A GAN-based data poisoning framework against anomaly detection in vertical federated learning
In vertical federated learning (VFL), commercial entities collaboratively train a model while preserving data privacy. However, a malicious participant's poisoning attack may degrade the performance of this collaborative model. The main challenge in achieving the poisoning attack is the absence of access to the server-side top model, leaving the malicious participant without a clear target model. To address this challenge, we introduce an innovative end-to-end poisoning framework P-GAN. Specifically, the malicious participant initially employs semi-supervised learning to train a surrogate target model. Subsequently, this participant employs a GAN-based method to produce adversarial perturbations to degrade the surrogate target model's performance. Finally, the generator is obtained and tailored for VFL poisoning. Besides, we develop an anomaly detection algorithm based on a deep auto-encoder (DAE), offering a robust defense mechanism to VFL scenarios. Through extensive experiments, we evaluate the efficacy of P-GAN and DAE, and further analyze the factors that influence their performance.
Code (0)
등록된 구현이 없습니다.
Tasks
Anomaly DetectionData PoisoningFederated LearningVertical Federated LearningSimilar Papers 제목 키워드 기반
Defending Against Adversarial Denial-of-Service Data Poisoning Attacks
Data poisoning is one of the most relevant security threats against machine learning and data-driven technologies. Since many applications rely on untrusted training data, an attacker can easily craft malicious samples a…
Anomaly DetectionBIG-bench Machine LearningClusteringData PoisoningUsing Anomaly Detection to Detect Poisoning Attacks in Federated Learning Applications
Adversarial attacks such as poisoning attacks have attracted the attention of many machine learning researchers. Traditionally, poisoning attacks attempt to inject adversarial training data in order to manipulate the tra…
Activity RecognitionAnomaly DetectionData PoisoningECG Classification+32DSig-Detect: a semi-supervised framework for anomaly detection on image data using 2D-signatures
The rapid advancement of machine learning technologies raises questions about the security of machine learning models, with respect to both training-time (poisoning) and test-time (evasion, impersonation, and inversion) …
Anomaly DetectionDual Defense: Enhancing Privacy and Mitigating Poisoning Attacks in Federated Learning
Federated learning (FL) is inherently susceptible to privacy breaches and poisoning attacks. To tackle these challenges, researchers have separately devised secure aggregation mechanisms to protect data privacy and robus…
Anomaly DetectionFederated LearningModel PoisoningGFCL: A GRU-based Federated Continual Learning Framework against Data Poisoning Attacks in IoV
Integration of machine learning (ML) in 5G-based Internet of Vehicles (IoV) networks has enabled intelligent transportation and smart traffic management. Nonetheless, the security against adversarial poisoning attacks is…
Anomaly DetectionContinual LearningData PoisoningDecision Making+4