CRFL: Certifiably Robust Federated Learning against Backdoor Attacks

06/15/2021
by   Chulin Xie, et al.
2

Federated Learning (FL) as a distributed learning paradigm that aggregates information from diverse clients to train a shared global model, has demonstrated great success. However, malicious clients can perform poisoning attacks and model replacement to introduce backdoors into the trained global model. Although there have been intensive studies designing robust aggregation methods and empirical robust federated training protocols against backdoors, existing approaches lack robustness certification. This paper provides the first general framework, Certifiably Robust Federated Learning (CRFL), to train certifiably robust FL models against backdoors. Our method exploits clipping and smoothing on model parameters to control the global model smoothness, which yields a sample-wise robustness certification on backdoors with limited magnitude. Our certification also specifies the relation to federated learning parameters, such as poisoning ratio on instance level, number of attackers, and training iterations. Practically, we conduct comprehensive experiments across a range of federated datasets, and provide the first benchmark for certified robustness against backdoor attacks in federated learning. Our code is available at https://github.com/AI-secure/CRFL.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
01/14/2023

Poisoning Attacks and Defenses in Federated Learning: A Survey

Federated learning (FL) enables the training of models among distributed...
research
05/21/2023

Confidence-aware Personalized Federated Learning via Variational Expectation Maximization

Federated Learning (FL) is a distributed learning scheme to train a shar...
research
01/28/2023

Does Federated Learning Really Need Backpropagation?

Federated learning (FL) is a general principle for decentralized clients...
research
03/13/2021

Simeon – Secure Federated Machine Learning Through Iterative Filtering

Federated learning enables a global machine learning model to be trained...
research
06/06/2022

Certified Robustness in Federated Learning

Federated learning has recently gained significant attention and popular...
research
06/17/2023

Bkd-FedGNN: A Benchmark for Classification Backdoor Attacks on Federated Graph Neural Network

Federated Graph Neural Network (FedGNN) has recently emerged as a rapidl...
research
01/26/2023

SuperFed: Weight Shared Federated Learning

Federated Learning (FL) is a well-established technique for privacy pres...

Please sign up or login with your details

Forgot password? Click here to reset