Over-the-Air Federated Learning with Privacy Protection via Correlated Additive Perturbations

10/05/2022
by   Jialing Liao, et al.
0

In this paper, we consider privacy aspects of wireless federated learning (FL) with Over-the-Air (OtA) transmission of gradient updates from multiple users/agents to an edge server. By exploiting the waveform superposition property of multiple access channels, OtA FL enables the users to transmit their updates simultaneously with linear processing techniques, which improves resource efficiency. However, this setting is vulnerable to privacy leakage since an adversary node can hear directly the uncoded message. Traditional perturbation-based methods provide privacy protection while sacrificing the training accuracy due to the reduced signal-to-noise ratio. In this work, we aim at minimizing privacy leakage to the adversary and the degradation of model accuracy at the edge server at the same time. More explicitly, spatially correlated perturbations are added to the gradient vectors at the users before transmission. Using the zero-sum property of the correlated perturbations, the side effect of the added perturbation on the aggregated gradients at the edge server can be minimized. In the meanwhile, the added perturbation will not be canceled out at the adversary, which prevents privacy leakage. Theoretical analysis of the perturbation covariance matrix, differential privacy, and model convergence is provided, based on which an optimization problem is formulated to jointly design the covariance matrix and the power scaling factor to balance between privacy protection and convergence performance. Simulation results validate the correlated perturbation approach can provide strong defense ability while guaranteeing high learning accuracy.

READ FULL TEXT
research
02/12/2020

Wireless Federated Learning with Local Differential Privacy

In this paper, we study the problem of federated learning (FL) over a wi...
research
05/15/2020

Efficient Federated Learning over Multiple Access Channel with Differential Privacy Constraints

In this paper, the problem of federated learning (FL) over a multiple ac...
research
12/16/2019

On privacy preserving data release of linear dynamic networks

Distributed data sharing in dynamic networks is ubiquitous. It raises th...
research
06/09/2020

Privacy For Free: Wireless Federated Learning Via Uncoded Transmission With Adaptive Power Control

Federated Learning (FL) refers to distributed protocols that avoid direc...
research
11/14/2022

Optimal Privacy Preserving in Wireless Federated Learning System over Mobile Edge Computing

Federated Learning (FL) with quantization and deliberately added noise o...
research
08/25/2022

On Differential Privacy for Federated Learning in Wireless Systems with Multiple Base Stations

In this work, we consider a federated learning model in a wireless syste...

Please sign up or login with your details

Forgot password? Click here to reset