{"id":"https://openalex.org/W4405270168","doi":"https://doi.org/10.1109/tifs.2024.3515793","title":"Local Differential Privacy Is Not Enough: A Sample Reconstruction Attack Against Federated Learning With Local Differential Privacy","display_name":"Local Differential Privacy Is Not Enough: A Sample Reconstruction Attack Against Federated Learning With Local Differential Privacy","publication_year":2024,"publication_date":"2024-12-11","ids":{"openalex":"https://openalex.org/W4405270168","doi":"https://doi.org/10.1109/tifs.2024.3515793"},"language":"en","primary_location":{"id":"doi:10.1109/tifs.2024.3515793","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3515793","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},"type":"article","indexed_in":["arxiv","crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2502.08151","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5065641081","display_name":"Zhichao You","orcid":"https://orcid.org/0000-0002-3683-407X"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Zhichao You","raw_affiliation_strings":["School of Computer Science and Technology, Xidian University, Xi'an, China"],"raw_orcid":"https://orcid.org/0000-0002-3683-407X","affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Xidian University, Xi'an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5066750506","display_name":"Xuewen Dong","orcid":"https://orcid.org/0000-0001-5745-0545"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xuewen Dong","raw_affiliation_strings":["School of Computer Science and Technology, Xidian University, Xi'an, China"],"raw_orcid":"https://orcid.org/0000-0001-5745-0545","affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Xidian University, Xi'an, China","institution_ids":["https://openalex.org/I149594827"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100745576","display_name":"Shujun Li","orcid":"https://orcid.org/0000-0001-5628-7328"},"institutions":[{"id":"https://openalex.org/I188329596","display_name":"University of Canberra","ror":"https://ror.org/04s1nv328","country_code":"AU","type":"education","lineage":["https://openalex.org/I188329596"]},{"id":"https://openalex.org/I31746571","display_name":"UNSW Sydney","ror":"https://ror.org/03r8z3t63","country_code":"AU","type":"education","lineage":["https://openalex.org/I31746571"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Shujun Li","raw_affiliation_strings":["School of System and Computing, The University of New South Wales, Canberra, ACT, Australia"],"raw_orcid":"https://orcid.org/0000-0001-5628-7328","affiliations":[{"raw_affiliation_string":"School of System and Computing, The University of New South Wales, Canberra, ACT, Australia","institution_ids":["https://openalex.org/I188329596","https://openalex.org/I31746571"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100626958","display_name":"Xinghua Li","orcid":"https://orcid.org/0000-0002-5583-4155"},"institutions":[{"id":"https://openalex.org/I80947539","display_name":"Fuzhou University","ror":"https://ror.org/011xvna82","country_code":"CN","type":"education","lineage":["https://openalex.org/I80947539"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ximeng Liu","raw_affiliation_strings":["College of Computer and Data Science, Fuzhou University, Fuzhou, China"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"College of Computer and Data Science, Fuzhou University, Fuzhou, China","institution_ids":["https://openalex.org/I80947539"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5016972157","display_name":"Siqi Ma","orcid":"https://orcid.org/0000-0003-3479-5713"},"institutions":[{"id":"https://openalex.org/I188329596","display_name":"University of Canberra","ror":"https://ror.org/04s1nv328","country_code":"AU","type":"education","lineage":["https://openalex.org/I188329596"]},{"id":"https://openalex.org/I31746571","display_name":"UNSW Sydney","ror":"https://ror.org/03r8z3t63","country_code":"AU","type":"education","lineage":["https://openalex.org/I31746571"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Siqi Ma","raw_affiliation_strings":["School of System and Computing, The University of New South Wales, Canberra, ACT, Australia"],"raw_orcid":"https://orcid.org/0000-0003-3479-5713","affiliations":[{"raw_affiliation_string":"School of System and Computing, The University of New South Wales, Canberra, ACT, Australia","institution_ids":["https://openalex.org/I188329596","https://openalex.org/I31746571"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5043356063","display_name":"Yulong Shen","orcid":"https://orcid.org/0000-0002-8448-705X"},"institutions":[{"id":"https://openalex.org/I149594827","display_name":"Xidian University","ror":"https://ror.org/05s92vm98","country_code":"CN","type":"education","lineage":["https://openalex.org/I149594827"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yulong Shen","raw_affiliation_strings":["School of Computer Science and Technology, Xidian University, Xi'an, China"],"raw_orcid":"https://orcid.org/0000-0002-8448-705X","affiliations":[{"raw_affiliation_string":"School of Computer Science and Technology, Xidian University, Xi'an, China","institution_ids":["https://openalex.org/I149594827"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5065641081"],"corresponding_institution_ids":["https://openalex.org/I149594827"],"apc_list":null,"apc_paid":null,"fwci":1.9158,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.885173,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"20","issue":null,"first_page":"1519","last_page":"1534"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9929999709129333,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8090726137161255},{"id":"https://openalex.org/keywords/sample","display_name":"Sample (material)","score":0.6559011936187744},{"id":"https://openalex.org/keywords/differential-privacy","display_name":"Differential privacy","score":0.6354173421859741},{"id":"https://openalex.org/keywords/upload","display_name":"Upload","score":0.6239098310470581},{"id":"https://openalex.org/keywords/noise-reduction","display_name":"Noise reduction","score":0.5810284614562988},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.5463734269142151},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.44069021940231323},{"id":"https://openalex.org/keywords/filter","display_name":"Filter (signal processing)","score":0.4366304874420166},{"id":"https://openalex.org/keywords/clipping","display_name":"Clipping (morphology)","score":0.42223870754241943},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.41276291012763977},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3439808487892151},{"id":"https://openalex.org/keywords/computer-vision","display_name":"Computer vision","score":0.31561627984046936},{"id":"https://openalex.org/keywords/image","display_name":"Image (mathematics)","score":0.07145458459854126}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8090726137161255},{"id":"https://openalex.org/C198531522","wikidata":"https://www.wikidata.org/wiki/Q485146","display_name":"Sample (material)","level":2,"score":0.6559011936187744},{"id":"https://openalex.org/C23130292","wikidata":"https://www.wikidata.org/wiki/Q5275358","display_name":"Differential privacy","level":2,"score":0.6354173421859741},{"id":"https://openalex.org/C71901391","wikidata":"https://www.wikidata.org/wiki/Q7126699","display_name":"Upload","level":2,"score":0.6239098310470581},{"id":"https://openalex.org/C163294075","wikidata":"https://www.wikidata.org/wiki/Q581861","display_name":"Noise reduction","level":2,"score":0.5810284614562988},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.5463734269142151},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.44069021940231323},{"id":"https://openalex.org/C106131492","wikidata":"https://www.wikidata.org/wiki/Q3072260","display_name":"Filter (signal processing)","level":2,"score":0.4366304874420166},{"id":"https://openalex.org/C2776848632","wikidata":"https://www.wikidata.org/wiki/Q853463","display_name":"Clipping (morphology)","level":2,"score":0.42223870754241943},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.41276291012763977},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3439808487892151},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.31561627984046936},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.07145458459854126},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C43617362","wikidata":"https://www.wikidata.org/wiki/Q170050","display_name":"Chromatography","level":1,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1109/tifs.2024.3515793","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tifs.2024.3515793","pdf_url":null,"source":{"id":"https://openalex.org/S61310614","display_name":"IEEE Transactions on Information Forensics and Security","issn_l":"1556-6013","issn":["1556-6013","1556-6021"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Information Forensics and Security","raw_type":"journal-article"},{"id":"pmh:oai:kar.kent.ac.uk:108691","is_oa":false,"landing_page_url":"https://doi.org/10.1109/TIFS.2024.3515793>)","pdf_url":null,"source":{"id":"https://openalex.org/S4377196264","display_name":"Kent Academic Repository (University of Kent)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I20581793","host_organization_name":"University of Kent","host_organization_lineage":["https://openalex.org/I20581793"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"acceptedVersion","is_accepted":true,"is_published":false,"raw_source_name":null,"raw_type":"PeerReviewed"},{"id":"pmh:oai:arXiv.org:2502.08151","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2502.08151","pdf_url":"https://arxiv.org/pdf/2502.08151","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2502.08151","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2502.08151","pdf_url":"https://arxiv.org/pdf/2502.08151","source":{"id":"https://openalex.org/S4393918464","display_name":"ArXiv.org","issn_l":"2331-8422","issn":["2331-8422"],"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"score":0.6000000238418579,"id":"https://metadata.un.org/sdg/10","display_name":"Reduced inequalities"}],"awards":[{"id":"https://openalex.org/G5767509517","display_name":null,"funder_award_id":"62220106004","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6030431395","display_name":null,"funder_award_id":"62232013","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"},{"id":"https://openalex.org/G6385847467","display_name":null,"funder_award_id":"YJSJ24015","funder_id":"https://openalex.org/F4320334111","funder_display_name":"Innovation Fund"},{"id":"https://openalex.org/G7995815166","display_name":null,"funder_award_id":"2023YFB3107500","funder_id":"https://openalex.org/F4320335777","funder_display_name":"National Key Research and Development Program of China"},{"id":"https://openalex.org/G8527692473","display_name":null,"funder_award_id":"EP/S018964/1","funder_id":"https://openalex.org/F4320334627","funder_display_name":"Engineering and Physical Sciences Research Council"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320334111","display_name":"Innovation Fund","ror":null},{"id":"https://openalex.org/F4320334627","display_name":"Engineering and Physical Sciences Research Council","ror":"https://ror.org/0439y7842"},{"id":"https://openalex.org/F4320335777","display_name":"National Key Research and Development Program of China","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":60,"referenced_works":["https://openalex.org/W1576445103","https://openalex.org/W1982475102","https://openalex.org/W2027595342","https://openalex.org/W2117539524","https://openalex.org/W2150734399","https://openalex.org/W2194775991","https://openalex.org/W2476917595","https://openalex.org/W2533598788","https://openalex.org/W2963446712","https://openalex.org/W2970408908","https://openalex.org/W2995022099","https://openalex.org/W3016632787","https://openalex.org/W3018397821","https://openalex.org/W3023244064","https://openalex.org/W3033686777","https://openalex.org/W3034957837","https://openalex.org/W3118608800","https://openalex.org/W3132138018","https://openalex.org/W3167500796","https://openalex.org/W3175192640","https://openalex.org/W3204874618","https://openalex.org/W3206887799","https://openalex.org/W3209752568","https://openalex.org/W3212079419","https://openalex.org/W4206426144","https://openalex.org/W4226249052","https://openalex.org/W4246193833","https://openalex.org/W4292084264","https://openalex.org/W4312443924","https://openalex.org/W4312705808","https://openalex.org/W4313396675","https://openalex.org/W4366999759","https://openalex.org/W4376653674","https://openalex.org/W4385412128","https://openalex.org/W4385412495","https://openalex.org/W4386156801","https://openalex.org/W4389600236","https://openalex.org/W4390874575","https://openalex.org/W4391109864","https://openalex.org/W4392177746","https://openalex.org/W4392477550","https://openalex.org/W4393156629","https://openalex.org/W6634343353","https://openalex.org/W6637568146","https://openalex.org/W6728757088","https://openalex.org/W6747855403","https://openalex.org/W6762718338","https://openalex.org/W6775563089","https://openalex.org/W6776213126","https://openalex.org/W6784311791","https://openalex.org/W6787972765","https://openalex.org/W6802409679","https://openalex.org/W6802646539","https://openalex.org/W6803316053","https://openalex.org/W6803930324","https://openalex.org/W6805407591","https://openalex.org/W6841030189","https://openalex.org/W6852050315","https://openalex.org/W6852880106","https://openalex.org/W6859545741"],"related_works":["https://openalex.org/W3038283795","https://openalex.org/W2604501336","https://openalex.org/W2558166297","https://openalex.org/W2734500670","https://openalex.org/W2315671126","https://openalex.org/W798507144","https://openalex.org/W2964481303","https://openalex.org/W2944823289","https://openalex.org/W1751413323","https://openalex.org/W3037018281"],"abstract_inverted_index":{"Reconstruction":[0],"attacks":[1,40,60,122,228],"against":[2,25,96,156,225],"federated":[3],"learning":[4],"(FL)":[5],"aim":[6],"to":[7,67,77,103,108,152,167,175,223],"reconstruct":[8,104],"users\u2019":[9,12],"samples":[10,107,202],"through":[11],"uploaded":[13],"gradients.":[14],"Local":[15],"differential":[16],"privacy":[17],"(LDP)":[18],"is":[19,114,133,150,194],"regarded":[20],"as":[21],"an":[22,143],"effective":[23],"defense":[24],"various":[26],"attacks,":[27],"including":[28],"sample":[29,54,63,93,138,148,160,226],"reconstruction":[30,94,121,227],"in":[31,43,83,120,125,203],"FL,":[32],"where":[33],"gradients":[34,51,66,155,166],"are":[35,41],"clipped":[36,48],"and":[37,49,72,123,136,171,206],"perturbed.":[38],"Existing":[39],"ineffective":[42],"FL":[44,84,98,111,205,219],"with":[45,85,99,112],"LDP":[46,113],"since":[47],"perturbed":[50],"obliterate":[52],"most":[53],"information":[55,64],"for":[56],"reconstruction.":[57],"Besides,":[58],"existing":[59],"embed":[61],"additional":[62],"into":[65],"improve":[68],"the":[69,127,130,177,182,185,191,195,211],"attack":[70,95,132,193,197],"effect":[71],"cause":[73],"gradient":[74,81,118,134,141],"expansion,":[75],"leading":[76],"a":[78,92],"more":[79],"severe":[80],"clipping":[82],"LDP.":[86,157],"In":[87],"this":[88],"paper,":[89],"we":[90,162],"propose":[91],"LDP-based":[97,204,218],"any":[100],"target":[101,212],"models":[102],"victims\u2019":[105,200],"sensitive":[106],"illustrate":[109],"that":[110,190,198,217],"not":[115],"flawless.":[116],"Considering":[117],"expansion":[119],"noise":[124,169],"LDP,":[126],"core":[128],"of":[129,184],"proposed":[131,186,192],"compression":[135],"reconstructed":[137,159],"denoising.":[139],"For":[140,158],"compression,":[142],"inference":[144],"structure":[145],"based":[146],"on":[147,210],"characteristics":[149],"presented":[151],"reduce":[153],"redundant":[154],"denoising,":[161],"artificially":[163],"introduce":[164],"zero":[165],"observe":[168],"distribution":[170],"scale":[172],"confidence":[173],"interval":[174],"filter":[176],"noise.":[178],"Theoretical":[179],"proof":[180],"guarantees":[181],"effectiveness":[183],"attack.":[187],"Evaluations":[188],"show":[189],"only":[196],"reconstructs":[199],"training":[201],"has":[207],"little":[208],"impact":[209],"model\u2019s":[213],"accuracy.":[214],"We":[215],"conclude":[216],"needs":[220],"further":[221],"improvements":[222],"defend":[224],"effectively.":[229]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":3}],"updated_date":"2026-05-15T08:27:34.491423","created_date":"2025-10-10T00:00:00"}
