CAREER: Securing Reconfigurable Hardware Accelerator for Machine Learning: Threats and Defenses
职业:保护用于机器学习的可重新配置硬件加速器:威胁与防御
基本信息
- 批准号:2239672
- 负责人:
- 金额:$ 59.9万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Continuing Grant
- 财政年份:2023
- 资助国家:美国
- 起止时间:2023-10-01 至 2028-09-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
The proliferation of Machine Learning (ML)-enabled applications has fueled a pressing demand for high-performance computing hardware. As a reconfigurable device offering high power efficiency and low overhead, the field programmable gate array (FPGA)-based ML acceleration systems (FPGA-ML) have become the workhorse of ML computing and inference to support many applications in critical domains, including aerospace, defense, and autonomous driving. Although promising, the growing trend of FPGA-ML accelerators also presents new targets for adversaries to attack. This CAREER project will holistically investigate the FPGA-ML system security and integrate the scientific outcomes with educational activities. The research outcome of this project will generate new security components to the emerging FPGA-ML development toolchains and metrics to evaluate the security of real-world products built on these systems, as well as enable technology transfer of research results to the industry practice. This project contains a significant educational component and will attract K-12 students to pursue a STEM education and nurture and cultivate undergraduate and graduate students from underrepresented groups to engage in this open research field. This CAREER project systematically investigates the threats and defenses of the FPGA-ML systems. The scientific outcomes will significantly enrich the traditional works that mainly consider ML security from an algorithm aspect and neglect implementation peculiarities. There are three complementary research thrusts to investigate: (1) Run-time FPGA-ML integrity by studying the impacts of run-time disruption on FPGA-ML acceleration engine for different malicious objectives; (2) Design-time confidentiality by attacking state-of-the-art FPGA-ML systems to explore the potential attack surface; (3) Efficient and scalable defense solutions by characterizing the root causes of both run-time and design-time vulnerabilities of the FPGA-ML systems and developing cross-layer defense strategies at the circuit- and system-level to suit different application scenarios. The proof-of-principles will be applied in designing and prototyping secure FPGA-ML acceleration systems, and the cross-domain knowledge learned from this project will complement the broader AI-enabled cyberspace.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
支持机器学习(ML)的应用程序的激增推动了对高性能计算硬件的迫切需求。基于现场可编程门阵列(现场可编程门阵列)的ML加速系统作为一种高能效、低开销的可重构器件,已经成为ML计算和推理的主力,支持航空航天、国防、自动驾驶等关键领域的应用。尽管前景看好,但日益增长的FPGA-ML加速器趋势也为对手提供了新的攻击目标。该项目将对现场可编程门阵列系统的安全性进行全面研究,并将科研成果与教育活动相结合。该项目的研究成果将为新兴的FPGA-ML开发工具链和指标生成新的安全组件,以评估构建在这些系统上的现实产品的安全性,并使研究成果能够转化为行业实践。该项目包含一个重要的教育组成部分,将吸引K-12学生接受STEM教育,并培养和培养来自代表性不足群体的本科生和研究生,以从事这一开放的研究领域。这个职业项目系统地研究了现场可编程门阵列系统的威胁和防御。这些研究成果将极大地丰富传统工作中主要从算法角度考虑ML安全性而忽视实现特性的问题。(1)针对不同的恶意目标,研究运行中断对FPGA-ML加速引擎的影响;(2)设计时的保密性,通过攻击最先进的FPGA-ML系统来发现潜在的攻击面;(3)高效和可扩展的防御解决方案,通过分析运行时和设计时漏洞的根源,并在电路和系统级别制定跨层防御策略,以适应不同的应用场景。原则证明将应用于设计和制作安全的FPGA-ML加速系统的原型,从该项目中学到的跨领域知识将补充更广泛的人工智能支持的网络空间。该奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(7)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
MirrorNet: A TEE-Friendly Framework for Secure On-Device DNN Inference
- DOI:10.1109/iccad57390.2023.10323746
- 发表时间:2023-10
- 期刊:
- 影响因子:0
- 作者:Ziyu Liu;Yukui Luo;Shijin Duan;Tong Zhou;Xiaolin Xu
- 通讯作者:Ziyu Liu;Yukui Luo;Shijin Duan;Tong Zhou;Xiaolin Xu
AutoReP: Automatic ReLU Replacement for Fast Private Network Inference
- DOI:10.1109/iccv51070.2023.00478
- 发表时间:2023-08
- 期刊:
- 影响因子:0
- 作者:Hongwu Peng;Shaoyi Huang;Tong Zhou;Yukui Luo;Chenghong Wang;Zigeng Wang;Jiahui Zhao;Xiaowei Xie;Ang Li;Tony Geng;Kaleel Mahmood;Wujie Wen;Xiaolin Xu;Caiwen Ding
- 通讯作者:Hongwu Peng;Shaoyi Huang;Tong Zhou;Yukui Luo;Chenghong Wang;Zigeng Wang;Jiahui Zhao;Xiaowei Xie;Ang Li;Tony Geng;Kaleel Mahmood;Wujie Wen;Xiaolin Xu;Caiwen Ding
HammerDodger: A Lightweight Defense Framework against RowHammer Attack on DNNs
- DOI:10.1109/dac56929.2023.10247671
- 发表时间:2023-07
- 期刊:
- 影响因子:0
- 作者:Gongye Cheng;Yukui Luo;Xiaolin Xu;Yunsi Fei
- 通讯作者:Gongye Cheng;Yukui Luo;Xiaolin Xu;Yunsi Fei
PASNet: Polynomial Architecture Search Framework for Two-party Computation-based Secure Neural Network Deployment
- DOI:10.1109/dac56929.2023.10247663
- 发表时间:2023-06
- 期刊:
- 影响因子:0
- 作者:Hongwu Peng;Shangli Zhou;Yukui Luo;Nuo Xu;Shijin Duan;Ran Ran-Ran;Jiahui Zhao;Chenghong Wang;Tong Geng;Wujie Wen;Xiaolin Xu;Caiwen Ding
- 通讯作者:Hongwu Peng;Shangli Zhou;Yukui Luo;Nuo Xu;Shijin Duan;Ran Ran-Ran;Jiahui Zhao;Chenghong Wang;Tong Geng;Wujie Wen;Xiaolin Xu;Caiwen Ding
NNSplitter: An Active Defense Solution for DNN Model via Automated Weight Obfuscation
NNSplitter:通过自动权重混淆的 DNN 模型主动防御解决方案
- DOI:
- 发表时间:2023
- 期刊:
- 影响因子:0
- 作者:Zhou, Tong;Ren, Shaolei;Xu, Xiaolin
- 通讯作者:Xu, Xiaolin
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Xiaolin Xu其他文献
URMG: Enhanced CBMG-Based Method for Automatically Testing Web Applications in the Cloud
URMG:基于 CBMG 的增强型云中 Web 应用程序自动测试方法
- DOI:
10.1109/tst.2014.6733209 - 发表时间:
2014-02 - 期刊:
- 影响因子:6.6
- 作者:
Xiaolin Xu;Hai Jin;Song Wu;Lixiang Tang;Yihong Wang - 通讯作者:
Yihong Wang
Thermodynamic Modelling of Buried Transformer Substations for Dynamic Loading Capability Assessment Considering Underground Heat Accumulative Effect
考虑地下蓄热效应的地埋变电站动载能力评估热力学模型
- DOI:
10.1016/j.ijepes.2020.106153 - 发表时间:
2020-10 - 期刊:
- 影响因子:5.2
- 作者:
Bin Zhou;Xiaolin Xu;Siu Wing Or;Canbing Li;Qiuwei Wu;Cong Zhang;Wenfang Li - 通讯作者:
Wenfang Li
The Role of Community-Based Rehabilitation and Community-Based Inclusive Development in Facilitating Access to Justice for Persons with Disabilities Globally
社区康复和社区包容性发展在促进全球残疾人诉诸司法方面的作用
- DOI:
10.13169/intljofdissocjus.3.3.0004 - 发表时间:
2023 - 期刊:
- 影响因子:0
- 作者:
Heather Michelle Aldersey;Xiaolin Xu;Venkatesh Balakrishna;Maholo Carolyne Sserunkuma;Alaa Sebeh;Zambrano Olmedo;Reshma Parvin Nuri;Ansha Nega Ahmed - 通讯作者:
Ansha Nega Ahmed
Solid-state deuterium NMR spectroscopy of rhodopsin
视紫红质的固态氘核磁共振波谱
- DOI:
- 发表时间:
2018 - 期刊:
- 影响因子:0
- 作者:
Suchithranga M D C Perera;Xiaolin Xu;Trivikram R. Molugu;A. Struts;Michael F. Brown - 通讯作者:
Michael F. Brown
The Effect of Aromatase on the Reproductive Function of Obese
芳香酶对肥胖者生殖功能的影响
- DOI:
- 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Xiaolin Xu;Mingqi Sun;Jifeng Ye;D;an Luo;Xiaohui Su;Dongmei Zheng;Li Feng;Ling Gao;Chunxiao Yu;Qingbo Guan - 通讯作者:
Qingbo Guan
Xiaolin Xu的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Xiaolin Xu', 18)}}的其他基金
Travel: NSF Student Travel Grant for 2023 New England Hardware Security Day (NEHWS2023)
旅行:2023 年新英格兰硬件安全日 NSF 学生旅行补助金 (NEHWS2023)
- 批准号:
2315830 - 财政年份:2023
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
CICI:TCR:CAREFREE:Cloud infrAstructure ResiliencE of the Future foR tEstbeds, accelerators and nEtworks
CICI:TCR:CAREFREE:未来测试床、加速器和网络的云基础设施弹性
- 批准号:
2319962 - 财政年份:2023
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Accelerating Privacy-Preserving Machine Learning as a Service: From Algorithm to Hardware
协作研究:SaTC:核心:中:加速保护隐私的机器学习即服务:从算法到硬件
- 批准号:
2247892 - 财政年份:2023
- 资助金额:
$ 59.9万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Small: Securing Brain-inspired Hyperdimensional Computing against Design-time and Run-time Attacks for Edge Devices
协作研究:SaTC:核心:小型:保护类脑超维计算免受边缘设备的设计时和运行时攻击
- 批准号:
2326597 - 财政年份:2023
- 资助金额:
$ 59.9万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Small: Secure and Robust Machine Learning in Multi-Tenant Cloud FPGA
协作研究:SaTC:CORE:小型:多租户云 FPGA 中安全且稳健的机器学习
- 批准号:
2153690 - 财政年份:2022
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
SaTC: EDU: Collaborative: Bolstering UAV Cybersecurity Education through Curriculum Development with Hands-on Laboratory Framework
SaTC:EDU:协作:通过实践实验室框架的课程开发来加强无人机网络安全教育
- 批准号:
1955337 - 财政年份:2020
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
SaTC: EDU: Collaborative: Bolstering UAV Cybersecurity Education through Curriculum Development with Hands-on Laboratory Framework
SaTC:EDU:协作:通过实践实验室框架的课程开发来加强无人机网络安全教育
- 批准号:
2043183 - 财政年份:2020
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
相似海外基金
Securing the Future: Inclusive Cybersecurity Education for All
确保未来:全民包容性网络安全教育
- 批准号:
2350448 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
CAREER: Securing Next-Generation Transportation Infrastructure: A Traffic Engineering Perspective
职业:保护下一代交通基础设施:交通工程视角
- 批准号:
2339753 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
Ownership-based Alias Analysis for Securing Unsafe Rust Programs
用于保护不安全 Rust 程序的基于所有权的别名分析
- 批准号:
DP240103194 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Discovery Projects
CAREER: Securing Off-premise Digital Services in the Presence of Strategic Incentives
职业:在战略激励的情况下确保场外数字服务的安全
- 批准号:
2337338 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Continuing Grant
CAREER: Securing the Future of Electric Field Measurements in Space Physics
职业:确保空间物理电场测量的未来
- 批准号:
2338825 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Continuing Grant
CAREER: Securing and Evolving Internet Security Protocols for Naming and Routing
职业:保护和发展用于命名和路由的互联网安全协议
- 批准号:
2339378 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Continuing Grant
Securing Convergent Ultra-large Scale Infrastructures
确保融合超大规模基础设施的安全
- 批准号:
EP/Z531315/1 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Research Grant
DHSC Securing Better Health - Economics and/or Social Research Fellowship
DHSC 确保更好的健康 - 经济学和/或社会研究奖学金
- 批准号:
ES/Y003926/1 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Fellowship
CRII: SaTC: Securing Smart Devices with AI-Powered mmWave Radar in New-Generation Wireless Networks
CRII:SaTC:在新一代无线网络中使用人工智能驱动的毫米波雷达保护智能设备
- 批准号:
2422863 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Standard Grant
Securing Transparency And Reproducibility in studies of Nutritional interventions (STAR-Nut)
确保营养干预研究的透明度和可重复性 (STAR-Nut)
- 批准号:
MR/Z503824/1 - 财政年份:2024
- 资助金额:
$ 59.9万 - 项目类别:
Research Grant














{{item.name}}会员




