Suppr超能文献

用于联邦学习中自适应局部差分隐私的ALDP-FL

ALDP-FL for adaptive local differential privacy in federated learning.

作者信息

Cui Lixin, Wu Xu

机构信息

College of Computers Science and Cyber Security, Chengdu University of Technology, Chengdu, 610059, China.

出版信息

Sci Rep. 2025 Jul 22;15(1):26679. doi: 10.1038/s41598-025-12575-6.

Abstract

Federated learning, as an emerging distributed learning framework, enables model training without compromising user data privacy. However, malicious attackers may still infer sensitive user information by analyzing model updates during the federated learning process. To address this, this paper proposes an Adaptive Localized Differential Privacy Federated Learning (ALDP-FL) method. This approach dynamically sets the clipping threshold for each network layer's updates based on the historical moving average of their [Formula: see text]-norm, thereby injecting adaptive noise into each layer. Additionally, a bounded perturbation mechanism is designed to minimize the impact of the added noise on model accuracy. A privacy analysis of the method is provided. Finally, experiments on the MNIST, Fashion MNIST, and CIFAR-10 datasets demonstrate the effectiveness and practicality of the proposed method. Specifically, ALDP-FL achieves an average improvement of over 10% across all evaluation metrics: Accuracy increases by 10.57%, Precision by 10.64%, Recall by 10.52%, and F1 Score by 10.64%. Regarding the reconstructed images under the iDLG attack, the average improvement rates in MSE and SSIM reach 391.2% and -85.4%, respectively, significantly outperforming all other comparison methods.

摘要

联邦学习作为一种新兴的分布式学习框架,能够在不损害用户数据隐私的情况下进行模型训练。然而,恶意攻击者仍可能通过分析联邦学习过程中的模型更新来推断敏感的用户信息。为解决这一问题,本文提出了一种自适应局部差分隐私联邦学习(ALDP-FL)方法。该方法基于各网络层更新的[公式:见原文]范数的历史移动平均值动态设置每层更新的裁剪阈值,从而在各层注入自适应噪声。此外,还设计了一种有界扰动机制,以尽量减少添加的噪声对模型准确性的影响。提供了该方法的隐私分析。最后,在MNIST、Fashion MNIST和CIFAR-10数据集上的实验证明了所提方法的有效性和实用性。具体而言,ALDP-FL在所有评估指标上平均提高了10%以上:准确率提高了10.57%,精确率提高了10.64%,召回率提高了10.52%,F1分数提高了10.64%。对于iDLG攻击下的重建图像,MSE和SSIM的平均改善率分别达到391.2%和-85.4%,显著优于所有其他比较方法。

https://cdn.ncbi.nlm.nih.gov/pmc/blobs/12a3/12284227/03fde4b9a126/41598_2025_12575_Fig1_HTML.jpg

文献检索

告别复杂PubMed语法,用中文像聊天一样搜索,搜遍4000万医学文献。AI智能推荐,让科研检索更轻松。

立即免费搜索

文件翻译

保留排版,准确专业,支持PDF/Word/PPT等文件格式,支持 12+语言互译。

免费翻译文档

深度研究

AI帮你快速写综述,25分钟生成高质量综述,智能提取关键信息,辅助科研写作。

立即免费体验