Private and Reliable Neural Network Inference

10/27/2022
by   Nikola Jovanović, et al.
0

Reliable neural networks (NNs) provide important inference-time reliability guarantees such as fairness and robustness. Complementarily, privacy-preserving NN inference protects the privacy of client data. So far these two emerging areas have been largely disconnected, yet their combination will be increasingly important. In this work, we present the first system which enables privacy-preserving inference on reliable NNs. Our key idea is to design efficient fully homomorphic encryption (FHE) counterparts for the core algorithmic building blocks of randomized smoothing, a state-of-the-art technique for obtaining reliable models. The lack of required control flow in FHE makes this a demanding task, as naïve solutions lead to unacceptable runtime. We employ these building blocks to enable privacy-preserving NN inference with robustness and fairness guarantees in a system called Phoenix. Experimentally, we demonstrate that Phoenix achieves its goals without incurring prohibitive latencies. To our knowledge, this is the first work which bridges the areas of client data privacy and reliability guarantees for NNs.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
08/18/2023

Privacy-Preserving 3-Layer Neural Network Training using Mere Homomorphic Encryption Technique

In this manuscript, we consider the problem of privacy-preserving traini...
research
02/03/2020

CryptoSPN: Privacy-preserving Sum-Product Network Inference

AI algorithms, and machine learning (ML) techniques in particular, are i...
research
02/06/2022

IVeri: Privacy-Preserving Interdomain Verification

In an interdomain network, autonomous systems (ASes) often establish pee...
research
02/07/2022

CECILIA: Comprehensive Secure Machine Learning Framework

Since machine learning algorithms have proven their success in data mini...
research
05/14/2020

Prive-HD: Privacy-Preserved Hyperdimensional Computing

The privacy of data is a major challenge in machine learning as a traine...
research
04/07/2023

Privacy-Preserving CNN Training with Transfer Learning

Privacy-preserving nerual network inference has been well studied while ...
research
04/28/2021

Syft 0.5: A Platform for Universally Deployable Structured Transparency

Adam James Hall, Madhava Jay, Tudor Cebere, Bogdan Cebere, Koen Lennart ...

Please sign up or login with your details

Forgot password? Click here to reset