{"id":"https://openalex.org/W3008936127","doi":"https://doi.org/10.1109/asianhost47458.2019.9006698","title":"Vulnerability Analysis on Noise-Injection Based Hardware Attack on Deep Neural Networks","display_name":"Vulnerability Analysis on Noise-Injection Based Hardware Attack on Deep Neural Networks","publication_year":2019,"publication_date":"2019-12-01","ids":{"openalex":"https://openalex.org/W3008936127","doi":"https://doi.org/10.1109/asianhost47458.2019.9006698","mag":"3008936127"},"language":"en","primary_location":{"id":"doi:10.1109/asianhost47458.2019.9006698","is_oa":false,"landing_page_url":"https://doi.org/10.1109/asianhost47458.2019.9006698","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 Asian Hardware Oriented Security and Trust Symposium (AsianHOST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://dr.ntu.edu.sg/bitstream/10356/136863/2/AsianHOST2019-LW.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5000387478","display_name":"Wenye Liu","orcid":"https://orcid.org/0000-0003-4590-5367"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Wenye Liu","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022526666","display_name":"Si Wang","orcid":"https://orcid.org/0000-0002-5704-0981"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Si Wang","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5029335324","display_name":"Chip-Hong Chang","orcid":"https://orcid.org/0000-0002-8897-6176"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Chip-Hong Chang","raw_affiliation_strings":["School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"School of Electrical and Electronic Engineering, Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.723,"has_fulltext":true,"cited_by_count":6,"citation_normalized_percentile":{"value":0.79790957,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":"abs 1704 4861","issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9930999875068665,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.9921000003814697,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8204888105392456},{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.7008107900619507},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.651322603225708},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.6437178254127502},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.613425612449646},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.5903701186180115},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.5730804800987244},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5724483132362366},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5709012150764465},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5559226274490356},{"id":"https://openalex.org/keywords/noise","display_name":"Noise (video)","score":0.46513503789901733},{"id":"https://openalex.org/keywords/pattern-recognition","display_name":"Pattern recognition (psychology)","score":0.4155060052871704},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.3568151593208313},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.33177632093429565},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.12852492928504944}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8204888105392456},{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.7008107900619507},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.651322603225708},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.6437178254127502},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.613425612449646},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.5903701186180115},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.5730804800987244},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5724483132362366},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5709012150764465},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5559226274490356},{"id":"https://openalex.org/C99498987","wikidata":"https://www.wikidata.org/wiki/Q2210247","display_name":"Noise (video)","level":3,"score":0.46513503789901733},{"id":"https://openalex.org/C153180895","wikidata":"https://www.wikidata.org/wiki/Q7148389","display_name":"Pattern recognition (psychology)","level":2,"score":0.4155060052871704},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.3568151593208313},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.33177632093429565},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.12852492928504944},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C115961682","wikidata":"https://www.wikidata.org/wiki/Q860623","display_name":"Image (mathematics)","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/asianhost47458.2019.9006698","is_oa":false,"landing_page_url":"https://doi.org/10.1109/asianhost47458.2019.9006698","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 Asian Hardware Oriented Security and Trust Symposium (AsianHOST)","raw_type":"proceedings-article"},{"id":"pmh:oai:dr.ntu.edu.sg:10356/136863","is_oa":true,"landing_page_url":"https://hdl.handle.net/10356/136863","pdf_url":"https://dr.ntu.edu.sg/bitstream/10356/136863/2/AsianHOST2019-LW.pdf","source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference Paper"}],"best_oa_location":{"id":"pmh:oai:dr.ntu.edu.sg:10356/136863","is_oa":true,"landing_page_url":"https://hdl.handle.net/10356/136863","pdf_url":"https://dr.ntu.edu.sg/bitstream/10356/136863/2/AsianHOST2019-LW.pdf","source":{"id":"https://openalex.org/S4306402609","display_name":"DR-NTU (Nanyang Technological University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172675005","host_organization_name":"Nanyang Technological University","host_organization_lineage":["https://openalex.org/I172675005"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Conference Paper"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.5400000214576721,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3008936127.pdf","grobid_xml":"https://content.openalex.org/works/W3008936127.grobid-xml"},"referenced_works_count":31,"referenced_works":["https://openalex.org/W1600075072","https://openalex.org/W1673923490","https://openalex.org/W1686810756","https://openalex.org/W1976955200","https://openalex.org/W2038631119","https://openalex.org/W2041052461","https://openalex.org/W2097117768","https://openalex.org/W2108598243","https://openalex.org/W2155893237","https://openalex.org/W2163605009","https://openalex.org/W2194775991","https://openalex.org/W2604319603","https://openalex.org/W2612445135","https://openalex.org/W2771112233","https://openalex.org/W2807835252","https://openalex.org/W2887603965","https://openalex.org/W2943220429","https://openalex.org/W2946801000","https://openalex.org/W2962700793","https://openalex.org/W2963163009","https://openalex.org/W2963446712","https://openalex.org/W2963857521","https://openalex.org/W2964153729","https://openalex.org/W4242053016","https://openalex.org/W4297775537","https://openalex.org/W6636086942","https://openalex.org/W6637162671","https://openalex.org/W6637373629","https://openalex.org/W6684191040","https://openalex.org/W6737664043","https://openalex.org/W6754553897"],"related_works":["https://openalex.org/W2950183588","https://openalex.org/W3080754722","https://openalex.org/W4383221314","https://openalex.org/W3093978547","https://openalex.org/W2953536436","https://openalex.org/W3203790781","https://openalex.org/W4313346231","https://openalex.org/W2738001131","https://openalex.org/W4285785480","https://openalex.org/W2997056298"],"abstract_inverted_index":{"Despite":[0],"superior":[1],"accuracy":[2],"on":[3,25,42],"most":[4,36,135],"vision":[5],"recognition":[6],"tasks,":[7],"deep":[8,80,189],"neural":[9,81],"networks":[10,111],"are":[11,112],"susceptible":[12],"to":[13,60,115],"adversarial":[14,37,86],"examples.":[15],"Recent":[16],"studies":[17],"show":[18],"that":[19,108,174],"adding":[20],"carefully":[21],"crafted":[22],"small":[23],"perturbations":[24,155],"input":[26],"layer":[27,100,133],"can":[28,64,156,183],"mislead":[29],"a":[30],"classifier":[31],"into":[32,98],"arbitrary":[33],"categories.":[34],"However,":[35],"attack":[38],"algorithms":[39],"only":[40],"concentrate":[41],"the":[43,46,76,130,158,186],"inputs":[44],"of":[45,49,79,101,117,154,164,176,188],"model,":[47],"effect":[48],"tampering":[50],"internal":[51,119],"nodes":[52],"is":[53,134],"seldom":[54],"studied.":[55],"Adversarial":[56],"attack,":[57],"if":[58],"extends":[59],"deployed":[61],"hardware":[62,83],"system,":[63],"perturb":[65],"or":[66,149],"alter":[67],"intermediate":[68],"data":[69],"during":[70],"real":[71],"time":[72],"processing.":[73],"To":[74],"investigate":[75],"vulnerability":[77],"implication":[78],"network":[82,124],"under":[84],"potential":[85],"attacks,":[87],"we":[88],"comprehensively":[89],"evaluate":[90],"10":[91],"popular":[92],"DNN":[93],"models":[94],"by":[95],"injecting":[96],"noise":[97],"each":[99],"these":[102],"models.":[103],"Our":[104,171],"experimental":[105],"results":[106],"indicate":[107],"more":[109,113],"accurate":[110],"prone":[114],"disturbance":[116],"selective":[118],"layers.":[120],"For":[121,137],"traditional":[122],"convolutional":[123],"structures":[125],"(AlexNet":[126],"and":[127,142,161,180],"VGG":[128],"family),":[129],"last":[131],"convolution":[132],"assailable.":[136],"state-of-the-art":[138],"architectures":[139],"(Inception,":[140],"ResNet":[141],"DenseNet":[143],"families),":[144],"as":[145,147],"little":[146],"0.1%":[148],"one":[150],"element":[151],"per":[152],"channel":[153],"subvert":[157],"original":[159],"predictions,":[160],"over":[162],"65%":[163],"computational":[165,181],"layers":[166],"suffer":[167],"from":[168],"this":[169],"vulnerability.":[170],"findings":[172],"reveal":[173],"optimization":[175],"accuracy,":[177],"model":[178],"size":[179],"efficiency":[182],"unconsciously":[184],"sacrifice":[185],"robustness":[187],"learning":[190],"system.":[191]},"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":4}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
