Matches in SemOpenAlex for { <https://semopenalex.org/work/W3170672068> ?p ?o ?g. }
- W3170672068 abstract "Deep Neural Networks (DNNs) are employed in an increasing number of applications, some of which are safety critical. Unfortunately, DNNs are known to be vulnerable to so-called adversarial attacks that manipulate inputs to cause incorrect results that can be beneficial to an attacker or damaging to the victim. Multiple defenses have been proposed to increase the robustness of DNNs. In general, these defenses have high overhead, some require attack-specific re-training of the model or careful tuning to adapt to different attacks. This paper presents HASI, a hardware-accelerated defense that uses a process we call stochastic inference to detect adversarial inputs. We show that by carefully injecting noise into the model at inference time, we can differentiate adversarial inputs from benign ones. HASI uses the output distribution characteristics of noisy inference compared to a non-noisy reference to detect adversarial inputs. We show an adversarial detection rate of 86% when applied to VGG16 and 93% when applied to ResNet50, which exceeds the detection rate of the state of the art approaches, with a much lower overhead. We demonstrate two software/hardware-accelerated co-designs, which reduces the performance impact of stochastic inference to 1.58X-2X relative to the unprotected baseline, compared to 15X-20X overhead for a software-only GPU implementation." @default.
- W3170672068 created "2021-06-22" @default.
- W3170672068 creator A5009379780 @default.
- W3170672068 creator A5067555740 @default.
- W3170672068 creator A5079796402 @default.
- W3170672068 creator A5091455049 @default.
- W3170672068 date "2021-06-09" @default.
- W3170672068 modified "2023-09-27" @default.
- W3170672068 title "HASI: Hardware-Accelerated Stochastic Inference, A Defense Against Adversarial Machine Learning Attacks." @default.
- W3170672068 cites W1686810756 @default.
- W3170672068 cites W2117130368 @default.
- W3170672068 cites W2163605009 @default.
- W3170672068 cites W2180612164 @default.
- W3170672068 cites W2194775991 @default.
- W3170672068 cites W2243397390 @default.
- W3170672068 cites W2543927648 @default.
- W3170672068 cites W2754049786 @default.
- W3170672068 cites W2911634294 @default.
- W3170672068 cites W2914897181 @default.
- W3170672068 cites W2947133760 @default.
- W3170672068 cites W2962700793 @default.
- W3170672068 cites W2963148663 @default.
- W3170672068 cites W2963158386 @default.
- W3170672068 cites W2963207607 @default.
- W3170672068 cites W2963542245 @default.
- W3170672068 cites W2963612069 @default.
- W3170672068 cites W2963679289 @default.
- W3170672068 cites W2963857521 @default.
- W3170672068 cites W2963952467 @default.
- W3170672068 cites W2964082701 @default.
- W3170672068 cites W2964153729 @default.
- W3170672068 cites W2964224652 @default.
- W3170672068 cites W2964253222 @default.
- W3170672068 cites W2964308564 @default.
- W3170672068 cites W2971180473 @default.
- W3170672068 cites W3011915968 @default.
- W3170672068 cites W3101882350 @default.
- W3170672068 cites W3102587717 @default.
- W3170672068 cites W3103340107 @default.
- W3170672068 hasPublicationYear "2021" @default.
- W3170672068 type Work @default.
- W3170672068 sameAs 3170672068 @default.
- W3170672068 citedByCount "0" @default.
- W3170672068 crossrefType "posted-content" @default.
- W3170672068 hasAuthorship W3170672068A5009379780 @default.
- W3170672068 hasAuthorship W3170672068A5067555740 @default.
- W3170672068 hasAuthorship W3170672068A5079796402 @default.
- W3170672068 hasAuthorship W3170672068A5091455049 @default.
- W3170672068 hasConcept C104317684 @default.
- W3170672068 hasConcept C111919701 @default.
- W3170672068 hasConcept C113775141 @default.
- W3170672068 hasConcept C119857082 @default.
- W3170672068 hasConcept C154945302 @default.
- W3170672068 hasConcept C185592680 @default.
- W3170672068 hasConcept C199360897 @default.
- W3170672068 hasConcept C2776214188 @default.
- W3170672068 hasConcept C2777904410 @default.
- W3170672068 hasConcept C2778403875 @default.
- W3170672068 hasConcept C2779960059 @default.
- W3170672068 hasConcept C2984842247 @default.
- W3170672068 hasConcept C37736160 @default.
- W3170672068 hasConcept C41008148 @default.
- W3170672068 hasConcept C50644808 @default.
- W3170672068 hasConcept C55493867 @default.
- W3170672068 hasConcept C63479239 @default.
- W3170672068 hasConceptScore W3170672068C104317684 @default.
- W3170672068 hasConceptScore W3170672068C111919701 @default.
- W3170672068 hasConceptScore W3170672068C113775141 @default.
- W3170672068 hasConceptScore W3170672068C119857082 @default.
- W3170672068 hasConceptScore W3170672068C154945302 @default.
- W3170672068 hasConceptScore W3170672068C185592680 @default.
- W3170672068 hasConceptScore W3170672068C199360897 @default.
- W3170672068 hasConceptScore W3170672068C2776214188 @default.
- W3170672068 hasConceptScore W3170672068C2777904410 @default.
- W3170672068 hasConceptScore W3170672068C2778403875 @default.
- W3170672068 hasConceptScore W3170672068C2779960059 @default.
- W3170672068 hasConceptScore W3170672068C2984842247 @default.
- W3170672068 hasConceptScore W3170672068C37736160 @default.
- W3170672068 hasConceptScore W3170672068C41008148 @default.
- W3170672068 hasConceptScore W3170672068C50644808 @default.
- W3170672068 hasConceptScore W3170672068C55493867 @default.
- W3170672068 hasConceptScore W3170672068C63479239 @default.
- W3170672068 hasLocation W31706720681 @default.
- W3170672068 hasOpenAccess W3170672068 @default.
- W3170672068 hasPrimaryLocation W31706720681 @default.
- W3170672068 hasRelatedWork W2773246606 @default.
- W3170672068 hasRelatedWork W2900818629 @default.
- W3170672068 hasRelatedWork W2915576822 @default.
- W3170672068 hasRelatedWork W2977839830 @default.
- W3170672068 hasRelatedWork W2981135624 @default.
- W3170672068 hasRelatedWork W2997528904 @default.
- W3170672068 hasRelatedWork W3003304280 @default.
- W3170672068 hasRelatedWork W3011544674 @default.
- W3170672068 hasRelatedWork W3016758115 @default.
- W3170672068 hasRelatedWork W3035479291 @default.
- W3170672068 hasRelatedWork W3044388895 @default.
- W3170672068 hasRelatedWork W3088168038 @default.
- W3170672068 hasRelatedWork W3101882350 @default.
- W3170672068 hasRelatedWork W3109936213 @default.
- W3170672068 hasRelatedWork W3117928012 @default.