CalFAT: Calibrated Federated Adversarial Training with Label Skewness
Chen Chen, Yuchen Liu, Xingjun Ma, Lingjuan Lyu
Abstract
Recent studies have shown that, like traditional machine learning, federated learning (FL) is also vulnerable to adversarial attacks. To improve the adversarial robustness of FL, federated adversarial training (FAT) methods have been proposed to apply adversarial training locally before global aggregation. Although these methods demonstrate promising results on independent identically distributed (IID) data, they suffer from training instability on non-IID data with label skewness, resulting in degraded natural accuracy. This tends to hinder the application of FAT in real-world applications where the label distribution across the clients is often skewed. In this paper, we study the problem of FAT under label skewness, and reveal one root cause of the training instability and natural accuracy degradation issues: skewed labels lead to non-identical class probabilities and heterogeneous local models. We then propose a Calibrated FAT (CalFAT) approach to tackle the instability issue by calibrating the logits adaptively to balance the classes. We show both theoretically and empirically that the optimization of CalFAT leads to homogeneous local models across the clients and better convergence points. Code is available at GitHub.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext c5d241ce-ebef-4204-b222-1b760efb25edCited by top-tier papers10
- Federated Learning from Pre-Trained Models: A Contrastive Learning ApproachYue Tan, Guodong Long, Jie Ma, Lu Liu et al.NeurIPS 2022 · 316 citations
- FRAug: Tackling Federated Learning with Non-IID Features via Representation AugmentationHaokun Chen, Ahmed Frikha, Denis Krompass, Jindong Gu et al.ICCV 2023 · 44 citations
- Is Heterogeneity Notorious? Taming Heterogeneity to Handle Test-Time Shift in Federated LearningYue Tan, Chen Chen, Weiming Zhuang, Xin Dong et al.NeurIPS 2023 · 44 citations
- Federated Robustness Propagation: Sharing Adversarial Robustness in Heterogeneous Federated LearningJunyuan Hong, Haotao Wang, Zhangyang Wang, Jiayu ZhouAAAI 2023 · 29 citations
- Byzantine-Robust Learning on Heterogeneous Data via Gradient SplittingYuchen Liu, Chen Chen, Lingjuan Lyu, Fangzhao Wu et al.ICML 2023 · 27 citations
Builds on16
- Towards Evaluating the Robustness of Neural NetworksNicholas Carlini, David A. WagnerS&P 2017 · 9,786 citations
- SCAFFOLD: Stochastic Controlled Averaging for Federated LearningSai Praneeth Karimireddy, Satyen Kale, Mehryar Mohri, Sashank J. Reddi et al.ICML 2020 · 3,875 citations
- Reliable evaluation of adversarial robustness with an ensemble of diverse parameter-free attacksFrancesco Croce, Matthias HeinICML 2020 · 2,337 citations
- Fast is better than free: Revisiting adversarial trainingEric Wong, Leslie Rice, J. Zico KolterICLR 2020 · 1,352 citations
- Long-tail learning via logit adjustmentAditya Krishna Menon, Sadeep Jayasumana, Ankit Singh Rawat, Himanshu Jain et al.ICLR 2021 · 937 citations
Related papers
- Federated Learning with Label Distribution Skew via Logits CalibrationJie Zhang, Zhiqi Li, Bo Li, Jianghe Xu et al.ICML 2022 · 221 citations
- FedCART: Tackling Long-Tailed Distributions in Federated Adversarial Training via Classifier RefinementYuchen Qin, Yizhi Zhou, Junxiao Wang, Xin Xie et al.CVPR 2026
- Combating Exacerbated Heterogeneity for Robust Models in Federated LearningJianing Zhu, Jiangchao Yao, Tongliang Liu, Quanming Yao et al.ICLR 2023 · 2 citations
- Delving into the Adversarial Robustness of Federated LearningJie Zhang, Bo Li, Chen Chen, Lingjuan Lyu et al.AAAI 2023 · 62 citations
- Federated Adversarial Learning: A Framework with Convergence AnalysisXiaoxiao Li, Zhao Song, Jiaming YangICML 2023 · 36 citations
