Attack and Defense Methods for Graph Vertical Federation Learning

Xinyi Xie, Haibin Zheng, Hu Li, Ling Pang, Jinyin Chen
{"title":"Attack and Defense Methods for Graph Vertical Federation Learning","authors":"Xinyi Xie, Haibin Zheng, Hu Li, Ling Pang, Jinyin Chen","doi":"10.1145/3569966.3570022","DOIUrl":null,"url":null,"abstract":"To further protect citizens' privacy and national data security, graph federation learning has been widely used and rapidly developed. However, with the deployment and landing of graph federation learning tasks, the security issues involved are gradually exposed. To deeply study the application security issues of graph federation learning, this paper proposes an attack method and privacy protection defense method for graph data in the framework of vertical federation learning. The research revolves around the attack method. First, noise is randomly generated, combined with the attacker's embedding features, and fed into the server model, and the calculated results are compared with the real values to obtain the loss values. Then the attacker's attack model is updated to generate a new inference of the attacked embedding. The experiments conducted on two real-world datasets both obtained MSE metrics below 1, which fully illustrates the effectiveness of the attack method. Further research is conducted around the defense method, which uses a computed differential noise added to the uploaded embedding information to achieve the defense against privacy theft. In the experiments, the related attack metrics are significantly reduced with almost no impact on the main task performance.","PeriodicalId":145580,"journal":{"name":"Proceedings of the 5th International Conference on Computer Science and Software Engineering","volume":"18 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 5th International Conference on Computer Science and Software Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3569966.3570022","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

To further protect citizens' privacy and national data security, graph federation learning has been widely used and rapidly developed. However, with the deployment and landing of graph federation learning tasks, the security issues involved are gradually exposed. To deeply study the application security issues of graph federation learning, this paper proposes an attack method and privacy protection defense method for graph data in the framework of vertical federation learning. The research revolves around the attack method. First, noise is randomly generated, combined with the attacker's embedding features, and fed into the server model, and the calculated results are compared with the real values to obtain the loss values. Then the attacker's attack model is updated to generate a new inference of the attacked embedding. The experiments conducted on two real-world datasets both obtained MSE metrics below 1, which fully illustrates the effectiveness of the attack method. Further research is conducted around the defense method, which uses a computed differential noise added to the uploaded embedding information to achieve the defense against privacy theft. In the experiments, the related attack metrics are significantly reduced with almost no impact on the main task performance.
查看原文
分享 分享
微信好友 朋友圈 QQ好友 复制链接
本刊更多论文
图垂直联合学习的攻防方法
为了进一步保护公民隐私和国家数据安全,图联学习得到了广泛的应用和迅速的发展。然而,随着图联邦学习任务的部署和落地,所涉及的安全问题也逐渐暴露出来。为了深入研究图联合学习的应用安全问题,本文提出了一种垂直联合学习框架下图数据的攻击方法和隐私保护防御方法。研究围绕攻击方法展开。首先,随机产生噪声,结合攻击者的嵌入特征,输入到服务器模型中,将计算结果与实际值进行比较,得到损失值。然后更新攻击者的攻击模型,生成新的被攻击嵌入推理。在两个真实数据集上进行的实验均得到了小于1的MSE指标,充分说明了该攻击方法的有效性。针对该防御方法进行了进一步的研究,该防御方法是在上传的嵌入信息中加入计算差分噪声来实现对隐私盗窃的防御。在实验中,相关攻击指标显著降低,对主任务性能几乎没有影响。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 去求助
来源期刊
自引率
0.00%
发文量
0
期刊最新文献
Accurate and Time-saving Deepfake Detection in Multi-face Scenarios Using Combined Features The Exponential Dynamic Analysis of Network Attention Based on Big Data Research on Data Governance and Data Migration based on Oracle Database Appliance in campus Research on Conformance Engineering process of Airborne Software quality Assurance in Civil Aviation Extending Take-Grant Model for More Flexible Privilege Propagation
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
已复制链接
已复制链接
快去分享给好友吧!
我知道了
×
扫码分享
扫码分享
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1