Pith. sign in

REVIEW 3 cited by

QFAL: Quantum Federated Adversarial Learning

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2502.21171 v1 pith:7455VCMA submitted 2025-02-28 cs.LG quant-ph

classification cs.LGquant-ph
keywords adversarialfederatedquantumtrainingaccuracycoveragelearningattacks
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

Quantum federated learning (QFL) merges the privacy advantages of federated systems with the computational potential of quantum neural networks (QNNs), yet its vulnerability to adversarial attacks remains poorly understood. This work pioneers the integration of adversarial training into QFL, proposing a robust framework, quantum federated adversarial learning (QFAL), where clients collaboratively defend against perturbations by combining local adversarial example generation with federated averaging (FedAvg). We systematically evaluate the interplay between three critical factors: client count (5, 10, 15), adversarial training coverage (0-100%), and adversarial attack perturbation strength (epsilon = 0.01-0.5), using the MNIST dataset. Our experimental results show that while fewer clients often yield higher clean-data accuracy, larger federations can more effectively balance accuracy and robustness when partially adversarially trained. Notably, even limited adversarial coverage (e.g., 20%-50%) can significantly improve resilience to moderate perturbations, though at the cost of reduced baseline performance. Conversely, full adversarial training (100%) may regain high clean accuracy but is vulnerable under stronger attacks. These findings underscore an inherent trade-off between robust and standard objectives, which is further complicated by quantum-specific factors. We conclude that a carefully chosen combination of client count and adversarial coverage is critical for mitigating adversarial vulnerabilities in QFL. Moreover, we highlight opportunities for future research, including adaptive adversarial training schedules, more diverse quantum encoding schemes, and personalized defense strategies to further enhance the robustness-accuracy trade-off in real-world quantum federated environments.

Discussion (0). Sign in to comment.

Forward citations

Cited by 3 Pith papers

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Sculpting Quantum Landscapes: Fubini-Study Metric Conditioning for Geometry Aware Learning in Parameterized Quantum Circuits

    cs.LG 2025-06 conditional novelty 6.0 of 10

    A meta-learned initialization scheme that minimizes the log condition number of the Fubini-Study metric is reported to improve trainability and test accuracy of an 8-qubit variational classifier.

  2. RobQFL: Robust Quantum Federated Learning in Adversarial Environment

    quant-ph 2025-09 conditional novelty 5.0 of 10

    Partial adversarial coverage in simulated quantum federated learning improves small-perturbation robustness with little clean-accuracy loss, but label-sorted non-IID data removes about half the robustness benefit.

  3. Universal Fluctuations in the Tail Probability for d=2 Random Walks in Space-Time Random Environments

    cond-mat.stat-mech 2025-08 reject novelty 4.0 of 10

    The reported d=2 random-walk universality result is unsupported: the full text is a quantum federated learning survey that never mentions random walks, tail probabilities, or lambda_ext.

Pith tools