models on popular image datasets like Fed-EMNIST Digits, Fashion MNIST, and CIFAR-10. The results demonstrate that dynamically selecting clients for aggregation significantly improves the performance of the global learning model while effectively excluding adversarial and low-quality clients. Overall, this dynamic defense mechanism offers a promising solution to enhance the security and robustness of federated learning systems against . The findings presented in this study contribute valuable insights towards developing more frameworks in real-world applications.
Created on 17 Dec. 2024

Assess the quality of the AI-generated content by voting

Score: 0

Why do we need votes?

Votes are used to determine whether we need to re-run our summarizing tools. If the count reaches -10, our tools can be restarted.

Similar papers summarized with our AI tools

Navigate through even more similar papers through a

tree representation

Look for similar papers (in beta version)

By clicking on the button above, our algorithm will scan all papers in our database to find the closest based on the contents of the full papers and not just on metadata. Please note that it only works for papers that we have generated summaries for and you can rerun it from time to time to get a more accurate result while our database grows.

Disclaimer: The AI-based summarization tool and virtual assistant provided on this website may not always provide accurate and complete summaries or responses. We encourage you to carefully review and evaluate the generated content to ensure its quality and relevance to your needs.