Heterogeneity-Oblivious Robust Federated Learning
Weiyao Zhang, Jinyang Li, Qi Song, Miao Wang, Chungang Lin, Haitong Luo, Xuying Meng, Yujun Zhang
摘要
Federated Learning (FL) remains highly vulnerable to poisoning attacks, especially under real-world hyperheterogeneity, where clients differ significantly in data distributions, communication capabilities, and model architectures. Such heterogeneity not only undermines the effectiveness of aggregation strategies but also makes attacks more difficult to detect. Furthermore, high-dimensional models expand the attack surface. To address these challenges, we propose Horus, a heterogeneity-oblivious robust FL framework centered on lowrank adaptations (LoRAs). Rather than aggregating full model parameters, Horus inserts LoRAs into empirically stable layers and aggregates only LoRAs to reduce the attack surface. We uncover a key empirical observation that the input projection (LoRA-A) is markedly more stable than the output projection (LoRA-B) under heterogeneity and poisoning. Leveraging this, we design a Heterogeneity-Oblivious Poisoning Score using the features from LoRA-A to filter poisoned clients. For the remaining benign clients, we propose projection-aware aggregation mechanism to preserve collaborative signals while suppressing drifts, which reweights client updates by consistency with the global directions. Extensive experiments across diverse datasets, model architectures, and attacks demonstrate that Horus consistently outperforms state-of-the-art baselines in both robustness and accuracy.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper10
- LoRA: Low-Rank Adaptation of Large Language ModelsEdward J. Hu, Yelong Shen, Phillip Wallis, Zeyuan Allen-Zhu 等ICLR 2022 · 被引用 18,833 次
- FedALA: Adaptive Local Aggregation for Personalized Federated LearningJianqing Zhang, Yang Hua, Hao Wang, Tao Song 等AAAI 2023 · 被引用 445 次
- FjORD: Fair and Accurate Federated Learning under heterogeneous targets with Ordered DropoutSamuel Horváth, Stefanos Laskaridis, Mário Almeida, Ilias Leontiadis 等NeurIPS 2021 · 被引用 390 次
- FLDetector: Defending Federated Learning Against Model Poisoning Attacks via Detecting Malicious ClientsZaixi Zhang, Xiaoyu Cao, Jinyuan Jia, Neil Zhenqiang GongKDD 2022 · 被引用 293 次
- FedRolex: Model-Heterogeneous Federated Learning with Rolling Sub-Model ExtractionSamiul Alam, Luyang Liu, Ming Yan, Mi ZhangNeurIPS 2022 · 被引用 261 次
相关 Paper
- HeteroFL-LoRA: Federated LoRA Fine-Tuning Across Heterogeneous LFMs via Singular Value CollaborationZhuojia Wu, Qi Zhang, Xuerong Zhao, Duoqian Miao 等KDD 2026
- FedPissa: Towards Federated Personalized Adaptation of Foundation Models via LoRA Subspace MappingWenwen He, Wenke Huang, Yi Liu, Jian Liang 等ICML 2026
- Federated Residual Low-Rank Adaptation of Large Language ModelsYunlu Yan, Chun-Mei Feng, Wangmeng Zuo, Rick Siow Mong Goh 等ICLR 2025
- FedTreeLoRA: Reconciling Statistical and Functional Heterogeneity in Federated LoRA Fine-TuningJieming Bian, Lei Wang, Letian Zhang, Jie XuICML 2026 · 被引用 1 次
- Decoupled Low-Rank Adaptation for Robust Federated Fine-TuningXiuwen Fang, Xuliang Yang, Mang YeICML 2026 · 被引用 9 次
