Privacy Preserving Inference with Convolutional Neural Network Ensemble
Privacy Preserving Inference with Convolutional Neural Network Ensemble
复制标题
DOI:
10.1109/ipccc50635.2020.9391544
复制
发表时间:
2020-11
期刊:
影响因子:
--
通讯作者:
Alexander Xiong;M. Nguyen;Andrew So;Tingting Chen
中科院分区:
文献类型:
--
作者:
Alexander Xiong;M. Nguyen;Andrew So;Tingting Chen
Machine Learning as a Service on cloud not only provides a solution to scale demanding workloads, but also allows broader accessibility for the utilization of trained deep neural networks. For example, in the medical field, cloud-based deep-learning assisted diagnoses can be life-saving, especially in developing areas where experienced doctors and domain expertise are lacking. However, preserving end-users' data privacy while using cloud service for deep learning is a challenge. Some recent works based on fully homomorphic encryption have enabled neural-network predictions on encrypted input data. In this paper, we further extend the capability of privacy preserving deep neural network inference, through a joint decision made by multiple deep neural network models on encrypted data, to address bias caused by unbalanced local training datasets. In particular, we design and implement a privacy preserving prediction method through an ensemble of convolutional neural networks. The extensive experiment results show that our method can achieve higher accuracy compared to individual models, and preserve the user data privacy at the same level. We also verify the time efficiency of our implementation.