Unveiling and Mitigating Untargeted Poisoning Attacks on Federated Knowledge Graph Embedding
PDF 由论文原始站点提供,PaperCompass 不保存论文文件。DOI 10.1145/3774904.3792117 ↗
摘要
Federated knowledge graph embedding (FKGE) leverages distributed knowledge graphs (KGs) to collaboratively learn latent representations while preserving data privacy. However, this decentralized paradigm exposes vulnerabilities to client-side attacks, particularly untargeted poisoning attacks, which remain underexplored in FKGE and risk severe performance degradation. This paper presents the first systematic investigation of untargeted poisoning attacks on FKGE, unveiling their feasibility at both data and embedding levels. We design three novel poisoning attacks, among which the embedding-level attacks exhibit superior attack efficacy. To mitigate such threats, we further propose a learning-based defense mechanism that leverages embedding density for anomaly detection to identify malicious clients. Our theoretical results substantiate the effectiveness of both the attacks and the defense, and clarify why embedding-level poisoning is especially potent. Extensive experiments demonstrate that the proposed attacks induce significant performance deterioration, with core metrics dropping by up to 93%. Conversely, LDM effectively counters these attacks and restores performance to pre-attack levels or even surpasses them when mitigating embedding-level attacks.