AI RESEARCH
MANDERA: Malicious Node Detection in Federated Learning via Ranking
arXiv CS.LG
•
ArXi:2110.11736v3 Announce Type: replace Byzantine attacks hinder the deployment of federated learning algorithms. Although we know that the benign gradients and Byzantine attacked gradients are distributed differently, to detect the malicious gradients is challenging due to (1) the gradient is high-dimensional and each dimension has its unique distribution and (2) the benign gradients and the attacked gradients are always mixed (two-sample test methods cannot apply directly