{"id":"https://openalex.org/W4380136336","doi":"https://doi.org/10.48550/arxiv.2306.04959","title":"FedSecurity: Benchmarking Attacks and Defenses in Federated Learning and Federated LLMs","display_name":"FedSecurity: Benchmarking Attacks and Defenses in Federated Learning and Federated LLMs","publication_year":2023,"publication_date":"2023-06-08","ids":{"openalex":"https://openalex.org/W4380136336","doi":"https://doi.org/10.48550/arxiv.2306.04959"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2306.04959","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2306.04959","pdf_url":"https://arxiv.org/pdf/2306.04959","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2306.04959","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101755193","display_name":"Shanshan Han","orcid":"https://orcid.org/0000-0002-2788-8834"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Han, Shanshan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056993728","display_name":"Baturalp Buyukates","orcid":"https://orcid.org/0000-0002-5941-0667"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Buyukates, Baturalp","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066820318","display_name":"Zijian Hu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hu, Zijian","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5014047957","display_name":"Han Jin","orcid":"https://orcid.org/0000-0003-0148-9031"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jin, Han","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5030446964","display_name":"Weizhao Jin","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jin, Weizhao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015105117","display_name":"Lichao Sun","orcid":"https://orcid.org/0000-0003-1539-7939"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Sun, Lichao","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100334518","display_name":"Xiaoyang Wang","orcid":"https://orcid.org/0000-0003-4213-0762"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Wang, Xiaoyang","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":null,"display_name":"Wu, Wenxuan","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Wu, Wenxuan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5007625243","display_name":"Chulin Xie","orcid":"https://orcid.org/0000-0002-5460-3785"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Xie, Chulin","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":null,"display_name":"Yao, Yuhang","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yao, Yuhang","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100324043","display_name":"Kai Zhang","orcid":"https://orcid.org/0000-0003-2079-6133"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Kai","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100708489","display_name":"Qifan Zhang","orcid":"https://orcid.org/0000-0002-9278-9576"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Qifan","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100624916","display_name":"Yuhui Zhang","orcid":"https://orcid.org/0000-0002-5769-3456"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhang, Yuhui","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":null,"display_name":"Joe-Wong, Carlee","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Joe-Wong, Carlee","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112726818","display_name":"Salman Avestimehr","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Avestimehr, Salman","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5077042043","display_name":"Chaoyang He","orcid":"https://orcid.org/0009-0006-1803-1990"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"He, Chaoyang","raw_affiliation_strings":[],"raw_orcid":null,"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":16,"corresponding_author_ids":["https://openalex.org/A5101755193"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9936000108718872,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9936000108718872,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9865999817848206,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9860000014305115,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.7511236667633057},{"id":"https://openalex.org/keywords/federated-learning","display_name":"Federated learning","score":0.578583300113678},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4388817250728607},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.43210482597351074},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.39154431223869324},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.32414454221725464},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.22358295321464539},{"id":"https://openalex.org/keywords/geography","display_name":"Geography","score":0.13948655128479004},{"id":"https://openalex.org/keywords/cartography","display_name":"Cartography","score":0.06669119000434875}],"concepts":[{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.7511236667633057},{"id":"https://openalex.org/C2992525071","wikidata":"https://www.wikidata.org/wiki/Q50818671","display_name":"Federated learning","level":2,"score":0.578583300113678},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4388817250728607},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.43210482597351074},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.39154431223869324},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.32414454221725464},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.22358295321464539},{"id":"https://openalex.org/C205649164","wikidata":"https://www.wikidata.org/wiki/Q1071","display_name":"Geography","level":0,"score":0.13948655128479004},{"id":"https://openalex.org/C58640448","wikidata":"https://www.wikidata.org/wiki/Q42515","display_name":"Cartography","level":1,"score":0.06669119000434875}],"mesh":[],"locations_count":3,"locations":[{"id":"pmh:oai:arXiv.org:2306.04959","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2306.04959","pdf_url":"https://arxiv.org/pdf/2306.04959","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"pmh:oai:pure.atira.dk:openaire_cris_publications/87c24234-bd14-4c19-bf24-455ad9efd717","is_oa":true,"landing_page_url":"https://research.birmingham.ac.uk/en/publications/87c24234-bd14-4c19-bf24-455ad9efd717","pdf_url":"https://pure-oai.bham.ac.uk/ws/files/239922781/2306.04959v5.pdf","source":{"id":"https://openalex.org/S4306402634","display_name":"University of Birmingham Research Portal (University of Birmingham)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79619799","host_organization_name":"University of Birmingham","host_organization_lineage":["https://openalex.org/I79619799"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Han , S , Buyukates , B , Hu , Z , Jin , H , Jin , W , Sun , L , Wang , X , Wu , W , Xie , C , Yao , Y , Zhang , K , Zhang , Q , Zhang , Y , Joe-Wong , C , Avestimehr , S & He , C 2023 ' FedSecurity : Benchmarking Attacks and Defenses in Federated Learning and Federated LLMs ' arXiv , pp. 1-12 . https://doi.org/10.48550/arXiv.2306.04959","raw_type":"workingPaper"},{"id":"doi:10.48550/arxiv.2306.04959","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2306.04959","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2306.04959","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2306.04959","pdf_url":"https://arxiv.org/pdf/2306.04959","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4380136336.pdf","grobid_xml":"https://content.openalex.org/works/W4380136336.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2378211422","https://openalex.org/W2745001401","https://openalex.org/W4321353415","https://openalex.org/W2130974462","https://openalex.org/W2028665553","https://openalex.org/W2086519370","https://openalex.org/W972276598","https://openalex.org/W2087343574","https://openalex.org/W4246352526"],"abstract_inverted_index":{"This":[0],"paper":[1],"introduces":[2],"FedSecurity,":[3],"an":[4],"end-to-end":[5],"benchmark":[6],"that":[7,67,78],"serves":[8],"as":[9],"a":[10,69,99,144,170],"supplementary":[11],"component":[12],"of":[13,71,102,126,160,173],"the":[14,31,35,88,124],"FedML":[15],"library":[16],"for":[17,33],"simulating":[18],"adversarial":[19],"attacks":[20,72,127],"and":[21,42,57,76,110,112,118,128,133,135,141,147,155],"corresponding":[22],"defense":[23,58],"mechanisms":[24,81],"in":[25],"Federated":[26],"Learning":[27],"(FL).":[28],"FedSecurity":[29,86],"eliminates":[30],"need":[32],"implementing":[34],"fundamental":[36],"FL":[37,40,74,113],"procedures,":[38],"e.g.,":[39],"training":[41,159],"data":[43],"loading,":[44],"from":[45],"scratch,":[46],"thus":[47],"enables":[48,122],"users":[49],"to":[50,82,97,165],"focus":[51],"on":[52,169],"developing":[53],"their":[54],"own":[55],"attack":[56],"strategies.":[59],"It":[60,92],"contains":[61],"two":[62],"key":[63],"components,":[64],"including":[65],"FedAttacker":[66],"conducts":[68],"variety":[70],"during":[73],"training,":[75],"FedDefender":[77],"implements":[79],"defensive":[80],"counteract":[83],"these":[84],"attacks.":[85],"has":[87],"following":[89],"features:":[90],"i)":[91],"offers":[93],"extensive":[94],"customization":[95,142],"options":[96],"accommodate":[98],"broad":[100],"range":[101,172],"machine":[103],"learning":[104],"models":[105],"(e.g.,":[106,115],"Logistic":[107],"Regression,":[108],"ResNet,":[109],"GAN)":[111],"optimizers":[114],"FedAVG,":[116],"FedOPT,":[117],"FedNOVA);":[119],"ii)":[120],"it":[121,137],"exploring":[123],"effectiveness":[125],"defenses":[129],"across":[130],"different":[131],"datasets":[132],"models;":[134],"iii)":[136],"supports":[138],"flexible":[139],"configuration":[140,145],"through":[143,157],"file":[146],"some":[148],"APIs.":[149],"We":[150],"further":[151],"demonstrate":[152],"FedSecurity's":[153],"utility":[154],"adaptability":[156],"federated":[158],"Large":[161],"Language":[162],"Models":[163],"(LLMs)":[164],"showcase":[166],"its":[167],"potential":[168],"wide":[171],"complex":[174],"applications.":[175]},"counts_by_year":[],"updated_date":"2026-06-05T09:01:59.212387","created_date":"2023-06-10T00:00:00"}
