paper-with-me

Papers

AttestLLM: Efficient Attestation Framework for Billion-scale On-device LLMs

2025-09-08 · Ruisi Zhang, Yifei Zhao, Neusha Javidnia, Mengxin Zheng, Farinaz Koushanfar arxiv

As on-device LLMs(e.g., Apple on-device Intelligence) are widely adopted to reduce network dependency, improve privacy, and enhance responsiveness, verifying the legitimacy of models running on local devices becomes critical. Existing attestation techniques are not suitable for billion-parameter Large Language Models (LLMs), struggling to remain both time- and memory-efficient while addressing emerging threats in the LLM era. In this paper, we present AttestLLM, the first-of-its-kind attestation framework to protect the hardware-level intellectual property (IP) of device vendors by ensuring that only authorized LLMs can execute on target platforms. AttestLLM leverages an algorithm/software/hardware co-design approach to embed robust watermarking signatures onto the activation distributions of LLM building blocks. It also optimizes the attestation protocol within the Trusted Execution Environment (TEE), providing efficient verification without compromising inference throughput. Extensive proof-of-concept evaluations on LLMs from Llama, Qwen, and Phi families for on-device use cases demonstrate AttestLLM's attestation reliability, fidelity, and efficiency. Furthermore, AttestLLM enforces model legitimacy and exhibits resilience against model replacement and forgery attacks.

📄 PDF Abstract BibTeX arXiv:2509.06326

Code (0)

등록된 구현이 없습니다.

Similar Papers 제목 키워드 기반

Optimizing Age of Trust and Throughput in Multi-Hop UAV-Aided IoT Networks

2025-07-05 · Yizhou Luo, Kwan-Wu Chin, Ruyi Guan, Xi Xiao 외 arxiv

Devices operating in Internet of Things (IoT) networks may be deployed across vast geographical areas and interconnected via multi-hop communications. Further, they may be unguarded. This makes them vulnerable to attacks…

Reinforcement Learning

The Information Content of Sarbanes-Oxley in Predicting Security Breaches

2018-02-11

We investigated publicly reported security breaches of internal controls in corporate systems to determine whether SOX assessments are information bearing with respect to breaches which can lead to materially significant…

Management

AI and Democracy's Digital Identity Crisis

2023-09-25 · Shrey Jain, Connor Spelliscy, Samuel Vance-Law, Scott Moore

AI-enabled tools have become sophisticated enough to allow a small number of individuals to run disinformation campaigns of an unprecedented scale. Privacy-preserving identity attestations can drastically reduce instance…

Privacy Preserving

Design and Analysis of a Modified Remote Attestation Protocol

2017-09-11 · Santra, Monika Peddoju, Sateesh K. Bhattacharjee, A.K. Khan 외

Secure interaction amongst system components is inherent to ensure the trustworthiness of the applications. In a distributed system, the attester should know whether the communicating client as well as the user who is us…

Enabling Trustworthy Federated Learning via Remote Attestation for Mitigating Byzantine Threats

2025-08-30 · Chaoyu Zhang, Heng Jin, Shanghao Shi, Hexuan Yu 외 arxiv

Federated Learning (FL) has gained significant attention for its privacy-preserving capabilities, enabling distributed devices to collaboratively train a global model without sharing raw data. However, its distributed na…

Federated Learning