An Encryption Method of ConvMixer Models without Performance Degradation

07/25/2022
by   Ryota Iijima, et al.
0

In this paper, we propose an encryption method for ConvMixer models with a secret key. Encryption methods for DNN models have been studied to achieve adversarial defense, model protection and privacy-preserving image classification. However, the use of conventional encryption methods degrades the performance of models compared with that of plain models. Accordingly, we propose a novel method for encrypting ConvMixer models. The method is carried out on the basis of an embedding architecture that ConvMixer has, and models encrypted with the method can have the same performance as models trained with plain images only when using test images encrypted with a secret key. In addition, the proposed method does not require any specially prepared data for model training or network modification. In an experiment, the effectiveness of the proposed method is evaluated in terms of classification accuracy and model protection in an image classification task on the CIFAR10 dataset.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
07/12/2022

Image and Model Transformation with Secret Key for Vision Transformer

In this paper, we propose a combined use of transformed images and visio...
research
08/15/2023

Block-Wise Encryption for Reliable Vision Transformer models

This article presents block-wise image encryption for the vision transfo...
research
08/04/2022

Privacy-Preserving Image Classification Using ConvMixer with Adaptive Permutation Matrix

In this paper, we propose a privacy-preserving image classification meth...
research
09/05/2023

Domain Adaptation for Efficiently Fine-tuning Vision Transformer with Encrypted Images

In recent years, deep neural networks (DNNs) trained with transformed da...
research
07/29/2019

A Deep Learning Based Attack for The Chaos-based Image Encryption

In this letter, as a proof of concept, we propose a deep learning-based ...
research
12/21/2022

Device-Bind Key-Storageless Hardware AI Model IP Protection: A PUF and Permute-Diffusion Encryption-Enabled Approach

Machine learning as a service (MLaaS) framework provides intelligent ser...
research
11/18/2018

Distribution Discrepancy Maximization for Image Privacy Preserving

With the rapid increase in online photo sharing activities, image obfusc...

Please sign up or login with your details

Forgot password? Click here to reset