Pigeon-SL: Robust Split Learning Framework for Edge Intelligence under Malicious Clients

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Park, Sangjun, Quek, Tony Q. S., Seo, Hyowoon
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866916879453388800
author Park, Sangjun
Quek, Tony Q. S.
Seo, Hyowoon
author_facet Park, Sangjun
Quek, Tony Q. S.
Seo, Hyowoon
contents Recent advances in split learning (SL) have established it as a promising framework for privacy-preserving, communication-efficient distributed learning at the network edge. However, SL's sequential update process is vulnerable to even a single malicious client, which can significantly degrade model accuracy. To address this, we introduce Pigeon-SL, a novel scheme grounded in the pigeonhole principle that guarantees at least one entirely honest cluster among M clients, even when up to N of them are adversarial. In each global round, the access point partitions the clients into N+1 clusters, trains each cluster independently via vanilla SL, and evaluates their validation losses on a shared dataset. Only the cluster with the lowest loss advances, thereby isolating and discarding malicious updates. We further enhance training and communication efficiency with Pigeon-SL+, which repeats training on the selected cluster to match the update throughput of standard SL. We validate the robustness and effectiveness of our approach under three representative attack models -- label flipping, activation and gradient manipulation -- demonstrating significant improvements in accuracy and resilience over baseline SL methods in future intelligent wireless networks.
format Preprint
id arxiv_https___arxiv_org_abs_2508_02235
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Pigeon-SL: Robust Split Learning Framework for Edge Intelligence under Malicious Clients
Park, Sangjun
Quek, Tony Q. S.
Seo, Hyowoon
Machine Learning
Signal Processing
Recent advances in split learning (SL) have established it as a promising framework for privacy-preserving, communication-efficient distributed learning at the network edge. However, SL's sequential update process is vulnerable to even a single malicious client, which can significantly degrade model accuracy. To address this, we introduce Pigeon-SL, a novel scheme grounded in the pigeonhole principle that guarantees at least one entirely honest cluster among M clients, even when up to N of them are adversarial. In each global round, the access point partitions the clients into N+1 clusters, trains each cluster independently via vanilla SL, and evaluates their validation losses on a shared dataset. Only the cluster with the lowest loss advances, thereby isolating and discarding malicious updates. We further enhance training and communication efficiency with Pigeon-SL+, which repeats training on the selected cluster to match the update throughput of standard SL. We validate the robustness and effectiveness of our approach under three representative attack models -- label flipping, activation and gradient manipulation -- demonstrating significant improvements in accuracy and resilience over baseline SL methods in future intelligent wireless networks.
title Pigeon-SL: Robust Split Learning Framework for Edge Intelligence under Malicious Clients
topic Machine Learning
Signal Processing
url https://arxiv.org/abs/2508.02235