Collaborative Research: SHF: Medium: Approximate Computing for Machine Learning Security: Foundations and Accelerator Design
Collaborative Research: SHF: Medium: Approximate Computing for Machine Learning Security: Foundations and Accelerator Design
批准号:
2212426
负责人:
Nael Abu-Ghazaleh
金额:
$80.0万
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2022
资助国家:
美国
项目状态:
未结题
起止时间:
2022-08-01 至 2026-07-31
中文摘要
深度神经网络(DNN)在大量和不断扩展的应用领域取得了最先进的性能。然而,其大规模部署面临的威胁之一是易受对抗性机器学习攻击,即对手向输入数据注入微小扰动,导致DNN错误分类,从而产生潜在危险的结果(例如,将停车标志误认为限速标志)。在这个项目中,研究人员将探索如何构建具有近似计算元素的DNN,以提高它们对这些对手攻击的健壮性。近似计算是一种技术,用于构建更简单(因此更高性能和更可持续)的计算元素,但不计算操作的确切结果。研究人员将探索如何选择近似计算元素并将其用于构建可持续的DNN加速器,以平衡性能、精度和安全性。该提案的预期贡献包括对DNN的近似和健壮性之间的关系提出新的见解。该项目将探索哪些类型的近似技术可以产生有效的DNN,以平衡准确性、性能、可持续性和对对手攻击的保护,并开发能够沿这些维度找到最佳运行点的优化框架。它还将探索如何构建专门针对此应用程序的新近似计算元素。该项目将利用这些发现来建造可持续、高性能和准确的DNN加速器。该项目还将探索其他基于近似计算的技术,以防止威胁DNN安全和隐私的其他类型的攻击,以及不同的深度神经网络学习结构。该项目预计将对机器学习模型的安全性、可持续性和准确性产生重大影响。研究团队将与研究团体分享研究的所有副产品。该项目将培养研究生和本科生。调查人员将开发新的教育材料,用于机器学习、计算机体系结构和计算机安全课程。这一奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
Deep Neural Networks (DNNs) are achieving state-of-the-art performance on a large and expanding number of application domains. However, one of the threats to their wide-scale deployment is vulnerability to adversarial machine learning attacks, where an adversary injects small perturbations to the input data that cause the DNN to misclassify, with potentially dangerous outcomes (for example, mistaking a stop sign for a speed limit sign). In this project, the researchers will explore how building DNNs with approximate computing elements improves their robustness to these adversarial attacks. Approximate computing is a technique to build computing elements that are simpler (and therefore higher performing and more sustainable) but do not compute the exact result of an operation. The investigators will explore how to select approximate computing elements and use them in building sustainable DNN accelerators that balance performance, accuracy, and security.The proposal's expected contributions include developing new insights into the relationship between approximation and robustness of DNNs. The project will explore what types of approximation techniques result in effective DNNs that balance accuracy, performance, sustainability, and protection against adversarial attacks and develop optimization frameworks that can find optimal operating points along these dimensions. It will also explore how to build new approximate computing elements specifically targeted toward this application. The project will use these findings to build sustainable, performant, and accurate DNN accelerators. The project will also explore other approximate computing-based techniques to protect against other types of attacks threatening the security and privacy of DNNs, as well as for different deep neural network learning structures. The project is expected to have significant impacts on security, sustainability, and accuracy of machine learning models. The research team will share all of the byproducts of the research with the research community. The project will train graduate and undergraduate students. The investigators will develop new educational material for use in machine learning, computer architecture, and computer security classes.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(9)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
DOI:
10.48550/arxiv.2303.04338
发表时间:
2023-03
期刊:
ArXiv
影响因子:
--
作者:
[Yingcong Li;Samet Oymak]
通讯作者:
Yingcong Li;Samet Oymak
A Score-Based Deterministic Diffusion Algorithm with Smooth Scores for General Distributions
一种基于分数的一般分布平滑分数确定性扩散算法
DOI:
--
发表时间:
2024
期刊:
AAAI Association for the Advancement of Artificial Intelligence
影响因子:
--
作者:
[Elamvazhuthi, Karthik, Zhang, Xuechen, Jacobs, Matthew, Oymak, Samet, Pasqualetti, Fabio]
通讯作者:
Pasqualetti, Fabio
DOI:
10.48550/arxiv.2306.13596
发表时间:
2023-06
期刊:
ArXiv
影响因子:
--
作者:
[Davoud Ataee Tarzanagh;Yingcong Li;Xuechen Zhang;Samet Oymak]
通讯作者:
Davoud Ataee Tarzanagh;Yingcong Li;Xuechen Zhang;Samet Oymak
DOI:
10.48550/arxiv.2401.14343
发表时间:
2024-01
期刊:
影响因子:
--
作者:
[Xuechen Zhang;Mingchen Li;Jiasi Chen;Christos Thrampoulidis;Samet Oymak]
通讯作者:
Xuechen Zhang;Mingchen Li;Jiasi Chen;Christos Thrampoulidis;Samet Oymak
On The Fairness of Multitask Representation Learning
论多任务表征学习的公平性
DOI:
10.1109/icassp49357.2023.10095627
发表时间:
2023
期刊:
Proceedings of the IEEE International Conference on Acoustics Speech and Signal Processing
影响因子:
--
作者:
[Li, Yingcong, Oymak, Samet]
通讯作者:
Oymak, Samet
共 9 条
Collaborative Research: SaTC: CORE: Medium: Leakage-free Isolated Execution: Architectures and Security Models
-
批准号:2053383
-
项目类别:Standard Grant
-
资助金额:$50.54万
-
财政年份:2021
-
负责人:Nael Abu-Ghazaleh
-
依托单位:
TWC: Small: Collaborative: Practical Hardware-Assisted Always-On Malware Detection
-
批准号:1619322
-
项目类别:Standard Grant
-
资助金额:$22.5万
-
财政年份:2016
-
负责人:Nael Abu-Ghazaleh
-
依托单位:
CSR: Small: Collaborative Research: Combining Static Analysis and Dynamic Run-time Optimization for Parallel Discrete Event Simulation in Many-Core Environments
-
批准号:0916323
-
项目类别:Standard Grant
-
资助金额:$33.3万
-
财政年份:2009
-
负责人:Nael Abu-Ghazaleh
-
依托单位:
国内基金
海外基金
登录
查看更多内容
Research on Quantum Field Theory without a Lagrangian Description
-
批准号:24ZR1403900
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2024
-
负责人:SATOSHI NAWATA
-
依托单位:
Cell Research
-
批准号:31224802
-
项目类别:专项基金项目
-
资助金额:24.0万元
-
批准年份:2012
-
负责人:程磊
-
依托单位:
Cell Research
-
批准号:31024804
-
项目类别:专项基金项目
-
资助金额:24.0万元
-
批准年份:2010
-
负责人:程磊
-
依托单位:
Cell Research (细胞研究)
-
批准号:30824808
-
项目类别:专项基金项目
-
资助金额:24.0万元
-
批准年份:2008
-
负责人:张爱兰
-
依托单位:
Research on the Rapid Growth Mechanism of KDP Crystal
-
批准号:10774081
-
项目类别:面上项目
-
资助金额:45.0万元
-
批准年份:2007
-
负责人:滕冰
-
依托单位: