Loading [MathJax]/extensions/MathMenu.js
Extraction of Binarized Neural Network Architecture and Secret Parameters Using Side-Channel Information | IEEE Conference Publication | IEEE Xplore

Extraction of Binarized Neural Network Architecture and Secret Parameters Using Side-Channel Information


Abstract:

In recent years, neural networks have been applied to various applications. To speed up the evaluation, a method using binarized network weights has been introduced, faci...Show More

Abstract:

In recent years, neural networks have been applied to various applications. To speed up the evaluation, a method using binarized network weights has been introduced, facilitating extremely efficient hardware implementation. Using electromagnetic (EM) side-channel analysis techniques, this study presents a framework of model extraction from practical binarized neural network (BNN) hardware. The target BNN hardware is generated and synthesized using open-source and commercial high-level synthesis tools GUINNESS and Xilinx SDSoC, respectively. With the hardware implemented on an up-to-date FPGA chip, we demonstrate how the layers can be identified from a single EM trace measured during the network evaluation, and we also demonstrate how an attacker may use side-channel attacks to recover secret weights used in the network.
Date of Conference: 22-28 May 2021
Date Added to IEEE Xplore: 27 April 2021
Print ISBN:978-1-7281-9201-7
Print ISSN: 2158-1525
Conference Location: Daegu, Korea

Contact IEEE to Subscribe

References

References is not available for this document.