English

FedZKP: Federated Model Ownership Verification with Zero-knowledge Proof

Cryptography and Security 2023-05-11 v2 Artificial Intelligence

Abstract

Federated learning (FL) allows multiple parties to cooperatively learn a federated model without sharing private data with each other. The need of protecting such federated models from being plagiarized or misused, therefore, motivates us to propose a provable secure model ownership verification scheme using zero-knowledge proof, named FedZKP. It is shown that the FedZKP scheme without disclosing credentials is guaranteed to defeat a variety of existing and potential attacks. Both theoretical analysis and empirical studies demonstrate the security of FedZKP in the sense that the probability for attackers to breach the proposed FedZKP is negligible. Moreover, extensive experimental results confirm the fidelity and robustness of our scheme.

Keywords

Cite

@article{arxiv.2305.04507,
  title  = {FedZKP: Federated Model Ownership Verification with Zero-knowledge Proof},
  author = {Wenyuan Yang and Yuguo Yin and Gongxi Zhu and Hanlin Gu and Lixin Fan and Xiaochun Cao and Qiang Yang},
  journal= {arXiv preprint arXiv:2305.04507},
  year   = {2023}
}
R2 v1 2026-06-28T10:28:24.203Z