- This event has passed.
Cheng Gongye’s MS Thesis Defense
April 4, 2023 @ 12:30 pm - 1:30 pm
“Using Floating-Point Timing Side-Channels to Reverse Engineer Deep Neural Networks”
Committee Members:
Prof. Yunsi Fei (Advisor)
Prof. Aidong Ding
Prof. Xiaolin Xu
Abstract:
Trained Deep Neural Network (DNN) models have become valuable intellectual property. A new attack surface has emerged for DNNs: model reverse engineering. Several recent attempts have utilized various common side channels. However, recovering DNN parameters, weights and biases, remains a challenge. In this paper, we present a novel attack that utilizes a floating-point timing side channel to reverse-engineer parameters of multi-layer perceptron (MLP) models in software implementation, entirely and precisely. To the best of our knowledge, this is the first work that leverages a floating-point timing side channel for effective DNN model recovery.