6 papers · 1 filter
A Constant-Time Implementation Methodology for Activation Functions on Microcontrollers
Andrii Tyvodar, Andreas Rechberger, Dirmanto Jap +4
Embedded neural-network inference can leak information through timing side channels, including leakage caused by the evaluation of activation functions. This work proposes a consta…
Characterizing the Fault Response of the Intel Neural Compute Stick 2 Under Single-Pulse Electromagnetic Fault Injection
Å tefan KuÄerák, Jakub Breier, Xiaolu Hou
Vision processing units and other commercial neural-network inference accelerators are increasingly deployed in safety-relevant edge applications, but their fault response under tr…
Beyond TVLA: Anderson-Darling Leakage Assessment for Neural Network Side-Channel Leakage Detection
Ján Mikulec, Jakub Breier, Xiaolu Hou
Test Vector Leakage Assessment (TVLA) based on Welch's -test has become a standard tool for detecting side-channel leakage. However, its mean-based nature can limit sensitivity…
Make Shuffling Great Again: A Side-Channel Resistant Fisher-Yates Algorithm for Protecting Neural Networks
Leonard PuÅ¡káÄ, Marek BenoviÄ, Jakub Breier +1
Neural network models implemented in embedded devices have been shown to be susceptible to side-channel attacks (SCAs), allowing recovery of proprietary model parameters, such as w…
Side-Channel Analysis of OpenVINO-based Neural Network Models
Dirmanto Jap, Jakub Breier, Zdenko Lehocký +2
Embedded devices with neural network accelerators offer great versatility for their users, reducing the need to use cloud-based services. At the same time, they introduce new secur…
DeepNcode: Encoding-Based Protection against Bit-Flip Attacks on Neural Networks
Patrik VelÄický, Jakub Breier, Mladen KovaÄeviÄ +1
Fault injection attacks are a potent threat against embedded implementations of neural network models. Several attack vectors have been proposed, such as misclassification, model e…