Researchers have developed a novel hybrid Byzantine attack for federated learning that combines a sparse manipulation strategy with a slow-accumulating poisoning method. This approach aims to maximize disruption to the global model while remaining imperceptible to common detection mechanisms. The attack selectively targets sensitive parameters and gradually poisons updates over multiple rounds, demonstrating effectiveness against eight state-of-the-art defense strategies. AI
影响 Introduces a novel attack vector that could necessitate new defenses in federated learning systems.
排序理由 Academic paper detailing a new attack method for federated learning. [lever_c_demoted from research: ic=1 ai=1.0]
AI 生成摘要 · Google Gemini · 来自 1 个来源。 我们如何撰写摘要 →