{"title":"Shuffling Countermeasure against Power Side-Channel Attack for MLP with Software Implementation","authors":"Y. Nozaki, M. Yoshikawa","doi":"10.1109/ICECE54449.2021.9674668","DOIUrl":null,"url":null,"abstract":"In recent years, several attack methods for artificial intelligence (AI) have been reported. Therefore, the study of countermeasure against illegal attacks for AI is very important. This study proposes a new countermeasure method against power side-channel based model extraction attacks for AI. The proposed method improves the resistance against power side-channel based model extraction attacks by randomizing the calculation order with shuffling method. Experiments using an actual device indicated that the proposed countermeasure could improve the resistance against power side-channel based model extraction attacks.","PeriodicalId":166178,"journal":{"name":"2021 IEEE 4th International Conference on Electronics and Communication Engineering (ICECE)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-12-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 IEEE 4th International Conference on Electronics and Communication Engineering (ICECE)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICECE54449.2021.9674668","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
In recent years, several attack methods for artificial intelligence (AI) have been reported. Therefore, the study of countermeasure against illegal attacks for AI is very important. This study proposes a new countermeasure method against power side-channel based model extraction attacks for AI. The proposed method improves the resistance against power side-channel based model extraction attacks by randomizing the calculation order with shuffling method. Experiments using an actual device indicated that the proposed countermeasure could improve the resistance against power side-channel based model extraction attacks.