{"id":"https://openalex.org/W4401508055","doi":"https://doi.org/10.1109/infocom52122.2024.10621090","title":"Breaking Secure Aggregation: Label Leakage from Aggregated Gradients in Federated Learning","display_name":"Breaking Secure Aggregation: Label Leakage from Aggregated Gradients in Federated Learning","publication_year":2024,"publication_date":"2024-05-20","ids":{"openalex":"https://openalex.org/W4401508055","doi":"https://doi.org/10.1109/infocom52122.2024.10621090"},"language":"en","primary_location":{"id":"doi:10.1109/infocom52122.2024.10621090","is_oa":false,"landing_page_url":"https://doi.org/10.1109/infocom52122.2024.10621090","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE INFOCOM 2024 - IEEE Conference on Computer Communications","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100422345","display_name":"Zhibo Wang","orcid":"https://orcid.org/0000-0002-5804-3279"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zhibo Wang","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083891468","display_name":"Zhiwei Chang","orcid":"https://orcid.org/0000-0001-9382-206X"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zhiwei Chang","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100702750","display_name":"Jiahui Hu","orcid":"https://orcid.org/0000-0001-8771-7474"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiahui Hu","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083836256","display_name":"Xiaoyi Pang","orcid":"https://orcid.org/0000-0002-2763-2695"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaoyi Pang","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113960270","display_name":"Jiacheng Du","orcid":null},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Jiacheng Du","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5104335432","display_name":"Yongle Chen","orcid":null},"institutions":[{"id":"https://openalex.org/I9086337","display_name":"Taiyuan University of Technology","ror":"https://ror.org/03kv08d37","country_code":"CN","type":"education","lineage":["https://openalex.org/I9086337"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yongle Chen","raw_affiliation_strings":["Taiyuan University of Technology,College of Computer Science and Technology,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Taiyuan University of Technology,College of Computer Science and Technology,China","institution_ids":["https://openalex.org/I9086337"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5105297718","display_name":"Kui Ren","orcid":"https://orcid.org/0000-0002-1969-2591"},"institutions":[{"id":"https://openalex.org/I76130692","display_name":"Zhejiang University","ror":"https://ror.org/00a2xv884","country_code":"CN","type":"education","lineage":["https://openalex.org/I76130692"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Kui Ren","raw_affiliation_strings":["Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Zhejiang University,The State Key Laboratory of Blockchain and Data Security,Hangzhou,China","institution_ids":["https://openalex.org/I76130692"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5100422345"],"corresponding_institution_ids":["https://openalex.org/I76130692"],"apc_list":null,"apc_paid":null,"fwci":2.2122,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.89390406,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"151","last_page":"160"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9810000061988831,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.7264496684074402},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6385174989700317},{"id":"https://openalex.org/keywords/process-engineering","display_name":"Process engineering","score":0.349174439907074},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.08722609281539917}],"concepts":[{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.7264496684074402},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6385174989700317},{"id":"https://openalex.org/C21880701","wikidata":"https://www.wikidata.org/wiki/Q2144042","display_name":"Process engineering","level":1,"score":0.349174439907074},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.08722609281539917},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C139719470","wikidata":"https://www.wikidata.org/wiki/Q39680","display_name":"Macroeconomics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/infocom52122.2024.10621090","is_oa":false,"landing_page_url":"https://doi.org/10.1109/infocom52122.2024.10621090","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE INFOCOM 2024 - IEEE Conference on Computer Communications","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":44,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1834627138","https://openalex.org/W2108598243","https://openalex.org/W2112796928","https://openalex.org/W2194775991","https://openalex.org/W2767079719","https://openalex.org/W2774000609","https://openalex.org/W2783522756","https://openalex.org/W2807006176","https://openalex.org/W2900120080","https://openalex.org/W2911978475","https://openalex.org/W2963819344","https://openalex.org/W2964162474","https://openalex.org/W2970408908","https://openalex.org/W2995022099","https://openalex.org/W3000479830","https://openalex.org/W3088123628","https://openalex.org/W3096328345","https://openalex.org/W3107100345","https://openalex.org/W3118608800","https://openalex.org/W3175192640","https://openalex.org/W3206985409","https://openalex.org/W3212079419","https://openalex.org/W4221149140","https://openalex.org/W4229083957","https://openalex.org/W4283220764","https://openalex.org/W4283801341","https://openalex.org/W4285203327","https://openalex.org/W4286564626","https://openalex.org/W4286895293","https://openalex.org/W4287822453","https://openalex.org/W4380714646","https://openalex.org/W4384027004","https://openalex.org/W4385412495","https://openalex.org/W4386057705","https://openalex.org/W4387068389","https://openalex.org/W6728757088","https://openalex.org/W6759226220","https://openalex.org/W6764838729","https://openalex.org/W6775563089","https://openalex.org/W6787972765","https://openalex.org/W6795938332","https://openalex.org/W6840527761","https://openalex.org/W6843392272"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052","https://openalex.org/W2382290278","https://openalex.org/W4395014643"],"abstract_inverted_index":{"Federated":[0],"Learning":[1],"(FL)":[2],"exhibits":[3],"privacy":[4],"vulnerabilities":[5],"under":[6],"gradient":[7,98],"inversion":[8],"attacks":[9],"(GIAs),":[10],"which":[11],"can":[12,138,168],"extract":[13],"private":[14,56],"information":[15],"from":[16,31,67],"individual":[17,33,54,141],"gradients.":[18],"To":[19,103],"enhance":[20],"privacy,":[21],"FL":[22],"incorporates":[23],"Secure":[24],"Aggregation":[25],"(SA)":[26],"to":[27,49,97],"prevent":[28],"the":[29,68,83,90,105,119,129,136,140,144,157,163],"server":[30,137],"obtaining":[32],"gradients,":[34],"thus":[35],"effectively":[36],"resisting":[37],"GIAs.":[38],"In":[39],"this":[40],"paper,":[41],"we":[42,59,111],"propose":[43],"a":[44,61,113,122,150],"stealthy":[45],"label":[46,65,101,189],"inference":[47,66],"attack":[48,186],"bypass":[50],"SA":[51],"and":[52,86,100,107,156,176,197],"recover":[53],"clients\u2019":[55],"labels.":[57],"Specifically,":[58],"conduct":[60],"theoretical":[62],"analysis":[63,79],"of":[64,89,109,121,146,165,178],"aggregated":[69,158],"gradients":[70,142,159,177],"that":[71,82,184],"are":[72],"exclusively":[73],"obtained":[74],"after":[75],"implementing":[76],"SA.":[77],"The":[78],"results":[80],"reveal":[81],"inputs":[84],"(embeddings)":[85],"outputs":[87],"(logits)":[88],"final":[91],"fully":[92],"connected":[93],"layer":[94,127],"(FCL)":[95],"contribute":[96],"disaggregation":[99],"restoration.":[102],"preset":[104,174],"embeddings":[106,155],"logits":[108,175],"FCL,":[110],"craft":[112],"fishing":[114,134],"model":[115,198],"by":[116,148],"solely":[117],"modifying":[118],"parameters":[120],"single":[123],"batch":[124],"normalization":[125],"(BN)":[126],"in":[128],"original":[130],"model.":[131],"Distributing":[132],"client-specific":[133],"models,":[135],"derive":[139],"regarding":[143],"bias":[145],"FCL":[147],"resolving":[149],"linear":[151],"system":[152],"with":[153,191],"expected":[154],"as":[160],"coefficients.":[161],"Then":[162],"labels":[164],"each":[166],"client":[167],"be":[169],"precisely":[170],"computed":[171],"based":[172],"on":[173,194],"FCL\u2019s":[179],"bias.":[180],"Extensive":[181],"experiments":[182],"show":[183],"our":[185],"achieves":[187],"large-scale":[188],"recovery":[190],"100%":[192],"accuracy":[193],"various":[195],"datasets":[196],"architectures.":[199]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":5}],"updated_date":"2026-05-21T09:19:25.381259","created_date":"2025-10-10T00:00:00"}
