Skip to main navigation Skip to search Skip to main content

Knowledge-Aware Privacy-Preserving Model Customization in Zero-Trust Federated Learning Model Marketplaces

  • Yanghe Pan
  • , Zhou Su
  • , Yuntao Wang
  • , Han Liu
  • , Ruidong Li
  • , Abderrahim Benslimane
  • Xi'an Jiaotong University
  • Kanazawa University
  • Avignon Université

Research output: Contribution to journalArticlepeer-review

4 Scopus citations

Abstract

Federated learning (FL) model marketplaces require qualified workers to collaboratively train customized models. However, recruiting optimal workers on a limited budget in non-independent and identically distributed (non-IID) data settings remains a fundamental issue. Moreover, inadequate quality verification exposes the marketplace to spoofing and poisoning attacks, while verifying data and model quality without accessing local storage remains a significant dilemma. To bridge the research gap, this paper proposes a knowledge-aware model customization scheme in FL model marketplaces, to facilitate zero-trust worker recruitment and verification while ensuring privacy preservation. Specifically, (i) we design a knowledge-aware quality evaluation mechanism by leveraging the knowledge of workers, i.e., soft-label predictions of their local models on a privacy-free reference dataset (provided by the customer), to assess their data quality in a privacy-preserving manner. (ii) We formulate the optimal worker recruitment problem under budget constraints as an NP-hard integer programming problem and design a dynamic programming-based optimal worker recruitment algorithm with budget feasibility and computational efficiency. (iii) We devise a two-stage zero-trust quality verification mechanism by utilizing zero-knowledge proof (ZKP) to exclude distrustful workers, thereby preventing spoofing and poisoning attacks. Extensive experimental results demonstrate that the proposed scheme enhances model customization performance by up to 34.3% on label-skewed non-IID data and 36.2% on feature-skewed non-IID data compared with existing representatives.

Original languageEnglish
Pages (from-to)1923-1937
Number of pages15
JournalIEEE Journal on Selected Areas in Communications
Volume43
Issue number6
DOIs
StatePublished - 2025

Keywords

  • Federated learning
  • knowledge
  • model marketplace
  • privacy protection
  • zero-trust

Fingerprint

Dive into the research topics of 'Knowledge-Aware Privacy-Preserving Model Customization in Zero-Trust Federated Learning Model Marketplaces'. Together they form a unique fingerprint.

Cite this