基于多模型的联合学习对抗模型中毒攻击:基于深度学习的 MEC 系统模型选择

Somayeh Kianpisheh, Chafika Benzaid, Tarik Taleb
{"title":"基于多模型的联合学习对抗模型中毒攻击:基于深度学习的 MEC 系统模型选择","authors":"Somayeh Kianpisheh, Chafika Benzaid, Tarik Taleb","doi":"arxiv-2409.08237","DOIUrl":null,"url":null,"abstract":"Federated Learning (FL) enables training of a global model from distributed\ndata, while preserving data privacy. However, the singular-model based\noperation of FL is open with uploading poisoned models compatible with the\nglobal model structure and can be exploited as a vulnerability to conduct model\npoisoning attacks. This paper proposes a multi-model based FL as a proactive\nmechanism to enhance the opportunity of model poisoning attack mitigation. A\nmaster model is trained by a set of slave models. To enhance the opportunity of\nattack mitigation, the structure of client models dynamically change within\nlearning epochs, and the supporter FL protocol is provided. For a MEC system,\nthe model selection problem is modeled as an optimization to minimize loss and\nrecognition time, while meeting a robustness confidence. In adaption with\ndynamic network condition, a deep reinforcement learning based model selection\nis proposed. For a DDoS attack detection scenario, results illustrate a\ncompetitive accuracy gain under poisoning attack with the scenario that the\nsystem is without attack, and also a potential of recognition time improvement.","PeriodicalId":501280,"journal":{"name":"arXiv - CS - Networking and Internet Architecture","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2024-09-12","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Multi-Model based Federated Learning Against Model Poisoning Attack: A Deep Learning Based Model Selection for MEC Systems\",\"authors\":\"Somayeh Kianpisheh, Chafika Benzaid, Tarik Taleb\",\"doi\":\"arxiv-2409.08237\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Federated Learning (FL) enables training of a global model from distributed\\ndata, while preserving data privacy. However, the singular-model based\\noperation of FL is open with uploading poisoned models compatible with the\\nglobal model structure and can be exploited as a vulnerability to conduct model\\npoisoning attacks. This paper proposes a multi-model based FL as a proactive\\nmechanism to enhance the opportunity of model poisoning attack mitigation. A\\nmaster model is trained by a set of slave models. To enhance the opportunity of\\nattack mitigation, the structure of client models dynamically change within\\nlearning epochs, and the supporter FL protocol is provided. For a MEC system,\\nthe model selection problem is modeled as an optimization to minimize loss and\\nrecognition time, while meeting a robustness confidence. In adaption with\\ndynamic network condition, a deep reinforcement learning based model selection\\nis proposed. For a DDoS attack detection scenario, results illustrate a\\ncompetitive accuracy gain under poisoning attack with the scenario that the\\nsystem is without attack, and also a potential of recognition time improvement.\",\"PeriodicalId\":501280,\"journal\":{\"name\":\"arXiv - CS - Networking and Internet Architecture\",\"volume\":null,\"pages\":null},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2024-09-12\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"arXiv - CS - Networking and Internet Architecture\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/arxiv-2409.08237\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"arXiv - CS - Networking and Internet Architecture","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/arxiv-2409.08237","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

联盟学习(FL)可以从分布式数据中训练全局模型,同时保护数据隐私。然而,基于单一模型的联合学习操作可能会上传与全局模型结构兼容的中毒模型,并可能被利用作为进行模型中毒攻击的漏洞。本文提出了一种基于多模型的 FL,作为一种主动机制来提高模型中毒攻击缓解的机会。主模型由一组从属模型训练而成。为了提高缓解攻击的机会,客户端模型的结构在学习周期内动态变化,并提供了支持者 FL 协议。对于 MEC 系统,模型选择问题被建模为一个优化问题,以最小化损失和识别时间,同时满足鲁棒性置信度。在适应动态网络条件时,提出了一种基于深度强化学习的模型选择方法。在 DDoS 攻击检测场景中,结果表明在中毒攻击下,系统的准确率与没有攻击的情况下相比有了竞争性的提高,识别时间也有了潜在的改善。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Multi-Model based Federated Learning Against Model Poisoning Attack: A Deep Learning Based Model Selection for MEC Systems
Federated Learning (FL) enables training of a global model from distributed data, while preserving data privacy. However, the singular-model based operation of FL is open with uploading poisoned models compatible with the global model structure and can be exploited as a vulnerability to conduct model poisoning attacks. This paper proposes a multi-model based FL as a proactive mechanism to enhance the opportunity of model poisoning attack mitigation. A master model is trained by a set of slave models. To enhance the opportunity of attack mitigation, the structure of client models dynamically change within learning epochs, and the supporter FL protocol is provided. For a MEC system, the model selection problem is modeled as an optimization to minimize loss and recognition time, while meeting a robustness confidence. In adaption with dynamic network condition, a deep reinforcement learning based model selection is proposed. For a DDoS attack detection scenario, results illustrate a competitive accuracy gain under poisoning attack with the scenario that the system is without attack, and also a potential of recognition time improvement.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信