{"id":"https://openalex.org/W3138431056","doi":"https://doi.org/10.1109/dac18074.2021.9586202","title":"On the Intrinsic Robustness of NVM Crossbars Against Adversarial Attacks","display_name":"On the Intrinsic Robustness of NVM Crossbars Against Adversarial Attacks","publication_year":2021,"publication_date":"2021-11-08","ids":{"openalex":"https://openalex.org/W3138431056","doi":"https://doi.org/10.1109/dac18074.2021.9586202","mag":"3138431056"},"language":"en","primary_location":{"id":"doi:10.1109/dac18074.2021.9586202","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dac18074.2021.9586202","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 58th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"},"type":"preprint","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2008.12016","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5087909950","display_name":"Deboleena Roy","orcid":"https://orcid.org/0000-0001-9973-7237"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Deboleena Roy","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]},{"raw_affiliation_string":"Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036923158","display_name":"Indranil Chakraborty","orcid":"https://orcid.org/0000-0003-4829-3706"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Indranil Chakraborty","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]},{"raw_affiliation_string":"Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5001819412","display_name":"Timur Ibrayev","orcid":"https://orcid.org/0000-0001-8849-8971"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Timur Ibrayev","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]},{"raw_affiliation_string":"Purdue University, Department of Electrical and Computer Engineering, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5031161187","display_name":"Kaushik Roy","orcid":"https://orcid.org/0009-0002-3375-2877"},"institutions":[{"id":"https://openalex.org/I219193219","display_name":"Purdue University West Lafayette","ror":"https://ror.org/02dqehb95","country_code":"US","type":"education","lineage":["https://openalex.org/I219193219"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Kaushik Roy","raw_affiliation_strings":["Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","PURDUE UNIVERSITY"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Computer Engineering, Purdue University, West Lafayette, USA","institution_ids":["https://openalex.org/I219193219"]},{"raw_affiliation_string":"PURDUE UNIVERSITY","institution_ids":["https://openalex.org/I219193219"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5087909950"],"corresponding_institution_ids":["https://openalex.org/I219193219"],"apc_list":null,"apc_paid":null,"fwci":0.2032,"has_fulltext":true,"cited_by_count":3,"citation_normalized_percentile":{"value":0.49091239,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"565","last_page":"570"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12808","display_name":"Ferroelectric and Negative Capacitance Devices","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/robustness","display_name":"Robustness (evolution)","score":0.8068565130233765},{"id":"https://openalex.org/keywords/bottleneck","display_name":"Bottleneck","score":0.7439797520637512},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7282159328460693},{"id":"https://openalex.org/keywords/adversarial-system","display_name":"Adversarial system","score":0.514488697052002},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.49783873558044434},{"id":"https://openalex.org/keywords/deep-neural-networks","display_name":"Deep neural networks","score":0.4779805541038513},{"id":"https://openalex.org/keywords/non-volatile-memory","display_name":"Non-volatile memory","score":0.45962655544281006},{"id":"https://openalex.org/keywords/crossbar-switch","display_name":"Crossbar switch","score":0.45412200689315796},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.4175616204738617},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.40470090508461},{"id":"https://openalex.org/keywords/computer-hardware","display_name":"Computer hardware","score":0.35265231132507324},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.3259912133216858},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.32020944356918335},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3032103180885315}],"concepts":[{"id":"https://openalex.org/C63479239","wikidata":"https://www.wikidata.org/wiki/Q7353546","display_name":"Robustness (evolution)","level":3,"score":0.8068565130233765},{"id":"https://openalex.org/C2780513914","wikidata":"https://www.wikidata.org/wiki/Q18210350","display_name":"Bottleneck","level":2,"score":0.7439797520637512},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7282159328460693},{"id":"https://openalex.org/C37736160","wikidata":"https://www.wikidata.org/wiki/Q1801315","display_name":"Adversarial system","level":2,"score":0.514488697052002},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.49783873558044434},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.4779805541038513},{"id":"https://openalex.org/C177950962","wikidata":"https://www.wikidata.org/wiki/Q10997658","display_name":"Non-volatile memory","level":2,"score":0.45962655544281006},{"id":"https://openalex.org/C29984679","wikidata":"https://www.wikidata.org/wiki/Q1929149","display_name":"Crossbar switch","level":2,"score":0.45412200689315796},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.4175616204738617},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.40470090508461},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.35265231132507324},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.3259912133216858},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.32020944356918335},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3032103180885315},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C104317684","wikidata":"https://www.wikidata.org/wiki/Q7187","display_name":"Gene","level":2,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1109/dac18074.2021.9586202","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dac18074.2021.9586202","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 58th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2008.12016","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2008.12016","pdf_url":"https://arxiv.org/pdf/2008.12016","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"mag:3138431056","is_oa":true,"landing_page_url":"http://export.arxiv.org/pdf/2008.12016","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"arXiv (Cornell University)","raw_type":null},{"id":"doi:10.48550/arxiv.2008.12016","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2008.12016","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2008.12016","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2008.12016","pdf_url":"https://arxiv.org/pdf/2008.12016","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[{"score":0.8799999952316284,"display_name":"Affordable and clean energy","id":"https://metadata.un.org/sdg/7"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320306087","display_name":"Semiconductor Research Corporation","ror":"https://ror.org/047z4n946"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3138431056.pdf","grobid_xml":"https://content.openalex.org/works/W3138431056.grobid-xml"},"referenced_works_count":46,"referenced_works":["https://openalex.org/W1965288361","https://openalex.org/W2004823737","https://openalex.org/W2024372894","https://openalex.org/W2108598243","https://openalex.org/W2194775991","https://openalex.org/W2214682759","https://openalex.org/W2399958287","https://openalex.org/W2475334473","https://openalex.org/W2518281301","https://openalex.org/W2526202524","https://openalex.org/W2603766943","https://openalex.org/W2606722458","https://openalex.org/W2625840880","https://openalex.org/W2765384636","https://openalex.org/W2786118190","https://openalex.org/W2787708942","https://openalex.org/W2787733970","https://openalex.org/W2794284562","https://openalex.org/W2796625795","https://openalex.org/W2798956872","https://openalex.org/W2884001105","https://openalex.org/W2913104037","https://openalex.org/W2919115771","https://openalex.org/W2946814535","https://openalex.org/W2963207607","https://openalex.org/W2963920068","https://openalex.org/W2964153729","https://openalex.org/W2964253222","https://openalex.org/W2983353765","https://openalex.org/W2997127238","https://openalex.org/W3042468132","https://openalex.org/W3091835145","https://openalex.org/W3106392217","https://openalex.org/W3107235539","https://openalex.org/W3118608800","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6688151191","https://openalex.org/W6739868092","https://openalex.org/W6745272055","https://openalex.org/W6746402973","https://openalex.org/W6747920752","https://openalex.org/W6748475379","https://openalex.org/W6748711285","https://openalex.org/W6762681652","https://openalex.org/W6785925956"],"related_works":["https://openalex.org/W3211953282","https://openalex.org/W3200855249","https://openalex.org/W3186714066","https://openalex.org/W3017820626","https://openalex.org/W2964276371","https://openalex.org/W2910777868","https://openalex.org/W3117595835","https://openalex.org/W2989732469","https://openalex.org/W2910426746","https://openalex.org/W3213746302","https://openalex.org/W3090163455","https://openalex.org/W3161311774","https://openalex.org/W3101083343","https://openalex.org/W2996765603","https://openalex.org/W2885629449","https://openalex.org/W3167538392","https://openalex.org/W3196076994","https://openalex.org/W2795127895","https://openalex.org/W2612864759"],"abstract_inverted_index":{"The":[0],"increasing":[1],"computational":[2],"demand":[3],"of":[4,48,69,84,96,102,121,134,143,175],"Deep":[5,70],"Learning":[6],"has":[7],"propelled":[8],"research":[9],"in":[10,40,50,58,105],"special-purpose":[11],"inference":[12],"accelerators":[13],"based":[14],"on":[15],"emerging":[16],"non-volatile":[17],"memory":[18],"(NVM)":[19],"technologies.":[20],"Such":[21],"NVM":[22,177],"crossbars":[23,52],"promise":[24],"fast":[25],"and":[26,56,108,146,158],"energy-efficient":[27],"in-situ":[28],"Matrix":[29],"Vector":[30],"Multiplication":[31],"(MVM)":[32],"thus":[33],"alleviating":[34],"the":[35,45,66,82,93,100,117,122,173,176],"long-standing":[36],"von":[37],"Neuman":[38],"bottleneck":[39],"today\u2019s":[41],"digital":[42],"hardware.":[43],"However,":[44],"analog":[46,97,123,128],"nature":[47],"computing":[49,98,129],"these":[51,85],"is":[53,119],"inherently":[54],"approximate":[55],"results":[57],"deviations":[59],"from":[60],"ideal":[61],"output":[62],"values,":[63],"which":[64],"reduces":[65],"overall":[67],"performance":[68],"Neural":[71],"Networks":[72],"(DNNs)":[73],"under":[74,87],"normal":[75],"circumstances.":[76,89],"In":[77,112],"this":[78,169],"paper,":[79],"we":[80,125],"study":[81],"impact":[83],"non-idealities":[86],"adversarial":[88,103,140],"We":[90,161],"show":[91],"that":[92,127,167],"non-ideal":[94],"behavior":[95],"lowers":[99],"effectiveness":[101],"attacks,":[104],"both":[106],"Black-Box":[107],"White-Box":[109],"attack":[110],"scenarios.":[111],"a":[113,131,138],"non-adaptive":[114],"attack,":[115],"where":[116],"attacker":[118],"unaware":[120],"hardware,":[124],"observe":[126],"offers":[130],"varying":[132],"degree":[133],"intrinsic":[135],"robustness,":[136],"with":[137],"peak":[139],"accuracy":[141],"improvement":[142],"35.34%,":[144],"22.69%,":[145],"9.90%":[147],"for":[148,155],"white":[149],"box":[150],"PGD":[151],"(\u03f5=1/255,":[152],"iter":[153],"=30)":[154],"CIFAR-10,":[156],"CIFAR-100,":[157],"ImageNet":[159],"respectively.":[160],"also":[162],"demonstrate":[163],"\u201cHardware-in-Loop\u201d":[164],"adaptive":[165],"attacks":[166],"circumvent":[168],"robustness":[170],"by":[171],"utilizing":[172],"knowledge":[174],"model.":[178]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
