ALGANs: Enhancing membership inference attacks in federated learning with GANs and active learning

Yuanyuan Xie, Bing Chen, Jiale Zhang, Wenjuan Li
{"title":"ALGANs: Enhancing membership inference attacks in federated learning with GANs and active learning","authors":"Yuanyuan Xie, Bing Chen, Jiale Zhang, Wenjuan Li","doi":"10.1109/ISPCE-ASIA57917.2022.9971068","DOIUrl":null,"url":null,"abstract":"Federated learning has received a lot of attention in recent years due to its privacy protection features. However, federated learning is susceptible to various inference attacks. Membership inference attack aims to determine whether the target data is a member or non-member of the target federated learning model, which poses a serious threat to the privacy of the training data set. Membership inference method in federated learning is dissatisfied due to a lack of attack data. Recent work shows that generative adversarial networks(GANs) can effectively enrich attack data. However, data generated by GANs lacks labels. Previous work labels data by inputting it to the target classifier model, which may be imprecise when the target model outputs ambiguous results. In this paper, to overcome the lack of attack data and the lack of labels for GANs, we propose ALGANs. ALGANs increases data diversity using GANs while applies active learning to label data generated by GANs. Membership inference attack enhanced by ALGANs has a high attack accuracy due to applying active learning to label data and extensive experimental results prove our point. We performed experiments to show that ALGAN makes membership inference attacks more threatening in federated learning.","PeriodicalId":197173,"journal":{"name":"2022 IEEE International Symposium on Product Compliance Engineering - Asia (ISPCE-ASIA)","volume":"31 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-04","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE International Symposium on Product Compliance Engineering - Asia (ISPCE-ASIA)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISPCE-ASIA57917.2022.9971068","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Federated learning has received a lot of attention in recent years due to its privacy protection features. However, federated learning is susceptible to various inference attacks. Membership inference attack aims to determine whether the target data is a member or non-member of the target federated learning model, which poses a serious threat to the privacy of the training data set. Membership inference method in federated learning is dissatisfied due to a lack of attack data. Recent work shows that generative adversarial networks(GANs) can effectively enrich attack data. However, data generated by GANs lacks labels. Previous work labels data by inputting it to the target classifier model, which may be imprecise when the target model outputs ambiguous results. In this paper, to overcome the lack of attack data and the lack of labels for GANs, we propose ALGANs. ALGANs increases data diversity using GANs while applies active learning to label data generated by GANs. Membership inference attack enhanced by ALGANs has a high attack accuracy due to applying active learning to label data and extensive experimental results prove our point. We performed experiments to show that ALGAN makes membership inference attacks more threatening in federated learning.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
ALGANs:利用gan和主动学习增强联邦学习中的隶属推理攻击
近年来,由于其隐私保护特性,联邦学习受到了广泛关注。然而,联邦学习容易受到各种推理攻击。隶属推理攻击的目的是确定目标数据是目标联邦学习模型的成员还是非成员,这对训练数据集的隐私性构成了严重威胁。由于缺乏攻击数据,联邦学习中的隶属推理方法存在不足。最近的研究表明,生成对抗网络(GANs)可以有效地丰富攻击数据。然而,gan生成的数据缺乏标签。以前的工作通过将数据输入到目标分类器模型来标记数据,当目标模型输出不明确的结果时,这可能是不精确的。在本文中,为了克服gan缺乏攻击数据和缺乏标签的问题,我们提出了ALGANs。ALGANs使用gan增加数据多样性,同时将主动学习应用于gan生成的标签数据。由于将主动学习应用到标签数据中,ALGANs增强的隶属度推理攻击具有很高的攻击准确率,大量的实验结果证明了我们的观点。实验表明,ALGAN使隶属推理攻击在联邦学习中更具威胁性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
ECG Dynamical System Identification Based on Multi-scale Wavelet Neural Networks A 8pW Noise Interference-Free Dual-Output Voltage Reference for Implantable Medical Devices Moving Average-Based Performance Enhancement of Sample Convolution and Interactive Learning for Short-Term Load Forecasting Condition Number-based Evolving ESN ALGANs: Enhancing membership inference attacks in federated learning with GANs and active learning
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1