HDLock: Exploiting Privileged Encoding to Protect Hyperdimensional Computing Models against IP Stealing

1Citations
Citations of this article
8Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Hyperdimensional Computing (HDC) is facing infringement issues due to straightforward computations. This work, for the first time, raises a critical vulnerability of HDC - - an attacker can reverse engineer the entire model, only requiring the unindexed hypervector memory. To mitigate this attack, we propose a defense strategy, namely HDLock, which significantly increases the reasoning cost of encoding. Specifically, HDLock adds extra feature hypervector combination and permutation in the encoding module. Compared to the standard HDC model, a two-layer-key HDLock can increase the adversarial reasoning complexity by 10 order of magnitudes without inference accuracy loss, with only 21% latency overhead.

Cite

CITATION STYLE

APA

Duan, S., Ren, S., & Xu, X. (2022). HDLock: Exploiting Privileged Encoding to Protect Hyperdimensional Computing Models against IP Stealing. In Proceedings - Design Automation Conference (pp. 679–684). Institute of Electrical and Electronics Engineers Inc. https://doi.org/10.1145/3489517.3530515

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free