A Homomorphic Encryption Framework for Privacy-Preserving Spiking Neural Networks
arXiv:2308.05636 · doi:10.3390/info14100537
Abstract
Machine learning (ML) is widely used today, especially through deep neural networks (DNNs), however, increasing computational load and resource requirements have led to cloud-based solutions. To address this problem, a new generation of networks called Spiking Neural Networks (SNN) has emerged, which mimic the behavior of the human brain to improve efficiency and reduce energy consumption. These networks often process large amounts of sensitive information, such as confidential data, and thus privacy issues arise. Homomorphic encryption (HE) offers a solution, allowing calculations to be performed on encrypted data without decrypting it. This research compares traditional DNNs and SNNs using the Brakerski/Fan-Vercauteren (BFV) encryption scheme. The LeNet-5 model, a widely-used convolutional architecture, is used for both DNN and SNN models based on the LeNet-5 architecture, and the networks are trained and compared using the FashionMNIST dataset. The results show that SNNs using HE achieve up to 40% higher accuracy than DNNs for low values of the plaintext modulus t, although their execution time is longer due to their time-coding nature with multiple time-steps.
References in corpus (11)
- Very Deep Convolutional Networks for Large-Scale Image Recognition
- Deep Learning in Neural Networks: An Overview
- PyTorch: An Imperative Style, High-Performance Deep Learning Library
- Deep Learning in Spiking Neural Networks
- SuperSpike: Supervised learning in multi-layer spiking neural networks
- Enabling Spike-based Backpropagation for Training Deep Neural Network Architectures
- Hardware and Software Optimizations for Accelerating Deep Neural Networks: Survey of Current Trends, Challenges, and the Road Ahead
- The importance of space and time in neuromorphic cognitive agents
- Towards Energy-Efficient and Secure Edge AI: A Cross-Layer Framework
- Securing Deep Spiking Neural Networks against Adversarial Attacks through Inherent Structural Parameters
- Is Spiking Secure? A Comparative Study on the Security Vulnerabilities of Spiking and Deep Neural Networks