Survey on Private Model Publishing of Federated Learning
DOI:
CSTR:
Author:
Affiliation:

1.State Grid Key Laboratory of Information &2.Network Security, Global Energy Interconnection Research Institute Nanjing Branch;3.Nanjing University

Clc Number:

Fund Project:

This work is supported by the science and technology project of State Grid Corporation of China:”Research on Power Data Security Collaboration Technology Based on Federated Learning”(Grand No. 5700-202190184A-0-0-00)

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
  • |
  • Materials
  • |
  • Comments
    Abstract:

    Federated learning is a kind of distributed machine learning technology that ensures that local data is not compromised when training with big data for machine learning models. However, a series of attacks shows that the adversary can steal private information from machine learning model parameters even if local data is inaccessible. Thus, from the intermediate model parameters transmission between the participants and the aggregator in the training phase to the finally released aggregated model, there are many privacy threats during the model release process of federated learning. As a result, many privacy-preserving federated learning approaches have emerged, primarily based on cryptography and differential privacy technology. This paper surveys the various privacy threats and adversary models that may appear when we publish local models and the aggregated model of federated learning. Furthermore, we systematically summarize the related defense technologies and research results. Additionally, we also look forward to the development of privacy-preserving federated learning.

    Reference
    Related
    Cited by
Get Citation
Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:October 20,2021
  • Revised:October 28,2021
  • Adopted:October 28,2021
  • Online:
  • Published:
Article QR Code

Address:No. 219, Ningliu Road, Nanjing, Jiangsu Province

Postcode:210044

Phone:025-58731025