paper-with-me

홈 › Papers

Accelerating 2PC-based ML with Limited Trusted Hardware

2020-09-11 · Muqsit Nawaz, Aditya Gulati, Kunlong Liu, Vishwajeet Agrawal, Prabhanjan Ananth, Trinabh Gupta

This paper describes the design, implementation, and evaluation of Otak, a system that allows two non-colluding cloud providers to run machine learning (ML) inference without knowing the inputs to inference. Prior work for this problem mostly relies on advanced cryptography such as two-party secure computation (2PC) protocols that provide rigorous guarantees but suffer from high resource overhead. Otak improves efficiency via a new 2PC protocol that (i) tailors recent primitives such as function and homomorphic secret sharing to ML inference, and (ii) uses trusted hardware in a limited capacity to bootstrap the protocol. At the same time, Otak reduces trust assumptions on trusted hardware by running a small code inside the hardware, restricting its use to a preprocessing step, and distributing trust over heterogeneous trusted hardware platforms from different vendors. An implementation and evaluation of Otak demonstrates that its CPU and network overhead converted to a dollar amount is 5.4$-$385$\times$ lower than state-of-the-art 2PC-based works. Besides, Otak's trusted computing base (code inside trusted hardware) is only 1,300 lines of code, which is 14.6$-$29.2$\times$ lower than the code-size in prior trusted hardware-based works.

📄 PDF Abstract BibTeX arXiv:2009.05566

Code (0)

등록된 구현이 없습니다.

Tasks

CPU

Similar Papers 제목 키워드 기반

Perun: Secure Multi-Stakeholder Machine Learning Framework with GPU Support

2021-03-31 · Wojciech Ozga, Do Le Quoc, Christof Fetzer

Confidential multi-stakeholder machine learning (ML) allows multiple parties to perform collaborative data analytics while not revealing their intellectual property, such as ML source code, model, or datasets. State-of-t…

BIG-bench Machine LearningGPU

Slalom: Fast, Verifiable and Private Execution of Neural Networks in Trusted Hardware

2018-06-08 · ICLR 2019 5 · Florian Tramèr, Dan Boneh

As Machine Learning (ML) gets applied to security-critical or sensitive domains, there is a growing need for integrity and privacy for outsourced ML computations. A pragmatic solution comes from Trusted Execution Environ…

GPU

Evil from Within: Machine Learning Backdoors through Hardware Trojans

2023-04-17 · Alexander Warnecke, Julian Speith, Jan-Niklas Möller, Konrad Rieck 외

Backdoors pose a serious threat to machine learning, as they can compromise the integrity of security-critical systems, such as self-driving cars. While different defenses have been proposed to address this threat, they …

Backdoor AttackSelf-Driving CarsTraffic Sign Recognition

Confidential Machine Learning within Graphcore IPUs

2022-05-18 · Kapil Vaswani, Stavros Volos, Cédric Fournet, Antonio Nino Diaz 외

We present IPU Trusted Extensions (ITX), a set of experimental hardware extensions that enable trusted execution environments in Graphcore's AI accelerators. ITX enables the execution of AI workloads with strong confiden…

BIG-bench Machine LearningCPU

Third-Party Hardware IP Assurance against Trojans through Supervised Learning and Post-processing

2021-11-29 · Pravin Gaikwad, Jonathan Cruz, Prabuddha Chakraborty, Swarup Bhunia 외

System-on-chip (SoC) developers increasingly rely on pre-verified hardware intellectual property (IP) blocks acquired from untrusted third-party vendors. These IPs might contain hidden malicious functionalities or hardwa…

BIG-bench Machine Learning