跳到主要导航 跳到搜索 跳到主要内容

ROBY: A Byzantine-Robust and Privacy-Preserving Serverless Federated Learning Framework

  • Xiangyun Tang
  • , Minyang Li
  • , Meng Shen*
  • , Jiawen Kang
  • , Liehuang Zhu
  • , Zhiquan Liu
  • , Guomin Yang
  • , Dusit Niyato
  • , Robert H. Deng
  • *此作品的通讯作者
  • Minzu University of China
  • Beijing Institute of Technology
  • Guangdong University of Technology
  • Jinan University
  • Singapore Management University
  • Nanyang Technological University

科研成果: 期刊稿件文章同行评审

摘要

Federated Learning (FL) allows multiple data owners to jointly train machine learning models by sharing local models instead of raw private data, alleviating data privacy concerns. However, as the local computation of data owners is unpredictable, it increases its vulnerability to Byzantine attacks, where compromised data owners submit abnormal local models that can severely degrade global model accuracy. Existing Byzantine-robust FL methods depend on a semi-honest server executing predefined Byzantine-robust aggregation rules (ByRules) to filter out abnormal local models, but these methods fail when the server is compromised. Although recent serverless Byzantine-robust FL approaches mitigate the risk of a compromised server, they suffer from challenges in achieving consensus on ByRules and impose a heavy burden on privacy protection. In this paper, we propose ROBY, a novel serverless FL framework that extends existing ByRules to a decentralized setting, effectively defending against Byzantine attacks and ensuring privacy protection for local models. ROBY introduces a shared, dynamically updated consensus dataset that serves as a reliable benchmark for applying ByRules and enabling efficient consensus on ByRules among decentralized data owners. Moreover, we design a dual-layer privacy shielding strategy in ROBY to protect local model privacy without sacrificing global model accuracy or incurring extra computational and communication overhead. Extensive evaluations demonstrate that ROBY substantially enhances both Byzantine robustness and privacy protection compared to server-based FL methods.

源语言英语
页(从-至)7824-7838
页数15
期刊IEEE Transactions on Information Forensics and Security
20
DOI
出版状态已出版 - 2025
已对外发布

学术指纹

探究 'ROBY: A Byzantine-Robust and Privacy-Preserving Serverless Federated Learning Framework' 的科研主题。它们共同构成独一无二的学术指纹。

引用此