Two Models are Better than One: Federated Learning Is Not Private For Google GBoard Next Word Prediction

10/30/2022
by   Mohamed Suliman, et al.
0

In this paper we present new attacks against federated learning when used to train natural language text models. We illustrate the effectiveness of the attacks against the next word prediction model used in Google's GBoard app, a widely used mobile keyboard app that has been an early adopter of federated learning for production use. We demonstrate that the words a user types on their mobile handset, e.g. when sending text messages, can be recovered with high accuracy under a wide range of conditions and that counter-measures such a use of mini-batches and adding local noise are ineffective. We also show that the word order (and so the actual sentences typed) can be reconstructed with high fidelity. This raises obvious privacy concerns, particularly since GBoard is in production use.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
06/11/2019

Federated Learning for Emoji Prediction in a Mobile Keyboard

We show that a word-level recurrent neural network can predict emoji fro...
research
06/12/2022

Neurotoxin: Durable Backdoors in Federated Learning

Due to their decentralized nature, federated learning (FL) systems have ...
research
08/09/2022

Application of federated learning in manufacturing

A vast amount of data is created every minute, both in the private secto...
research
05/17/2022

Recovering Private Text in Federated Learning of Language Models

Federated learning allows distributed users to collaboratively train a m...
research
10/08/2019

Federated Learning of N-gram Language Models

We propose algorithms to train production-quality n-gram language models...
research
02/13/2023

One-Shot Federated Conformal Prediction

In this paper, we introduce a conformal prediction method to construct p...
research
04/29/2022

Backdoor Attacks in Federated Learning by Rare Embeddings and Gradient Ensembling

Recent advances in federated learning have demonstrated its promising ca...

Please sign up or login with your details

Forgot password? Click here to reset