Matches in SemOpenAlex for { <https://semopenalex.org/work/W4312596145> ?p ?o ?g. }
Showing items 1 to 99 of
99
with 100 items per page.
- W4312596145 endingPage "413" @default.
- W4312596145 startingPage "401" @default.
- W4312596145 abstract "Rowhammer Attack, a new DRAM-based attack, was developed exploiting weak cells to alter their content. Such attacks can be launched at the user level without requiring access permission to the victim memory cells. Leveraging such attacks, a new bit-flip-based adversarial weights attack (BFA) was developed targeting deep neural network models. When BFA attackers acquire a DNN model, they manipulate the existing DNN adversarial attack into locating vulnerable bits in the target DNN model. By flipping a subset of them using Rowhammer, they can crash that model within 30 trails. In this paper, we propose a lightweight and easy-to-deploy defense mechanism in the bit-level, Randomized Rotated and Nonlinear Encoding (RREC), which generates both robustness and fault-tolerant against BFA. Since flipping the most significant bit (MSB) in quantized data is too dangerous, we introduce randomized Rotation to obfuscate the bit order of model data and efficiently hide truly vulnerable bits with less vulnerable ones. Further, RREC reduces the average bit-flipped distance by more than 3x from the nonlinear encoding. It decreases the bit-flip distance among the majority of bits (including those vulnerable bits). Theoretically, RREC minimized the impact of a single bit BFA to 1/24 compared with baseline. Experimentally, RREC tolerates more than 17x flipped bits versus baseline model and 4.8x and 5.7x more bits compared with the existing BFA defenses (4B QAT and WR) with 0.01x to 0.08x of runtime latency. Moreover, we evaluate RREC against a newly emerged attack, Targeted-BFA, and it improves the defense rate from <inline-formula><tex-math notation=LaTeX>$5%$</tex-math></inline-formula> to <inline-formula><tex-math notation=LaTeX>$95%$</tex-math></inline-formula> ." @default.
- W4312596145 created "2023-01-05" @default.
- W4312596145 creator A5026996875 @default.
- W4312596145 creator A5030384645 @default.
- W4312596145 creator A5044443649 @default.
- W4312596145 creator A5047799795 @default.
- W4312596145 creator A5049646773 @default.
- W4312596145 date "2023-02-01" @default.
- W4312596145 modified "2023-10-03" @default.
- W4312596145 title "Generating Robust DNN With Resistance to Bit-Flip Based Adversarial Weight Attack" @default.
- W4312596145 cites W2120775753 @default.
- W4312596145 cites W2155883880 @default.
- W4312596145 cites W2157116240 @default.
- W4312596145 cites W2337480911 @default.
- W4312596145 cites W2404948481 @default.
- W4312596145 cites W2522718524 @default.
- W4312596145 cites W2593313312 @default.
- W4312596145 cites W2612687770 @default.
- W4312596145 cites W2628319348 @default.
- W4312596145 cites W2963122961 @default.
- W4312596145 cites W2963273111 @default.
- W4312596145 cites W2963367920 @default.
- W4312596145 cites W2963480671 @default.
- W4312596145 cites W2964333506 @default.
- W4312596145 cites W2974891422 @default.
- W4312596145 cites W2981860227 @default.
- W4312596145 cites W2984103614 @default.
- W4312596145 cites W3002446690 @default.
- W4312596145 cites W3034665124 @default.
- W4312596145 cites W3092411122 @default.
- W4312596145 cites W3102836279 @default.
- W4312596145 cites W3102933117 @default.
- W4312596145 cites W4233459511 @default.
- W4312596145 cites W4242053016 @default.
- W4312596145 doi "https://doi.org/10.1109/tc.2022.3211411" @default.
- W4312596145 hasPublicationYear "2023" @default.
- W4312596145 type Work @default.
- W4312596145 citedByCount "2" @default.
- W4312596145 countsByYear W43125961452023 @default.
- W4312596145 crossrefType "journal-article" @default.
- W4312596145 hasAuthorship W4312596145A5026996875 @default.
- W4312596145 hasAuthorship W4312596145A5030384645 @default.
- W4312596145 hasAuthorship W4312596145A5044443649 @default.
- W4312596145 hasAuthorship W4312596145A5047799795 @default.
- W4312596145 hasAuthorship W4312596145A5049646773 @default.
- W4312596145 hasConcept C104317684 @default.
- W4312596145 hasConcept C11413529 @default.
- W4312596145 hasConcept C117011727 @default.
- W4312596145 hasConcept C125411270 @default.
- W4312596145 hasConcept C154945302 @default.
- W4312596145 hasConcept C185592680 @default.
- W4312596145 hasConcept C31258907 @default.
- W4312596145 hasConcept C33923547 @default.
- W4312596145 hasConcept C37736160 @default.
- W4312596145 hasConcept C41008148 @default.
- W4312596145 hasConcept C55493867 @default.
- W4312596145 hasConcept C63479239 @default.
- W4312596145 hasConcept C7366592 @default.
- W4312596145 hasConcept C76155785 @default.
- W4312596145 hasConcept C82876162 @default.
- W4312596145 hasConcept C9390403 @default.
- W4312596145 hasConcept C94375191 @default.
- W4312596145 hasConceptScore W4312596145C104317684 @default.
- W4312596145 hasConceptScore W4312596145C11413529 @default.
- W4312596145 hasConceptScore W4312596145C117011727 @default.
- W4312596145 hasConceptScore W4312596145C125411270 @default.
- W4312596145 hasConceptScore W4312596145C154945302 @default.
- W4312596145 hasConceptScore W4312596145C185592680 @default.
- W4312596145 hasConceptScore W4312596145C31258907 @default.
- W4312596145 hasConceptScore W4312596145C33923547 @default.
- W4312596145 hasConceptScore W4312596145C37736160 @default.
- W4312596145 hasConceptScore W4312596145C41008148 @default.
- W4312596145 hasConceptScore W4312596145C55493867 @default.
- W4312596145 hasConceptScore W4312596145C63479239 @default.
- W4312596145 hasConceptScore W4312596145C7366592 @default.
- W4312596145 hasConceptScore W4312596145C76155785 @default.
- W4312596145 hasConceptScore W4312596145C82876162 @default.
- W4312596145 hasConceptScore W4312596145C9390403 @default.
- W4312596145 hasConceptScore W4312596145C94375191 @default.
- W4312596145 hasIssue "2" @default.
- W4312596145 hasLocation W43125961451 @default.
- W4312596145 hasOpenAccess W4312596145 @default.
- W4312596145 hasPrimaryLocation W43125961451 @default.
- W4312596145 hasRelatedWork W2051801288 @default.
- W4312596145 hasRelatedWork W2947920725 @default.
- W4312596145 hasRelatedWork W3094843325 @default.
- W4312596145 hasRelatedWork W3112862192 @default.
- W4312596145 hasRelatedWork W3142814525 @default.
- W4312596145 hasRelatedWork W4221146314 @default.
- W4312596145 hasRelatedWork W4225161019 @default.
- W4312596145 hasRelatedWork W4312326921 @default.
- W4312596145 hasRelatedWork W4315780078 @default.
- W4312596145 hasRelatedWork W4385573583 @default.
- W4312596145 hasVolume "72" @default.
- W4312596145 isParatext "false" @default.
- W4312596145 isRetracted "false" @default.
- W4312596145 workType "article" @default.