Collaborative Research: SHF: Medium: Approximate Computing for Machine Learning Security: Foundations and Accelerator Design

协作研究:SHF:媒介:机器学习安全的近似计算:基础和加速器设计

基本信息

  • 批准号:
    2212427
  • 负责人:
  • 金额:
    $ 40万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2022
  • 资助国家:
    美国
  • 起止时间:
    2022-08-01 至 2026-07-31
  • 项目状态:
    未结题

项目摘要

Deep Neural Networks (DNNs) are achieving state-of-the-art performance on a large and expanding number of application domains. However, one of the threats to their wide-scale deployment is vulnerability to adversarial machine learning attacks, where an adversary injects small perturbations to the input data that cause the DNN to misclassify, with potentially dangerous outcomes (for example, mistaking a stop sign for a speed limit sign). In this project, the researchers will explore how building DNNs with approximate computing elements improves their robustness to these adversarial attacks. Approximate computing is a technique to build computing elements that are simpler (and therefore higher performing and more sustainable) but do not compute the exact result of an operation. The investigators will explore how to select approximate computing elements and use them in building sustainable DNN accelerators that balance performance, accuracy, and security.The proposal's expected contributions include developing new insights into the relationship between approximation and robustness of DNNs. The project will explore what types of approximation techniques result in effective DNNs that balance accuracy, performance, sustainability, and protection against adversarial attacks and develop optimization frameworks that can find optimal operating points along these dimensions. It will also explore how to build new approximate computing elements specifically targeted toward this application. The project will use these findings to build sustainable, performant, and accurate DNN accelerators. The project will also explore other approximate computing-based techniques to protect against other types of attacks threatening the security and privacy of DNNs, as well as for different deep neural network learning structures. The project is expected to have significant impacts on security, sustainability, and accuracy of machine learning models. The research team will share all of the byproducts of the research with the research community. The project will train graduate and undergraduate students. The investigators will develop new educational material for use in machine learning, computer architecture, and computer security classes.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
深度神经网络(DNNS)正在在大量且不断扩大的应用域上实现最先进的性能。 但是,对其大规模部署的威胁之一是对对抗机器学习攻击的脆弱性,在这种情况下,对手向输入数据注入小小的扰动,这会导致DNN错误分类,并具有潜在的危险结果(例如,将停止符号误以为是速度限制符号)。 在这个项目中,研究人员将探讨使用近似计算元素的构建DNN如何改善其对这些对抗性攻击的稳健性。 近似计算是一种构建更简单的计算元素(因此性能更高,更可持续)但没有计算操作的确切结果的技术。 研究人员将探索如何选择近似计算元素,并将其用于构建可持续的DNN加速器,以平衡性能,准确性和安全性。该提案的预期贡献包括对DNN的近似和稳健性之间的关系开发新的见解。 该项目将探索哪种类型的近似技术会导致有效的DNN,以平衡准确性,性能,可持续性和防止对抗性攻击的保护,并开发可以在这些维度上找到最佳操作点的优化框架。 它还将探讨如何构建针对此应用程序的专门针对的新的近似计算元素。 该项目将使用这些发现来建立可持续,性能和准确的DNN加速器。 该项目还将探索其他基于计算的技术,以防止其他类型的攻击威胁DNN的安全性和隐私以及不同的深神经网络学习结构。 预计该项目将对机器学习模型的安全性,可持续性和准确性产生重大影响。 研究团队将与研究界分享研究的所有副产品。 该项目将培训毕业生和本科生。 调查人员将开发新的教育材料,用于机器学习,计算机架构和计算机安全课程。该奖项反映了NSF的法定任务,并被认为是使用基金会的知识分子优点和更广泛的影响评估标准的评估值得支持的。

项目成果

期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
A Brain-inspired Approach for Malware Detection using Sub-semantic Hardware Features
使用子语义硬件功能检测恶意软件的受大脑启发的方法
SecureVolt: Enhancing Deep Neural Networks Security via Undervolting
VPP: Privacy Preserving Machine Learning via Undervolting
VPP:通过欠压保护隐私的机器学习
Stochastic-HMDs: Adversarial-Resilient Hardware Malware Detectors via Undervolting
随机 HMD:通过欠压实现对抗性弹性硬件恶意软件检测器
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Khaled Khasawneh其他文献

Tu1433 – Risk Factors and Incidence for 30-Day Readmission for Acute Pancreatitis After an Acute Pancreatitis Index Admission Using Nationwide Readmission Database
  • DOI:
    10.1016/s0016-5085(19)39546-0
  • 发表时间:
    2019-05-01
  • 期刊:
  • 影响因子:
  • 作者:
    Neal Mehta;Ron T. Varghese;Khaled Khasawneh;Benjamin Tharian;Shashank Garg;Sumant Inamdar
  • 通讯作者:
    Sumant Inamdar
Su1679 RISK FACTORS FOR READMISSION WITH DECOMPENSATED CIRRHOSIS WITHIN 30-DAYS OF A DECOMPENSATED CIRRHOSIS ADMISSION: A NATIONWIDE ANALYSIS.
  • DOI:
    10.1016/s0016-5085(20)32230-7
  • 发表时间:
    2020-05-01
  • 期刊:
  • 影响因子:
  • 作者:
    Neal Mehta;Khaled Khasawneh;Gilbert-Roy Kamoga;Sumant Inamdar
  • 通讯作者:
    Sumant Inamdar
Diffuse Alveolar Hemorrhage in the Setting of Scleroderma Renal Crisis
  • DOI:
    10.1378/chest.1703934
  • 发表时间:
    2013-10-01
  • 期刊:
  • 影响因子:
  • 作者:
    Brendon Colaco;Khaled Khasawneh
  • 通讯作者:
    Khaled Khasawneh

Khaled Khasawneh的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Khaled Khasawneh', 18)}}的其他基金

Collaborative Research: SaTC: CORE: Medium: Targeted Microarchitectural Attacks and Defenses in Cloud Infrastructure
协作研究:SaTC:核心:中:云基础设施中的有针对性的微架构攻击和防御
  • 批准号:
    2155002
  • 财政年份:
    2022
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant

相似国自然基金

支持二维毫米波波束扫描的微波/毫米波高集成度天线研究
  • 批准号:
    62371263
  • 批准年份:
    2023
  • 资助金额:
    52 万元
  • 项目类别:
    面上项目
腙的Heck/脱氮气重排串联反应研究
  • 批准号:
    22301211
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目
水系锌离子电池协同性能调控及枝晶抑制机理研究
  • 批准号:
    52364038
  • 批准年份:
    2023
  • 资助金额:
    33 万元
  • 项目类别:
    地区科学基金项目
基于人类血清素神经元报告系统研究TSPYL1突变对婴儿猝死综合征的致病作用及机制
  • 批准号:
    82371176
  • 批准年份:
    2023
  • 资助金额:
    49 万元
  • 项目类别:
    面上项目
FOXO3 m6A甲基化修饰诱导滋养细胞衰老效应在补肾法治疗自然流产中的机制研究
  • 批准号:
    82305286
  • 批准年份:
    2023
  • 资助金额:
    30 万元
  • 项目类别:
    青年科学基金项目

相似海外基金

Collaborative Research: SHF: Medium: Differentiable Hardware Synthesis
合作研究:SHF:媒介:可微分硬件合成
  • 批准号:
    2403134
  • 财政年份:
    2024
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Small: LEGAS: Learning Evolving Graphs At Scale
协作研究:SHF:小型:LEGAS:大规模学习演化图
  • 批准号:
    2331302
  • 财政年份:
    2024
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Small: LEGAS: Learning Evolving Graphs At Scale
协作研究:SHF:小型:LEGAS:大规模学习演化图
  • 批准号:
    2331301
  • 财政年份:
    2024
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Small: Efficient and Scalable Privacy-Preserving Neural Network Inference based on Ciphertext-Ciphertext Fully Homomorphic Encryption
合作研究:SHF:小型:基于密文-密文全同态加密的高效、可扩展的隐私保护神经网络推理
  • 批准号:
    2412357
  • 财政年份:
    2024
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
Collaborative Research: SHF: Medium: Enabling Graphics Processing Unit Performance Simulation for Large-Scale Workloads with Lightweight Simulation Methods
合作研究:SHF:中:通过轻量级仿真方法实现大规模工作负载的图形处理单元性能仿真
  • 批准号:
    2402804
  • 财政年份:
    2024
  • 资助金额:
    $ 40万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了