Compilation as a Defense: Enhancing DL Model Attack Robustness via Tensor Optimization

Stefan Trawicki, William Hackett, Lewis Birch,Neeraj Suri,Peter Garraghan

CoRR(2023)

引用 0|浏览4
暂无评分
摘要
Adversarial Machine Learning (AML) is a rapidly growing field of security research, with an often overlooked area being model attacks through side-channels. Previous works show such attacks to be serious threats, though little progress has been made on efficient remediation strategies that avoid costly model re-engineering. This work demonstrates a new defense against AML side-channel attacks using model compilation techniques, namely tensor optimization. We show relative model attack effectiveness decreases of up to 43% using tensor optimization, discuss the implications, and direction of future work.
更多
查看译文
关键词
dl model attack robustness,tensor optimization,defense
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要