Abstract
Federated Learning (FL) is a distributed Machine Learning (ML) technique that allows model training without sharing data. FL is vulnerable to poisoning attacks where an adversary manipulates the learning process by providing false information to the federation. Ensuring security in FL is vital before using FL in real applications, as the consequences can be adverse. Multi-stage FL is a novel variant of FL that performs intermediate model aggregations, thereby reducing the traffic toward the FL central server. The existing robust aggregation techniques are insufficient in multi-stage FL systems. This paper proposes a novel robust aggregation algorithm against poisoning attacks in a three-layer multi-stage FL system that consists of device, edge, and cloud layers. We evaluate the proposed robust algorithm considering an Augmented Reality (AR) application with different poisoner placements and attack strategies. The evaluation results show that the proposed algorithm can effectively defend against poisoning attacks in three-layer multi-stage FL systems.
| Original language | English |
|---|---|
| Title of host publication | 2024 IEEE 21st Consumer Communications and Networking Conference, CCNC 2024 |
| Publisher | IEEE Institute of Electrical and Electronic Engineers |
| Pages | 956-962 |
| Number of pages | 7 |
| ISBN (Electronic) | 9798350304572 |
| DOIs | |
| Publication status | Published - 2024 |
| MoE publication type | A4 Article in a conference publication |
| Event | 21st IEEE Consumer Communications and Networking Conference, CCNC 2024 - Las Vegas, United States Duration: 6 Jan 2024 → 9 Jan 2024 |
Conference
| Conference | 21st IEEE Consumer Communications and Networking Conference, CCNC 2024 |
|---|---|
| Country/Territory | United States |
| City | Las Vegas |
| Period | 6/01/24 → 9/01/24 |
Keywords
- Augmented Reality
- Federated Learning
- Multi-stage FL
- Poisoning Attacks
Fingerprint
Dive into the research topics of 'Robust Aggregation Technique Against Poisoning Attacks in Multi-Stage Federated Learning Applications'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver