Leveraging federated learning (FL) to enable cross-domain privacy-sensitive data mining represents a vital breakthrough to accomplish privacy-preserving learning. However, attackers can infer the original user data by analyzing the uploaded intermediate parameters during the aggregation process. Therefore, secure aggregation has become a critical issue in the field of FL. Many secure aggregation protocols face the problem of high computation costs, which severely limits their applicability. To this end, we propose AHSecAgg, a lightweight secure aggregation protocol using additive homomorphic masks. AHSecAgg significantly reduces computation overhead without compromising the dropout handling capability or model accuracy. We prove the security of AHSecAgg in semi-honest and active adversary settings. In addition, in cross-silo scenarios where the group of participants is relatively fixed during each round, we propose TSKG, a lightweight Threshold Signature based masking key generation method. TSKG can generate different temporary secrets and shares for different aggregation rounds using the initial key and thus effectively eliminates the cost of secret sharing and key agreement. We prove TSKG does not sacrifice security. Extensive experiments show that AHSecAgg significantly outperforms state-of-the-art mask-based secure aggregation protocols in terms of computational efficiency, and TSKG effectively reduces the computation and communication costs for existing secure aggregation protocols.
翻译:利用联邦学习实现跨域隐私敏感数据挖掘,是完成隐私保护学习的重要突破。然而,攻击者可通过分析聚合过程中上传的中间参数推断原始用户数据。因此,安全聚合已成为联邦学习领域的关键问题。许多安全聚合协议面临计算成本高的问题,这严重限制了其可用性。为此,我们提出AHSecAgg——一种使用加法同态掩码的轻量级安全聚合协议。AHSecAgg在保持处理节点掉线能力与模型精度的同时,显著降低计算开销。我们在半诚实与主动敌手设置下证明了AHSecAgg的安全性。此外,在每轮参与者群体相对固定的跨机构场景中,我们提出TSKG——一种基于门限签名的轻量级掩码密钥生成方法。TSKG可利用初始密钥为不同聚合轮次生成不同的临时秘密与份额,从而有效消除秘密共享与密钥协商的开销。我们证明TSKG不会牺牲安全性。大量实验表明,AHSecAgg在计算效率上显著优于现有最先进的基于掩码的安全聚合协议,且TSKG可有效降低现有安全聚合协议的计算与通信成本。