Heterogeneity-Oblivious Robust Federated Learning
Weiyao Zhang, Jinyang Li, Qi Song, Miao Wang, Chungang Lin, Haitong Luo, Xuying Meng, Yujun Zhang
Abstract
Federated Learning (FL) remains highly vulnerable to poisoning attacks, especially under real-world hyperheterogeneity, where clients differ significantly in data distributions, communication capabilities, and model architectures. Such heterogeneity not only undermines the effectiveness of aggregation strategies but also makes attacks more difficult to detect. Furthermore, high-dimensional models expand the attack surface. To address these challenges, we propose Horus, a heterogeneity-oblivious robust FL framework centered on lowrank adaptations (LoRAs). Rather than aggregating full model parameters, Horus inserts LoRAs into empirically stable layers and aggregates only LoRAs to reduce the attack surface. We uncover a key empirical observation that the input projection (LoRA-A) is markedly more stable than the output projection (LoRA-B) under heterogeneity and poisoning. Leveraging this, we design a Heterogeneity-Oblivious Poisoning Score using the features from LoRA-A to filter poisoned clients. For the remaining benign clients, we propose projection-aware aggregation mechanism to preserve collaborative signals while suppressing drifts, which reweights client updates by consistency with the global directions. Extensive experiments across diverse datasets, model architectures, and attacks demonstrate that Horus consistently outperforms state-of-the-art baselines in both robustness and accuracy.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext dafa75e8-6b40-48f6-8f8a-d3334e937c5fBuilds on10
- LoRA: Low-Rank Adaptation of Large Language ModelsEdward J. Hu, Yelong Shen, Phillip Wallis, Zeyuan Allen-Zhu et al.ICLR 2022 · 18,833 citations
- FedALA: Adaptive Local Aggregation for Personalized Federated LearningJianqing Zhang, Yang Hua, Hao Wang, Tao Song et al.AAAI 2023 · 445 citations
- FjORD: Fair and Accurate Federated Learning under heterogeneous targets with Ordered DropoutSamuel Horváth, Stefanos Laskaridis, Mário Almeida, Ilias Leontiadis et al.NeurIPS 2021 · 390 citations
- FLDetector: Defending Federated Learning Against Model Poisoning Attacks via Detecting Malicious ClientsZaixi Zhang, Xiaoyu Cao, Jinyuan Jia, Neil Zhenqiang GongKDD 2022 · 293 citations
- FedRolex: Model-Heterogeneous Federated Learning with Rolling Sub-Model ExtractionSamiul Alam, Luyang Liu, Ming Yan, Mi ZhangNeurIPS 2022 · 261 citations
Related papers
- HeteroFL-LoRA: Federated LoRA Fine-Tuning Across Heterogeneous LFMs via Singular Value CollaborationZhuojia Wu, Qi Zhang, Xuerong Zhao, Duoqian Miao et al.KDD 2026
- FedPissa: Towards Federated Personalized Adaptation of Foundation Models via LoRA Subspace MappingWenwen He, Wenke Huang, Yi Liu, Jian Liang et al.ICML 2026
- Federated Residual Low-Rank Adaptation of Large Language ModelsYunlu Yan, Chun-Mei Feng, Wangmeng Zuo, Rick Siow Mong Goh et al.ICLR 2025
- FedTreeLoRA: Reconciling Statistical and Functional Heterogeneity in Federated LoRA Fine-TuningJieming Bian, Lei Wang, Letian Zhang, Jie XuICML 2026 · 1 citation
- Decoupled Low-Rank Adaptation for Robust Federated Fine-TuningXiuwen Fang, Xuliang Yang, Mang YeICML 2026 · 9 citations
