Skip to main navigation Skip to search Skip to main content

Robust Federated Learning Against Backdoor Attackers

Research output: Contribution to journalArticlepeer-review

Abstract

Federated Learning is a Privacy-Preserving Alter-Native for Distributed Learning with No Involvement of Data Transfer. as the Server Does Not Have Any Control on Clients' Actions, Some Adversaries May Participate in Learning to Introduce Corruption into the Underlying Model. Backdoor Attacker is One Such Adversary Who Injects a Trigger Pattern into the Data to Manipulate the Model Outcomes on a Specific Sub-Task. This Work Aims to Identify Backdoor Attackers and to Mitigate their Effects by Isolating their Weight Updates. Leveraging the Correlation between Clients' Gradients, We Propose Two Graph Theoretic Algorithms to Separate Out Attackers from the Benign Clients. under a Classification Task, the Experimental Results Show that Our Algorithms Are Effective and Robust to the Attackers Who Add Backdoor Trigger Patterns at Different Location in Targeted Images. the Results Also Evident that Our Algorithms Are Superior Than Existing Methods Especially When Numbers of Attackers Are More Than the Normal Clients.

Keywords

  • Federated learning
  • backdoor
  • robustness
  • tar-geted attackers

Disciplines

  • Computer Sciences

Fingerprint

Dive into the research topics of 'Robust Federated Learning Against Backdoor Attackers'. Together they form a unique fingerprint.

Cite this