Defense Strategy against Byzantine Attacks in Federated Machine Learning: Developments towards Explainability

Nuria Rodriguez-Barroso*, Javier Del Ser*, M. Victoria Luzon, Francisco Herrera*

*Autor correspondiente de este trabajo

Producción científica: Capítulo del libro/informe/acta de congresoContribución a la conferenciarevisión exhaustiva

1 Cita (Scopus)

Resumen

The rise of high-risk AI systems has led to escalating concerns, prompting regulatory efforts such as the recently approved EU AI Act. In this context, the development of responsible AI systems is crucial. To this end, trustworthy AI techniques aim at requirements (including transparency, privacy awareness and fairness) that contribute to the development of responsible, robust and safe AI systems. Among them, Federated Learning (FL) has emerged as a key approach to safeguarding data privacy while enabling the collaborative training of AI models. However, FL is prone to adversarial attacks, particularly byzantine attacks, which aim to modify the behavior of the model. This work addresses this issue by proposing an eXplainable and Impartial Dynamic Defense against Byzantine Attacks (XI-DDaBA). This defense mechanism relies on robust aggregation operators and filtering techniques to mitigate the effects of adversarial attacks in FL, while providing explanations for its decisions and ensuring that clients with poor data quality are not discriminated. Experimental simulations are discussed to assess the performance of XI-DDaBA against other baselines from the literature, and to showcase its provided explanations. Overall, XI-DDaBA aligns with the need for responsible AI systems in high-risk collaborative learning scenarios through the explainable and impartial provision of robustness against attacks.

Idioma originalInglés
Título de la publicación alojada2024 IEEE International Conference on Fuzzy Systems, FUZZ-IEEE 2024 - Proceedings
EditorialInstitute of Electrical and Electronics Engineers Inc.
ISBN (versión digital)9798350319545
DOI
EstadoPublicada - 2024
Evento2024 IEEE International Conference on Fuzzy Systems, FUZZ-IEEE 2024 - Yokohama, Japón
Duración: 30 jun 20245 jul 2024

Serie de la publicación

NombreIEEE International Conference on Fuzzy Systems
ISSN (versión impresa)1098-7584

Conferencia

Conferencia2024 IEEE International Conference on Fuzzy Systems, FUZZ-IEEE 2024
País/TerritorioJapón
CiudadYokohama
Período30/06/245/07/24

Huella

Profundice en los temas de investigación de 'Defense Strategy against Byzantine Attacks in Federated Machine Learning: Developments towards Explainability'. En conjunto forman una huella única.

Citar esto