Harnessing ML Privacy by Design Through Crossbar Array Non-idealities
Conference
·
OSTI ID:2426423
- BATTELLE (PACIFIC NW LAB)
- Queen's University Belfast
- George Mason Universitiy
Deep Neural Networks (DNNs), handling computeand data-intensive tasks, often utilize accelerators like Resistiveswitching Random-access Memory (RRAM) crossbar for energyefficient in-memory computation. Despite RRAM’s inherent nonidealities causing deviations in DNN output, this study transforms the weakness into strength. By leveraging RRAM non-idealities, the research enhances privacy protection against Membership Inference Attacks (MIAs), which reveal private information from training data. RRAM non-idealities disrupt MIA features, increasing model robustness and revealing a privacy-accuracy tradeoff. Empirical results with four MIAs and DNNs trained on different datasets demonstrate significant privacy leakage reduction with a minor accuracy drop (e.g., up to 2.8% for ResNet-18 with CIFAR-100).
- Research Organization:
- Pacific Northwest National Laboratory (PNNL), Richland, WA (United States)
- Sponsoring Organization:
- USDOE
- DOE Contract Number:
- AC05-76RL01830
- OSTI ID:
- 2426423
- Report Number(s):
- PNNL-SA-194845
- Country of Publication:
- United States
- Language:
- English
Similar Records
XploreNAS: Explore Adversarially Robust and Hardware-efficient Neural Architectures for Non-ideal Xbars
SwitchX: Gmin-Gmax Switching for Energy-efficient and Robust Implementation of Binarized Neural Networks on ReRAM Xbars
Assessing Membership Inference Attacks under Distribution Shifts
Journal Article
·
Sun Jul 23 20:00:00 EDT 2023
· ACM Transactions on Embedded Computing Systems
·
OSTI ID:2422212
SwitchX: Gmin-Gmax Switching for Energy-efficient and Robust Implementation of Binarized Neural Networks on ReRAM Xbars
Journal Article
·
Tue May 16 20:00:00 EDT 2023
· ACM Transactions on Design Automation of Electronic Systems
·
OSTI ID:2422211
Assessing Membership Inference Attacks under Distribution Shifts
Conference
·
Sat Nov 30 23:00:00 EST 2024
·
OSTI ID:2538186