期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
Iterative and mixed‑spaces image gradient inversion attack in federated learning
1
作者 linwei fang Liming Wang Hongjia Li 《Cybersecurity》 2025年第2期292-305,共14页
As a distributed learning paradigm,federated learning is supposed to protect data privacy without exchanging users’local data.Even so,the gradient inversion attack,in which the adversary can reconstruct the original ... As a distributed learning paradigm,federated learning is supposed to protect data privacy without exchanging users’local data.Even so,the gradient inversion attack,in which the adversary can reconstruct the original data from shared training gradients,has been widely deemed as a severe threat.Nevertheless,most existing researches are confined to impractical assumptions and narrow range of applications.To mitigate these shortcomings,we propose a comprehensive framework for gradient inversion attack,with well-designed algorithms for image and label reconstruction.For image reconstruction,we fully utilize the generative image prior,which derives from wide-used generative models,to improve the reconstructed results,by additional means of iterative optimization on mixed spaces and gradientfree optimizer.For label reconstruction,we design an adaptive recovery algorithm regarding real data distribution,which can adjust previous attacks to more complex scenarios.Moreover,we incorporate a gradient approximation method to efficiently fit our attack for FedAvg scenario.We empirically verify our attack framework using benchmark datasets and ablation studies,considering loose assumptions and complicated circumstances.We hope this work can greatly reveal the necessity of privacy protection in federated learning,while urge more effective and robust defense mechanisms. 展开更多
关键词 Privacy preserving Federated learning Gradient inversion
原文传递
上一页 1 下一页 到第
使用帮助 返回顶部