Chameleon: Adapting to Peer Images for Planting Durable Backdoors in Federated Learning

04/25/2023
by   Yanbo Dai, et al.
0

In a federated learning (FL) system, distributed clients upload their local models to a central server to aggregate into a global model. Malicious clients may plant backdoors into the global model through uploading poisoned local models, causing images with specific patterns to be misclassified into some target labels. Backdoors planted by current attacks are not durable, and vanish quickly once the attackers stop model poisoning. In this paper, we investigate the connection between the durability of FL backdoors and the relationships between benign images and poisoned images (i.e., the images whose labels are flipped to the target label during local training). Specifically, benign images with the original and the target labels of the poisoned images are found to have key effects on backdoor durability. Consequently, we propose a novel attack, Chameleon, which utilizes contrastive learning to further amplify such effects towards a more durable backdoor. Extensive experiments demonstrate that Chameleon significantly extends the backdoor lifespan over baselines by 1.2×∼ 4×, for a wide range of image datasets, backdoor types, and model architectures.

READ FULL TEXT

page 6

page 7

page 9

research
06/10/2023

Optimizing the Collaboration Structure in Cross-Silo Federated Learning

In federated learning (FL), multiple clients collaborate to train machin...
research
05/20/2022

FedNoiL: A Simple Two-Level Sampling Method for Federated Learning with Noisy Labels

Federated learning (FL) aims at training a global model on the server si...
research
01/11/2022

RFLBAT: A Robust Federated Learning Algorithm against Backdoor Attack

Federated learning (FL) is a distributed machine learning paradigm where...
research
01/18/2022

Model Transferring Attacks to Backdoor HyperNetwork in Personalized Federated Learning

This paper explores previously unknown backdoor risks in HyperNet-based ...
research
09/11/2023

Advancing Federated Learning in 6G: A Trusted Architecture with Graph-based Analysis

Integrating native AI support into the network architecture is an essent...
research
03/22/2022

Multi-Source Domain Adaptation Based on Federated Knowledge Alignment

Federated Learning (FL) facilitates distributed model learning to protec...
research
12/28/2021

Robust Convergence in Federated Learning through Label-wise Clustering

Non-IID dataset and heterogeneous environment of the local clients are r...

Please sign up or login with your details

Forgot password? Click here to reset