lockdown
Lockdown: Backdoor Defense for Federated Learning with Isolated Subspace Training
Federated learning (FL) is vulnerable to backdoor attacks due to its distributed computing nature. Existing defense solution usually requires larger amount of computation in either the training or testing phase, which limits their practicality in the resource-constrain scenarios. A more practical defense, i.e., neural network (NN) pruning based defense has been proposed in centralized backdoor setting. However, our empirical study shows that traditional pruning-based solution suffers \textit{poison-coupling} effect in FL, which significantly degrades the defense performance.This paper presents Lockdown, an isolated subspace training method to mitigate the poison-coupling effect. Lockdown follows three key procedures.
- Europe > United Kingdom > England > Oxfordshire > Oxford (0.04)
- North America > United States > Virginia (0.04)
- Europe > United Kingdom > England > Cambridgeshire > Cambridge (0.04)
- Europe > Denmark > Capital Region > Copenhagen (0.04)
- Health & Medicine (1.00)
- Banking & Finance > Economy (1.00)
- Government (0.68)
Appendix A: Related Literature
Appendix for "When and How to Lift the Lockdown? A tabulated comparison between our model and existing ones is laid out in Table A1.Approach Training Approach Modeling Scope Policy Effects Model Uncertainty Compartmental models Exhaustive parameter search Individual countries Not incorporated None Machine learning-based compartmental models Gradient descent optimization Individual countries Not incorporated Ad-hoc bootstrap estimates Bayesian mechanistic hierarchical model Posterior inference via MCMC methods Individual countries Incorporated Bayesian credible intervals Curve fitting Exhaustive parameter search Individual countries Not incorporated None Dynamic control modeling Model parameters based on expert knowledge Individual countries Incorporated None Recurrent neural networks for fatality curve modeling [49] Gradient descent optimization Individual countries Not incorporated None Compartmental Gaussian processes Stochastic gradient-based variational inference Global ...
- North America > United States (0.47)
- Europe > France (0.05)
- Europe > Portugal (0.05)
- (34 more...)
- Health & Medicine > Therapeutic Area > Infections and Infectious Diseases (1.00)
- Health & Medicine > Therapeutic Area > Immunology (1.00)
- Health & Medicine > Epidemiology (1.00)
- Health & Medicine > Public Health (0.96)
- North America > United States (0.04)
- Asia > Middle East > Israel > Tel Aviv District > Tel Aviv (0.04)
- Europe > United Kingdom > England > Oxfordshire > Oxford (0.14)
- North America > United States > Virginia (0.04)
- Europe > United Kingdom > England > Cambridgeshire > Cambridge (0.04)
- Europe > Denmark > Capital Region > Copenhagen (0.04)
- Health & Medicine (1.00)
- Banking & Finance > Economy (1.00)
- Government (0.68)
- Information Technology > Artificial Intelligence > Representation & Reasoning > Agents (1.00)
- Information Technology > Artificial Intelligence > Representation & Reasoning > Uncertainty (0.67)
- Information Technology > Artificial Intelligence > Machine Learning > Statistical Learning (0.67)
- Information Technology > Artificial Intelligence > Machine Learning > Neural Networks > Deep Learning (0.46)
A Supplementary Material 463 A.1 Implementation Details
We use Erd os-Rényi Kernel (ERK) (Evci et al., 2020), an empirical (l 1) In the mask searching process, we use parameter's magnitude to guide the Following (Evci et al., 2020), we use Labels of poison samples are manipulated to the target label (e.g., a horse). " corresponds to be applicable while " " corresponds to be not applicable. BadNet is the earliest, and also the simplest backdoor attack first proposed in (Gu et al., DBA. DBA (Xie et al., 2019) is a backdoor attack specifically targeted on FL. Sinusoidal attack (Barni et al., 2019) shares a similar perspective with BadNet, The basic idea of Scaling (Bagdasaryan et al., 2020) is to enlarge the gradient update FixMask is an adaptive attack method specifically targeting Lockdown.
- North America > United States (0.04)
- Asia > Middle East > Israel (0.04)
- North America > United States (0.47)
- Europe > France (0.05)
- Europe > Portugal (0.05)
- (34 more...)
- Health & Medicine > Therapeutic Area > Infections and Infectious Diseases (1.00)
- Health & Medicine > Therapeutic Area > Immunology (1.00)
- Health & Medicine > Epidemiology (1.00)
- Health & Medicine > Public Health (0.96)
The pandemic may have aged our brains even before we caught covid-19
The covid-19 pandemic may have accelerated the ageing of our brains even before we caught the infection. Research suggests that even relatively early on in the outbreak, brains aged by 5.5 months, possibly due to stress or lifestyle changes. We know that many people with long covid experience brain fog, but years after the arrival of covid-19, the pandemic's broader neurological impact is far from fully understood. To get a grasp on this, Ali-Reza Mohammadi-Nejad at Nottingham University, UK, and his colleagues trained a machine learning model on 15,000 brain scans to identify how its structure changes with age. They then fed the model pairs of brain scans from 996 volunteers from the UK Biobank study.
- Research Report > Experimental Study (0.40)
- Research Report > New Finding (0.38)