BriefGPT.xyz
Jun, 2022
神经毒素:联邦学习中的持久后门
Neurotoxin: Durable Backdoors in Federated Learning
HTML
PDF
Zhengming Zhang, Ashwinee Panda, Linyue Song, Yaoqing Yang, Michael W. Mahoney...
TL;DR
本文提出一种新的方法Neurotoxin, 用于对联邦学习系统中的后门攻击进行对抗,它可以攻击在训练过程中变化较小的参数,使得攻击可以更加持久。对十个自然语言处理和计算机视觉任务进行了全面评估,发现该方法可以使最新的后门攻击持久性提高两倍。
Abstract
Due to their decentralized nature,
federated learning
(FL) systems have an inherent vulnerability during their training to adversarial
backdoor attacks
. In this type of attack, the goal of the attacker is to use
→