Covert Channel Attack to Federated Learning Systems

04/21/2021
by   Gabriele Costa, et al.
0

Federated learning (FL) goes beyond traditional, centralized machine learning by distributing model training among a large collection of edge clients. These clients cooperatively train a global, e.g., cloud-hosted, model without disclosing their local, private training data. The global model is then shared among all the participants which use it for local predictions. In this paper, we put forward a novel attacker model aiming at turning FL systems into covert channels to implement a stealth communication infrastructure. The main intuition is that, during federated training, a malicious sender can poison the global model by submitting purposely crafted examples. Although the effect of the model poisoning is negligible to other participants, and does not alter the overall model performance, it can be observed by a malicious receiver and used to transmit a single bit.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/03/2021

SecFL: Confidential Federated Learning using TEEs

Federated Learning (FL) is an emerging machine learning paradigm that en...
research
11/05/2022

FLock: Defending Malicious Behaviors in Federated Learning with Blockchain

Federated learning (FL) is a promising way to allow multiple data owners...
research
10/28/2022

Federated Learning with Intermediate Representation Regularization

In contrast to centralized model training that involves data collection,...
research
05/25/2022

VeriFi: Towards Verifiable Federated Unlearning

Federated learning (FL) is a collaborative learning paradigm where parti...
research
08/24/2022

PromptFL: Let Federated Participants Cooperatively Learn Prompts Instead of Models – Federated Learning in Age of Foundation Model

Quick global aggregation of effective distributed parameters is crucial ...
research
11/29/2021

Robust Federated Learning for execution time-based device model identification under label-flipping attack

The computing device deployment explosion experienced in recent years, m...
research
11/14/2022

FedTracker: Furnishing Ownership Verification and Traceability for Federated Learning Model

Copyright protection of the Federated Learning (FL) model has become a m...

Please sign up or login with your details

Forgot password? Click here to reset