REVIEW 2 cited by
SecFL: Confidential Federated Learning using TEEs
Not yet reviewed by Pith; the record is open.
This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.
SPECIMEN: schema-true, not a live event
T0 review · schema-true
One-sentence machine reading of the paper's core claim.
pith:XXXXXXXX · record.json · timestamp
read the original abstract
Federated Learning (FL) is an emerging machine learning paradigm that enables multiple clients to jointly train a model to take benefits from diverse datasets from the clients without sharing their local training datasets. FL helps reduce data privacy risks. Unfortunately, FL still exist several issues regarding privacy and security. First, it is possible to leak sensitive information from the shared training parameters. Second, malicious clients can collude with each other to steal data, models from regular clients or corrupt the global training model. To tackle these challenges, we propose SecFL - a confidential federated learning framework that leverages Trusted Execution Environments (TEEs). SecFL performs the global and local training inside TEE enclaves to ensure the confidentiality and integrity of the computations against powerful adversaries with privileged access. SecFL provides a transparent remote attestation mechanism, relying on the remote attestation provided by TEEs, to allow clients to attest the global training computation as well as the local training computation of each other. Thus, all malicious clients can be detected using the remote attestation mechanisms.
Forward citations
Cited by 2 Pith papers
-
Protecting Confidentiality, Privacy and Integrity in Collaborative Learning
Citadel++ claims to protect dataset, model, and code confidentiality, user-level differential privacy, and execution integrity in collaborative training using VM-level trusted execution environments and enhanced DP-SGD.
-
A performance analysis of VM-based Trusted Execution Environments for Confidential Federated Learning
Intel TDX adds at most about 1.5x runtime overhead to federated image classification training, based on single runs across three datasets and two models.
Discussion (0). Continue with ORCID to comment.