2 papers
cs.CR2026
TENNOR: Trustworthy Execution for Neural Networks through Obliviousness and Retrievals
Zifan Qu, Vasileios P. Kemerlis, Giuseppe Ateniese +1
Training wide neural networks on sensitive data in untrusted cloud environments requires simultaneously achieving computational efficiency and rigorous privacy guarantees. Sparsifi…
cs.CR2025
PickleBall: Secure Deserialization of Pickle-based Machine Learning Models (Extended Report)
Andreas D. Kellas, Neophytos Christou, Wenxin Jiang +6
Machine learning model repositories such as the Hugging Face Model Hub facilitate model exchanges. However, bad actors can deliver malware through compromised models. Existing defe…