paper-with-me

홈 › Papers

Cutting Through Privacy: A Hyperplane-Based Data Reconstruction Attack in Federated Learning

2025-05-15 · Francesco Diana, André Nusser, Chuan Xu, Giovanni Neglia

Federated Learning (FL) enables collaborative training of machine learning models across distributed clients without sharing raw data, ostensibly preserving data privacy. Nevertheless, recent studies have revealed critical vulnerabilities in FL, showing that a malicious central server can manipulate model updates to reconstruct clients' private training data. Existing data reconstruction attacks have important limitations: they often rely on assumptions about the clients' data distribution or their efficiency significantly degrades when batch sizes exceed just a few tens of samples. In this work, we introduce a novel data reconstruction attack that overcomes these limitations. Our method leverages a new geometric perspective on fully connected layers to craft malicious model parameters, enabling the perfect recovery of arbitrarily large data batches in classification tasks without any prior knowledge of clients' data. Through extensive experiments on both image and tabular datasets, we demonstrate that our attack outperforms existing methods and achieves perfect reconstruction of data batches two orders of magnitude larger than the state of the art.

📄 PDF Abstract BibTeX arXiv:2505.10264

Code (0)

등록된 구현이 없습니다.

Tasks

Federated LearningReconstruction Attack

Similar Papers 제목 키워드 기반

No More Guessing: a Verifiable Gradient Inversion Attack in Federated Learning

2026-04-16 · Francesco Diana, Chuan Xu, André Nusser, Giovanni Neglia arxiv

Gradient inversion attacks threaten client privacy in federated learning by reconstructing training samples from clients' shared gradients. Gradients aggregate contributions from multiple records and existing attacks may…

Federated Learning

Searching for Optimal Per-Coordinate Step-sizes with Multidimensional Backtracking

2023-09-21 · NeurIPS 2023 11

The backtracking line-search is an effective technique to automatically tune the step-size in smooth optimization. It guarantees similar performance to using the theoretically optimal step-size. Many approaches have been…

Multiview Image-Based Localization

2025-03-30 · Cameron Fiore, Hongyi Fan, Benjamin Kimia

The image retrieval (IR) approach to image localization has distinct advantages to the 3D and the deep learning (DNN) approaches: it is seen-agnostic, simpler to implement and use, has no privacy issues, and is computati…

3D Reconstruction3D Scene ReconstructionImage-Based LocalizationImage Retrieval

Least Restrictive Hyperplane Control Barrier Functions

2025-10-21 · Mattias Trende, Petter Ögren arxiv

Control Barrier Functions (CBFs) can provide provable safety guarantees for dynamic systems. However, finding a valid CBF for a system of interest is often non-trivial, especially for systems having low computational res…

Cutting Voxel Projector a New Approach to Construct 3D Cone Beam CT Operator

2021-10-19 · Vojtěch Kulvait, Julian Moosmann, Georg Rose

We introduce a novel class of projectors for 3D cone beam tomographic reconstruction. Analytical formulas are derived to compute the relationship between the volume of a voxel projected onto a detector pixel and its cont…

GPU