Low Dimensional Secure Federated Learning Framework Against Poisoning Attacks

Eda Sena Erdol,Beste Ustubioglu,Hakan Erdol,Guzin Ulutas
DOI: https://doi.org/10.1016/j.future.2024.04.017
IF: 7.307
2024-04-21
Future Generation Computer Systems
Abstract:Federated learning (FL) is a type of distributed learning that can perform model training without exposing end users' data from end-user devices to increase security. Although it is one step ahead of other learning approaches thanks to this feature, studies have also proven that malicious users can reduce the success of the FL model. In this study, it is proven that the accuracy of the FL model is deteriorated by applying poisoning attack. We propose a defence strategy that can help identify harmful participants in FL using size reduction algorithms. Then, we create the Low Dimensional Secure Federated Learning (LD-SFL) framework with the OC-SVM method to eliminate the identified malicious users. The superiority of our proposed method has been proven against state-of-the-art methods by experimental results on three different datasets that the proposed framework is a robust defence mechanism.
computer science, theory & methods
What problem does this paper attempt to address?