Self-Driven Entropy Aggregation for Byzantine-Robust Heterogeneous Federated Learning
Wenke Huang, Zekun Shi, Mang Ye, He Li, Bo Du
摘要
Federated learning presents massive potential for privacy-friendly collaboration. However, federated learning is deeply threatened by byzantine attacks, where malicious clients deliberately upload crafted vicious updates. While various robust aggregations have been proposed to defend against such attacks, they are subject to certain assumptions: homogeneous private data and related proxy datasets. To address these limitations, we propose Self-Driven Entropy Aggregation (SDEA), which leverages the random public dataset to conduct Byzantine-robust aggregation in heterogeneous federated learning. For Byzantine attackers, we observe that benign ones typically present more confident (sharper) predictions than evils on the public dataset. Thus, we highlight benign clients by introducing learnable aggregation weight to minimize the instanceprediction entropy of the global model on the random public dataset. Besides, with inherent data heterogeneity, we reveal that it brings heterogeneous sharpness. Specifically, clients are optimized under distinct distribution and thus present fruitful predictive preferences. The learnable aggregation weight blindly allocates high attention to limited ones for sharper predictions, resulting in a biased global model. To alleviate this problem, we encourage the global model to offer diverse predictions via batch-prediction entropy maximization and conduct clustering to equally divide honest weights to accommodate different tendencies. This endows SDEA to detect Byzantine attackers in heterogeneous federated learning. Empirical results demonstrate the effectiveness.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper8
- Federated Graph Learning under Domain Shift with Generalizable PrototypesGuancheng Wan, Wenke Huang, Mang YeAAAI 2024 · 被引用 70 次
- Parameter Disparities Dissection for Backdoor Defense in Heterogeneous Federated LearningWenke Huang, Mang Ye, Zekun Shi, Guancheng Wan 等NeurIPS 2024 · 被引用 12 次
- Resource-Constrained Federated Continual Learning: What Does Matter?Yichen Li, Yuying Wang, Jiahua Dong, Haozhao Wang 等NeurIPS 2025 · 被引用 7 次
- FedRGL: Robust Federated Graph Learning under Label NoiseDe Li, Zhou Tan, Qiyu Li, Zeming Gan 等ICML 2026 · 被引用 5 次
- Bant: Byzantine Antidote via Trial Function and Trust ScoresGleb Molodtsov, Daniil Medyakov, Sergey Skorik, Nikolas Khachaturov 等AAAI 2026 · 被引用 4 次
它引用的顶会 Paper31
- Tent: Fully Test-Time Adaptation by Entropy MinimizationDequan Wang, Evan Shelhamer, Shaoteng Liu, Bruno A. Olshausen 等ICLR 2021 · 被引用 1,731 次
- Do We Really Need to Access the Source Data? Source Hypothesis Transfer for Unsupervised Domain AdaptationJian Liang, Dapeng Hu, Jiashi FengICML 2020 · 被引用 1,624 次
- Federated Learning on Non-IID Data Silos: An Experimental StudyQinbin Li, Yiqun Diao, Quan Chen, Bingsheng HeICDE 2022 · 被引用 1,110 次
- Attack of the Tails: Yes, You Really Can Backdoor Federated LearningHongyi Wang, Kartik Sreenivasan, Shashank Rajput, Harit Vishwakarma 等NeurIPS 2020 · 被引用 862 次
- Calibrating Deep Neural Networks using Focal LossJishnu Mukhoti, Viveka Kulharia, Amartya Sanyal, Stuart Golodetz 等NeurIPS 2020 · 被引用 674 次
相关 Paper
- Exploit Gradient Skewness to Circumvent Byzantine Defenses for Federated LearningYuchen Liu, Chen Chen, Lingjuan Lyu, Yaochu Jin 等AAAI 2025 · 被引用 3 次
- Byzantine-Robust Federated Learning with Learnable Aggregation WeightsJavad Parsa, Amir Hossein Daghestani, André M. H. Teixeira, Mikael JohanssonICLR 2026 · 被引用 2 次
- Efficient Federated Learning against Byzantine Attacks and Data Heterogeneity via Aggregating Normalized GradientsShiyuan Zuo, Xingrun Yan, Rongfei Fan, Li Shen 等NeurIPS 2025 · 被引用 8 次
- Byzantine-Robust Learning on Heterogeneous Data via Gradient SplittingYuchen Liu, Chen Chen, Lingjuan Lyu, Fangzhao Wu 等ICML 2023 · 被引用 27 次
- On the Byzantine-Resilience of Distillation-Based Federated LearningChristophe Roux, Max Zimmer, Sebastian PokuttaICLR 2025
