{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,11]],"date-time":"2026-07-11T17:28:44Z","timestamp":1783790924564,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":52,"publisher":"ACM","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2025,11,19]]},"DOI":"10.1145\/3719027.3765216","type":"proceedings-article","created":{"date-parts":[[2025,11,22]],"date-time":"2025-11-22T23:33:16Z","timestamp":1763854396000},"page":"2219-2233","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":2,"title":["Armadillo: Robust Single-Server Secure Aggregation for Federated Learning with Input Validation"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3183-9402","authenticated-orcid":false,"given":"Yiping","family":"Ma","sequence":"first","affiliation":[{"name":"University of Pennsylvania, Philadelphia, Pennsylvania, USA and UC Berkeley, Berkeley, California, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0712-6656","authenticated-orcid":false,"given":"Yue","family":"Guo","sequence":"additional","affiliation":[{"name":"JP Morgan AI Research and AlgoCRYPT CoE, New York, New York, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1787-4906","authenticated-orcid":false,"given":"Harish","family":"Karthikeyan","sequence":"additional","affiliation":[{"name":"JP Morgan AI Research and AlgoCRYPT CoE, New York, New York, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0003-0125-2971","authenticated-orcid":false,"given":"Antigoni","family":"Polychroniadou","sequence":"additional","affiliation":[{"name":"J.P. Morgan AI Research and AlgoCRYPT CoE, New York, New York, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2025,11,22]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-14791-3_23"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1515\/jmc-2015-0016"},{"key":"e_1_3_2_1_3_1","unstructured":"Bar Alon Moni Naor Eran Omri and Uri Stemmer. 2022. MPC for Tech Giants (GMPC): Enabling Gulliver and the Lilliputians to Cooperate Amicably. (2022). https:\/\/eprint.iacr.org\/2022\/902."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/3579856.3595805"},{"key":"e_1_3_2_1_5_1","volume-title":"ACORN: Input Validation for Secure Aggregation. 32nd USENIX Security Symposium, USENIX Security 2023","author":"Bell James","year":"2023","unstructured":"James Bell, Adri\u00e0 Gasc\u00f3n, Tancr\u00e8de Lepoint, Baiyu Li, Sarah Meiklejohn, Mariana Raykova, and Cathie Yun. 2023. ACORN: Input Validation for Secure Aggregation. 32nd USENIX Security Symposium, USENIX Security 2023, Anaheim, CA, USA, August 9-11, 2023, Joseph A. Calandrino and Carmela Troncoso (Eds.). USENIX Association, Anaheim, CA, USA, 4805-4822. https:\/\/www.usenix.org\/conference\/usenixsecurity23\/presentation\/bell"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417885"},{"key":"e_1_3_2_1_7_1","volume-title":"Willow: Secure Aggregation with One-Shot Clients. Cryptology ePrint Archive, Report 2024\/936.","author":"Bell-Clark James","year":"2024","unstructured":"James Bell-Clark, Adri\u00e0 Gasc\u00f3n, Baiyu Li, Mariana Raykova, and Phillipp Schoppmann. 2024. Willow: Secure Aggregation with One-Shot Clients. Cryptology ePrint Archive, Report 2024\/936. (2024). https:\/\/eprint.iacr.org\/2024\/936"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/BFb0054130"},{"key":"e_1_3_2_1_9_1","volume-title":"International Conference on Learning Representations (ICLR) \u2013 Poster Track. OpenReview.net. https:\/\/openreview.net\/forum?id=BJxhijAcY7","author":"Bernstein Jeremy","year":"2019","unstructured":"Jeremy Bernstein, Jiawei Zhao, Kamyar Azizzadenesheli, and Anima Anandkumar. 2019. signSGD with Majority Vote is Communication Efficient and Fault Tolerant. In International Conference on Learning Representations (ICLR) \u2013 Poster Track. OpenReview.net. https:\/\/openreview.net\/forum?id=BJxhijAcY7"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133982"},{"key":"e_1_3_2_1_11_1","volume-title":"https:\/\/jbootle.github.io\/Misc\/pippenger.pdf","author":"Bootle Jonathan","year":"2017","unstructured":"Jonathan Bootle. 2017. Efficient Multi-Exponentiation. (2017). https:\/\/jbootle.github.io\/Misc\/pippenger.pdf."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00020"},{"key":"e_1_3_2_1_13_1","volume-title":"ABIDES: Agent-Based Interactive Discrete Event Simulation environment. https:\/\/github.com\/abides-sim\/abides.","author":"Byrd David","year":"2020","unstructured":"David Byrd, Maria Hybinette, and Tucker Hybinette Balch. 2020. ABIDES: Agent-Based Interactive Discrete Event Simulation environment. https:\/\/github.com\/abides-sim\/abides. (2020)."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-61204-1_27"},{"key":"e_1_3_2_1_15_1","unstructured":"Hao Chen Lynn Chua Kristin Lauter and Yongsoo Song. 2020. On the concrete security of LWE with small secret. (2020). https:\/\/eprint.iacr.org\/2020\/539.pdf."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560611"},{"key":"e_1_3_2_1_17_1","unstructured":"Cloudflare. 2025. Cloudflare Randomness Beacon. https:\/\/developers.cloudflare.com\/randomness-beacon\/. (2025)."},{"key":"e_1_3_2_1_18_1","volume-title":"Proceedings of the 14th USENIX Conference on Networked Systems Design and Implementation (NSDI'17)","author":"Corrigan-Gibbs Henry","year":"2017","unstructured":"Henry Corrigan-Gibbs and Dan Boneh. 2017. Prio: private, robust, and scalable computation of aggregate statistics. In Proceedings of the 14th USENIX Conference on Networked Systems Design and Implementation (NSDI'17). USENIX Association, USA, 259\u2013282."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-56880-1_12"},{"key":"e_1_3_2_1_20_1","first-page":"1145","volume-title":"Proceedings of the 35th International Conference on Machine Learning (ICML) (Proceedings of Machine Learning Research), Jennifer Dy and Andreas Krause (Eds.)","volume":"80","author":"Damaskinos Georgios","year":"2018","unstructured":"Georgios Damaskinos, El Mahdi El Mhamdi, Rachid Guerraoui, Rhicheek Patra, and Mahsa Taziki. 2018. Asynchronous Byzantine Machine Learning (the case of SGD). In Proceedings of the 35th International Conference on Machine Learning (ICML) (Proceedings of Machine Learning Research), Jennifer Dy and Andreas Krause (Eds.), Vol. 80. PMLR, 1145-1154. https:\/\/proceedings.mlr.press\/v80\/damaskinos18a.html"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833580"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2023-0022"},{"key":"e_1_3_2_1_23_1","unstructured":"Henry de Valence Cathie Yun and Oleg Andreev. 2018. Bulletproof implementation based on delak-cryptography. (2018). https:\/\/github.com\/dalek-cryptography\/bulletproofs."},{"key":"e_1_3_2_1_24_1","first-page":"1605","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Fang Minghong","year":"2020","unstructured":"Minghong Fang, Xiaoyu Cao, Jinyuan Jia, and Neil Gong. 2020. Local Model Poisoning Attacks to Byzantine-Robust Federated Learning. In 29th USENIX Security Symposium (USENIX Security 20). USENIX Association, 1605-1622. https:\/\/www.usenix.org\/conference\/usenixsecurity20\/presentation\/fang"},{"key":"e_1_3_2_1_25_1","volume-title":"https:\/\/hackmd.io\/@tazAymRSQCGXTUKkbh1BAg\/Sk27liTW9","author":"Feng Boyuan","year":"2023","unstructured":"Boyuan Feng. 2023. Multi-scalar Multiplication (MSM). (2023). https:\/\/hackmd.io\/@tazAymRSQCGXTUKkbh1BAg\/Sk27liTW9."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/129712.129780"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-06944-4_16"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.56553\/POPETS-2024-0077"},{"key":"e_1_3_2_1_29_1","unstructured":"Florian Hartmann and Peter Kairouz. 2024. Distributed Differential Privacy for Federated Learning. (2024). https:\/\/research.google\/blog\/distributed-differential-privacy-for-federated-learning\/."},{"key":"e_1_3_2_1_30_1","first-page":"3889","volume-title":"Proceedings of the USENIX Security Symposium, Joseph A. Calandrino and Carmela Troncoso (Eds.). USENIX Association","author":"Henzinger Alexandra","year":"2023","unstructured":"Alexandra Henzinger, Matthew M. Hong, Henry Corrigan-Gibbs, Sarah Meiklejohn, and Vinod Vaikuntanathan. 2023. One Server for the Price of Two: Simple and Fast Single-Server Private Information Retrieval. In Proceedings of the USENIX Security Symposium, Joseph A. Calandrino and Carmela Troncoso (Eds.). USENIX Association, Anaheim, CA, USA, 3889-3905."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-68382-4_7"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1561\/2200000083"},{"key":"e_1_3_2_1_33_1","volume-title":"OPA: One-shot Private Aggregation with Single Client Interaction and its Applications to Federated Learning.","author":"Karthikeyan Harish","year":"2024","unstructured":"Harish Karthikeyan and Antigoni Polychroniadou. 2024. OPA: One-shot Private Aggregation with Single Client Interaction and its Applications to Federated Learning. (2024). https:\/\/eprint.iacr.org\/2024\/723."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-99-8721-4_10"},{"key":"e_1_3_2_1_35_1","volume-title":"Proceedings of the 38th Conference on Uncertainty in Artificial Intelligence (UAI). Association for Uncertainty in Artificial Intelligence (AUAI)","author":"Liu Zizhen","year":"2022","unstructured":"Zizhen Liu, Si Chen, Jing Ye, Junfeng Fan, Huawei Li, and Xiaowei Li. 2022. SASH: Efficient Secure Aggregation Based on SHPRG for Federated Learning. In Proceedings of the 38th Conference on Uncertainty in Artificial Intelligence (UAI). Association for Uncertainty in Artificial Intelligence (AUAI), Eindhoven, The Netherlands."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179400"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-75245-3_9"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179434"},{"key":"e_1_3_2_1_39_1","volume-title":"Proceedings of the Artificial Intelligence and Statistics Conference (AISTATS).","author":"McMahan H. Brendan","year":"2017","unstructured":"H. Brendan McMahan, Eider Moore, Daniel Ramage, Seth Hampson, and Blaise Aguera y Arcas. 2017. Communication-Efficient Learning of Deep Networks from Decentralized Data. In Proceedings of the Artificial Intelligence and Statistics Conference (AISTATS)."},{"key":"e_1_3_2_1_40_1","volume-title":"Mario: Multi-round Multiple-Aggregator Secure Aggregation with Robustness against Malicious Actors. Cryptology ePrint Archive, Paper 2024\/1428.","author":"Nguyen Truong Son","year":"2024","unstructured":"Truong Son Nguyen, Tancr\u00e8de Lepoint, and Ni Trieu. 2024. Mario: Multi-round Multiple-Aggregator Secure Aggregation with Robustness against Malicious Actors. Cryptology ePrint Archive, Paper 2024\/1428. (2024). https:\/\/eprint.iacr.org\/2024\/1428"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560557"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1137\/0209022"},{"key":"e_1_3_2_1_43_1","volume-title":"Shallit","author":"Rabin Michael O.","year":"1986","unstructured":"Michael O. Rabin and Jeffery O. Shallit. 1986. Randomized algorithms in number theory. (1986)."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179468"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1145\/1060590.1060603"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/359168.359176"},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","unstructured":"Jinhyun So Ramy E. Ali Ba\u015fak G\u00fcler Jiantao Jiao and A. Salman Avestimehr. 2023. Securing secure aggregation: mitigating multi-round privacy leakage in federated learning. In Proceedings of the Thirty-Seventh AAAI Conference on Artificial Intelligence and Thirty-Fifth Conference on Innovative Applications of Artificial Intelligence and Thirteenth Symposium on Educational Advances in Artificial Intelligence (AAAI'23\/IAAI'23\/EAAI'23). AAAI Press Washington DC USA Article 1108 10 pages. https:\/\/doi.org\/10.1609\/aaai.v37i8.26177","DOI":"10.1609\/aaai.v37i8.26177"},{"key":"e_1_3_2_1_48_1","volume-title":"Proceedings of the Fifth Conference on Machine Learning and Systems, MLSys 2022","author":"So Jinhyun","year":"2022","unstructured":"Jinhyun So, Corey J. Nolet, Chien-Sheng Yang, Songze Li, Qian Yu, Ramy E. Ali, Basak Guler, and Salman Avestimehr. 2022. LightSecAgg: a Lightweight and Versatile Design for Secure Aggregation in Federated Learning. In Proceedings of the Fifth Conference on Machine Learning and Systems, MLSys 2022, Santa Clara, CA, USA, August 29 - September 1, 2022, Diana Marculescu, Yuejie Chi, and Carole-Jean Wu (Eds.). mlsys.org, Santa Clara, CA, USA. https:\/\/proceedings.mlsys.org\/paper_files\/paper\/2022\/hash\/6c44dc73014d66ba49b28d483a8f8b0d-Abstract.html"},{"key":"e_1_3_2_1_49_1","first-page":"1379","volume-title":"Proceedings of the USENIX Security Symposium, Kevin R. B. Butler and Kurt Thomas (Eds.). USENIX Association","author":"Stevens Timothy","year":"2022","unstructured":"Timothy Stevens, Christian Skalka, Christelle Vincent, John Ring, Samuel Clark, and Joseph Near. 2022. Efficient Differentially Private Secure Aggregation for Federated Learning via Hardness of Learning with Errors. In Proceedings of the USENIX Security Symposium, Kevin R. B. Butler and Kurt Thomas (Eds.). USENIX Association, Boston, MA, USA, 1379-1395."},{"key":"e_1_3_2_1_50_1","volume-title":"NeurIPS 2019 Federated Learning for Data Privacy and Confidentiality Workshop. arXiv preprint arXiv:1911","author":"Sun Ziteng","year":"2019","unstructured":"Ziteng Sun, Peter Kairouz, Ananda Theertha Suresh, and H. Brendan McMahan. 2019. Can You Really Backdoor Federated Learning?. In NeurIPS 2019 Federated Learning for Data Privacy and Confidentiality Workshop. arXiv preprint arXiv:1911.07963."},{"key":"e_1_3_2_1_51_1","volume-title":"Model Poisoning Attacks to Federated Learning via Multi-Round Consistency. CoRR","author":"Xie Yueqi","year":"2024","unstructured":"Yueqi Xie, Minghong Fang, and Neil Zhenqiang Gong. 2024. Model Poisoning Attacks to Federated Learning via Multi-Round Consistency. CoRR, Vol. abs\/2404.15611 (2024). arXiv:cs.CR\/2404.15611"},{"key":"e_1_3_2_1_52_1","unstructured":"Yulin Zhao Hualin Zhou and Zhiguo Wan. 2024. SuperFL: Privacy-Preserving Federated Learning with Efficiency and Robustness. Cryptology ePrint Archive Paper 2024\/081. (2024). https:\/\/eprint.iacr.org\/2024\/081 https:\/\/eprint.iacr.org\/2024\/081."}],"event":{"name":"CCS '25: ACM SIGSAC Conference on Computer and Communications Security","location":"Taipei Taiwan","acronym":"CCS '25","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3719027.3765216","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,12,22]],"date-time":"2025-12-22T22:15:49Z","timestamp":1766441749000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3719027.3765216"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,11,19]]},"references-count":52,"alternative-id":["10.1145\/3719027.3765216","10.1145\/3719027"],"URL":"https:\/\/doi.org\/10.1145\/3719027.3765216","relation":{},"subject":[],"published":{"date-parts":[[2025,11,19]]},"assertion":[{"value":"2025-11-22","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}