Data Poisoning Attacks on Federated Machine Learning

04/19/2020
by   Gan Sun, et al.
0

Federated machine learning which enables resource constrained node devices (e.g., mobile phones and IoT devices) to learn a shared model while keeping the training data local, can provide privacy, security and economic benefits by designing an effective communication protocol. However, the communication protocol amongst different nodes could be exploited by attackers to launch data poisoning attacks, which has been demonstrated as a big threat to most machine learning models. In this paper, we attempt to explore the vulnerability of federated machine learning. More specifically, we focus on attacking a federated multi-task learning framework, which is a federated learning framework via adopting a general multi-task learning framework to handle statistical challenges. We formulate the problem of computing optimal poisoning attacks on federated multi-task learning as a bilevel program that is adaptive to arbitrary choice of target nodes and source attacking nodes. Then we propose a novel systems-aware optimization method, ATTack on Federated Learning (AT2FL), which is efficiency to derive the implicit gradients for poisoned data, and further compute optimal attack strategies in the federated machine learning. Our work is an earlier study that considers issues of data poisoning attack for federated learning. To the end, experimental results on real-world datasets show that federated multi-task learning model is very sensitive to poisoning attacks, when the attackers either directly poison the target nodes or indirectly poison the related nodes by exploiting the communication protocol.

READ FULL TEXT

page 1

page 5

page 6

research
05/30/2017

Federated Multi-Task Learning

Federated learning poses new statistical and systems challenges in train...
research
06/14/2019

Variational Federated Multi-Task Learning

In classical federated learning a central server coordinates the trainin...
research
06/01/2023

RHFedMTL: Resource-Aware Hierarchical Federated Multi-Task Learning

The rapid development of artificial intelligence (AI) over massive appli...
research
09/15/2023

XFedHunter: An Explainable Federated Learning Framework for Advanced Persistent Threat Detection in SDN

Advanced Persistent Threat (APT) attacks are highly sophisticated and em...
research
06/04/2021

SpreadGNN: Serverless Multi-task Federated Learning for Graph Neural Networks

Graph Neural Networks (GNNs) are the first choice methods for graph mach...
research
12/08/2020

Federated Multi-Task Learning for Competing Constraints

In addition to accuracy, fairness and robustness are two critical concer...
research
11/07/2022

Resilience of Wireless Ad Hoc Federated Learning against Model Poisoning Attacks

Wireless ad hoc federated learning (WAFL) is a fully decentralized colla...

Please sign up or login with your details

Forgot password? Click here to reset