Distributed Swift and Stealthy Backdoor Attack on Federated Learning

Date
2022-10-01
Language
American English
Embargo Lift Date
Committee Members
Degree
Degree Year
Department
Grantor
Journal Title
Journal ISSN
Volume Title
Found At
IEEE
Can't use the file because of accessibility barriers? Contact us with the title of the item, permanent link, and specifics of your accommodation need.
Abstract

Federated Learning (FL) provides enhanced privacy over traditional centralized learning; unfortunately, it is also as susceptible to backdoor attacks, just like its centralized counterpart. Conventionally, in data poisoning-based backdoor attacks, all the malicious participants overlay the same single trigger pattern on a subset of their private data during local training. The same trigger is used to induce the backdoor in the otherwise benign global model at inference time. Such single trigger attacks can be detected and removed with relative ease as they undermine the distributed nature of FL. In this work, we focus on building an attack scheme where each batch of malicious clients uses sizably discrete local triggers during local training, with the ability to invoke the attack with a single small inference trigger during the global model testing. The larger size of the trigger pattern ensures prolonged attack longevity even after the termination of the attack. We conduct extensive experiments to show that our approach is far faster, stealthier, and more effective than the centralized trigger approach. The stealthiness of our work is explained using the DeepLIFT visual feature interpretation method.

Description
item.page.description.tableofcontents
item.page.relation.haspart
Cite As
Sundar, A. P., & Li, F. (2022). Distributed Swift and Stealthy Backdoor Attack on Federated Learning. The 16th IEEE International Conference on Networking, Architecture, and Storage (NAS’22), 1-8. https://par.nsf.gov/biblio/10358817-distributed-swift-stealthy-backdoor-attack-federated-learning
ISSN
Publisher
Series/Report
Sponsorship
Major
Extent
Identifier
Relation
Journal
16th IEEE International Conference on Networking, Architecture, and Storage (NAS’22)
Source
Author
Alternative Title
Type
Article
Number
Volume
Conference Dates
Conference Host
Conference Location
Conference Name
Conference Panel
Conference Secretariat Location
Version
Author's manuscript
Full Text Available at
This item is under embargo {{howLong}}