Lune

ICML2025Top-tier venue

Towards Trustworthy Federated Learning with Untrusted Participants

Youssef Allouah, Rachid Guerraoui, John Stephan

2025Year
2Top-tier citations

Abstract

Resilience against malicious participants and data privacy are essential for trustworthy federated learning, yet achieving both with good utility typically requires the strong assumption of a trusted central server. This paper shows that a significantly weaker assumption suffices: each pair of participants shares a randomness seed unknown to others. In a setting where malicious participants may collude with an untrusted server, we propose CAFCOR, an algorithm that integrates robust gradient aggregation with correlated noise injection, using shared randomness between participants. We prove that CAFCOR achieves strong privacyutility trade-offs, significantly outperforming local differential privacy (DP) methods, which do not make any trust assumption, while approaching central DP utility, where the server is fully trusted. Empirical results on standard benchmarks validate CAFCOR's practicality, showing that privacy and robustness can coexist in distributed systems without sacrificing utility or trusting the server. Assumption 2.2 (Bounded variance). There exists σ > 0 such that for each honest worker w i , i ∈ H, and all θ Assumption 2.3 (Bounded gradients). There exists C > 0 such that ∀θ ∈ R d , i ∈ H, and x ∈ D i , ∥∇ℓ(θ; x)∥ ≤ C.

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

lune papers fulltext 2d04a1f1-553e-445c-b484-bccea81ee048

Cited by top-tier papers2

Ask how each one uses it

Builds on19

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines