Abstract
Federated Learning (FL) enables multiple clients, such as mobile phones andIoT devices, to collaboratively train a global machine learning model whilekeeping their data localized. However, recent studies have revealed that thetraining phase of FL is vulnerable to reconstruction attacks, such as attributeinference attacks (AIA), where adversaries exploit exchanged messages andauxiliary public information to uncover sensitive attributes of targetedclients. While these attacks have been extensively studied in the context ofclassification tasks, their impact on regression tasks remains largelyunexplored. In this paper, we address this gap by proposing novel model-basedAIAs specifically designed for regression tasks in FL environments. Ourapproach considers scenarios where adversaries can either eavesdrop onexchanged messages or directly interfere with the training process. Webenchmark our proposed attacks against state-of-the-art methods usingreal-world datasets. The results demonstrate a significant increase inreconstruction accuracy, particularly in heterogeneous client datasets, acommon scenario in FL. The efficacy of our model-based AIAs makes them bettercandidates for empirically quantifying privacy leakage for federated regressiontasks.