CAREER: Dependable and Secure Machine Learning Acceleration from Untrusted Hardware
CAREER: Dependable and Secure Machine Learning Acceleration from Untrusted Hardware
批准号:
2238873
负责人:
Wujie Wen
金额:
$60.0万
依托单位:
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2023
资助国家:
美国
项目状态:
已结题
起止时间:
2023-10-01 至 2024-02-29
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Fueled by the advancements of machine learning (ML) models and computing hardware, intelligence is becoming a household brand from cloud to edge, transforming every walk of life. For intelligent systems with safety and security as their primary requirements, such as autonomous vehicles and doctorless clinics, ensuring inference dependability is essential. Unfortunately, current hardware cannot provide such a promise. The inference execution can be disturbed by either passive faults or active physical fault attacks on hardware components like memory, logic. While there have been relevant studies from the perspective of data, the problem in the context of hardware is different and far less explored. This CAREER project aims to create a new paradigm of safeguarding ML execution against both passive hardware faults and active fault attacks, with a focus on proactively rooting inference dependability into ML processing by design. Unlike prior reactive hardware bug repair or hardware security-based solutions, which do not closely embrace ML's distinct properties, the project's novelties lie in the new capability development inside ML processing, namely "Multi-Purposed Neuron", and the cross-layer exploration of ML algorithm, hardware architecture and hardware security centered around this. The project's broader significance and importance are: 1) yield practical solutions for ensuring the root of trust of accelerated artificial intelligence (AI) services in security, healthcare, automated systems, and other domains; 2) advance the state-of-the-art on the interactions among AI algorithm, hardware, and security design; 3) provide abundant educational opportunities and outreach activities to nurture and attract students from underrepresented groups and the K-12 community. The project seeks to develop "Multi-Purposed Neuron"-centered ML inference protection methodologies for hardware accelerators through algorithm-hardware-security co-design, with guarantees of generality, scalability, feasibility, and durability. The project consists of three thrusts: 1) Improve fault tolerance offline through "Coded Neurons" and hardware optimization without assuming a fixed attack available prior (Generality); 2) Mitigate multiple faults online via "Guarded Neurons", dedicated training methods and hardware design (Scalability); 3) Defend against strong and adaptive attacks by real time proactive solutions built upon "Honey Neurons" and Trust Execution Environment (Durability). The impact on inference accuracy, latency and hardware overhead will be minimized across all thrusts (Feasibility).This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SPX: Collaborative Research: Scalable Neural Network Paradigms to Address Variability in Emerging Device based Platforms for Large Scale Neuromorphic Computing
-
批准号:2401544
-
项目类别:Standard Grant
-
资助金额:$35.55万
-
财政年份:2023
-
负责人:Wujie Wen
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Accelerating Privacy-Preserving Machine Learning as a Service: From Algorithm to Hardware
-
批准号:2247891
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2023
-
负责人:Wujie Wen
-
依托单位:
CAREER: Dependable and Secure Machine Learning Acceleration from Untrusted Hardware
-
批准号:2349538
-
项目类别:Continuing Grant
-
资助金额:$60.0万
-
财政年份:2023
-
负责人:Wujie Wen
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Accelerating Privacy-Preserving Machine Learning as a Service: From Algorithm to Hardware
-
批准号:2348733
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2023
-
负责人:Wujie Wen
-
依托单位:
EAGER: Invisible Shield: Can Compression Harden Deep Neural Networks Universally Against Adversarial Attacks?
-
批准号:2011260
-
项目类别:Standard Grant
-
资助金额:$14.92万
-
财政年份:2019
-
负责人:Wujie Wen
-
依托单位:
SHF: Small: Collaborative Research: Retraining-free Concurrent Test and Diagnosis in Emerging Neural Network Accelerators
-
批准号:2011236
-
项目类别:Standard Grant
-
资助金额:$23.5万
-
财政年份:2019
-
负责人:Wujie Wen
-
依托单位:
SPX: Collaborative Research: Scalable Neural Network Paradigms to Address Variability in Emerging Device based Platforms for Large Scale Neuromorphic Computing
-
批准号:1919182
-
项目类别:Standard Grant
-
资助金额:$35.55万
-
财政年份:2019
-
负责人:Wujie Wen
-
依托单位:
SPX: Collaborative Research: Scalable Neural Network Paradigms to Address Variability in Emerging Device based Platforms for Large Scale Neuromorphic Computing
-
批准号:2006748
-
项目类别:Standard Grant
-
资助金额:$35.55万
-
财政年份:2019
-
负责人:Wujie Wen
-
依托单位:
SHF: Small: Collaborative Research: Retraining-free Concurrent Test and Diagnosis in Emerging Neural Network Accelerators
-
批准号:1910022
-
项目类别:Standard Grant
-
资助金额:$23.5万
-
财政年份:2019
-
负责人:Wujie Wen
-
依托单位:
EAGER: Invisible Shield: Can Compression Harden Deep Neural Networks Universally Against Adversarial Attacks?
-
批准号:1840813
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2018
-
负责人:Wujie Wen
-
依托单位:
海外基金