A Privacy-Aware and Incremental Defense Method Against GAN-Based Poisoning Attack
Bibliographic Data
| ID | 22108657 |
|---|---|
| Authors | Feifei Qiao (0000-0001-5556-4063, Tongji University), Zhong Li (0000-0003-1124-5778, Donghua University), Z G Li (0000-0001-9121-9363, Tongji University), Yubo Kong (0000-0002-7098-010X, Tongji University) |
| Year | 2024 |
| Volume | 11 |
| Issue | 2 |
| Pages | 1708-1721 |
| Publication date | 2024-04-01 |
| Peer Reviewed | Yes |
| Open Access | Yes |
| Type | ARTICLE |
| Venue | IEEE Transactions on Computational Social Systems (JOURNAL) |
| Journal identifiers | ISSN: 2329-924X • E-ISSN: 2373-7476 |
| Publisher | Institute of Electrical and Electronics Engineers (IEEE) (PUBLISHER) |
| DOI | 10.1109/tcss.2023.3263241 |
| OpenAlex | W4365790357 |
| Language | EN |
| Citations received | 33 |
| References cited | 36 |
Federated learning is usually utilized as a fraud detection framework in the domain of financial risk management, which promotes the model accuracy without training data exchange. One of the challenges in federated learning is the GAN-based poisoning attack. The GAN-based poisoning attack is a type of intractable poisoning attack that causes global model accuracy degradation and privacy leak. Most of the existing defenses for GAN-based poisoning attack have the three problems: 1) dependence on validation datasets; 2) incompetence of dealing with incremental poisoning attack; and 3) privacy leak. To address the above problems, we present a privacy-aware and incremental defense (PID) method to detect malicious participants and protect privacy. In PID, we design a method to accumulate the offset of model parameters from participants in all current epochs to represent the moving tendency for model parameters. Thus, we can distinguish the adversaries from normal participants based on the accumulations in this incremental poisoning attack. We also use multiple trust domains to reduce the rate of misjudging benign participants as adversaries. Moreover, a differentiated differential privacy is utilized before the global model sending to protect the privacy of participants’ training datasets in PID. The experiments conducted on two real-world datasets under financial fraud detection scenario demonstrate that the PID reduces the fallout of adversaries detection (the rate of misjudging benign participants as adversaries) by at least 51.1% and improve the speed of detecting all malicious participants by at least 33.4% compared with two popular defense methods. Besides, the privacy preserving of PID is also effective
Computer security · Privacy Protection · Advanced Neural Network Applications · Adversarial Robustness in Machine Learning · Computer Science · Privacy-Preserving Technologies in Data
A social worker first and foremost”
Intervention, net neutrality and European Union media policy
Power and innovation
Ethical issues in image-based research
Applying Politeness Research
Dragon Dance or Panda Trot? China’s Position towards the Iranian Nuclear Programme and Its Perception of EU Unilateral Iran Sanctions
Picturing Resistance and Resilience
Minority languages in the linguistic landscape
The rise of speculative devices
The British Army and Wireless Communication, 1896–1918
Inter-service Debate and the Origins of Strategic Culture
Christine Brooke-Rose
The 'Life-Blood' of Command? The British Army, Communications and the Telephone, 1877-1914
The Heritage of 30 Years of Mobile Communications in the UK
Polaroid, Aperture and Ansel Adams
Here[…] There
Spaces of Preparation
Geisha of a different kind
Proxy Models of Legal Need
Social media platform-oriented topic mining and information security analysis by big data and deep convolutional neural network
The Origins of Soe in France
The Routledge Handbook of Elections, Voting Behaviorand Public Opinion
Walking Through Social Research
The Routledge Handbook of Contemporary Italy
Post-Conflict Literature
Media Production, Delivery and Interaction for Platform Independent Systems
Technology and Intimacy: Choice or Coercion
Excavating ‘Hell Upon Earth’ Towards a Research Framework for the Archaeological Investigation of Workers’ Housing
Architecture, Participation and Society
Feeding Ecology of Black-headed Uacaris (Cacajao melanocephalus melanocephalus) in Pico da Neblina National Park, Brazil
The Manchester Rambler
Love, desire, and problematic behaviors
Graph Contrastive Learning With Negative Propagation for Recommendation
Algorithm as 136
DBSCAN Revisited, Revisited
Clustering by Passing Messages Between Data Points
Improved TrAdaBoost and its Application to Transaction Fraud Detection
Deep Representation Learning With Full Center Loss for Credit Card Fraud Detection
Time-Aware Attention-Based Gated Network for Credit Card Fraud Detection by Extracting Transactional Behaviors
| Unique citing works | 33 |
|---|---|
| Citations per year | 1,22 |
| Citation span | 1999 - 2024 (26) |
| Citation velocity | recent |
| Highly cited | No |
| Citation types | Neutral: 12 |