{"id":"https://openalex.org/W4412082725","doi":"https://doi.org/10.1109/host64725.2025.11050015","title":"STIQ: Safeguarding Training and Inferencing of Quantum Neural Networks from Untrusted Cloud","display_name":"STIQ: Safeguarding Training and Inferencing of Quantum Neural Networks from Untrusted Cloud","publication_year":2025,"publication_date":"2025-05-05","ids":{"openalex":"https://openalex.org/W4412082725","doi":"https://doi.org/10.1109/host64725.2025.11050015"},"language":"en","primary_location":{"id":"doi:10.1109/host64725.2025.11050015","is_oa":false,"landing_page_url":"https://doi.org/10.1109/host64725.2025.11050015","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5013754781","display_name":"Satwik Kundu","orcid":"https://orcid.org/0000-0002-2140-6486"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Satwik Kundu","raw_affiliation_strings":["Pennsylvania State University,University Park,USA"],"affiliations":[{"raw_affiliation_string":"Pennsylvania State University,University Park,USA","institution_ids":["https://openalex.org/I130769515"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5085567454","display_name":"Swaroop Ghosh","orcid":"https://orcid.org/0000-0001-8753-490X"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Swaroop Ghosh","raw_affiliation_strings":["Pennsylvania State University,University Park,USA"],"affiliations":[{"raw_affiliation_string":"Pennsylvania State University,University Park,USA","institution_ids":["https://openalex.org/I130769515"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5013754781"],"corresponding_institution_ids":["https://openalex.org/I130769515"],"apc_list":null,"apc_paid":null,"fwci":2.8414,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.91690814,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"78","last_page":"87"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9843000173568726,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9843000173568726,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/safeguarding","display_name":"Safeguarding","score":0.9284012913703918},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.8071802854537964},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.672897219657898},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.6035394072532654},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4471290409564972},{"id":"https://openalex.org/keywords/training","display_name":"Training (meteorology)","score":0.41039901971817017},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.30692410469055176},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.10149848461151123},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.06715741753578186},{"id":"https://openalex.org/keywords/meteorology","display_name":"Meteorology","score":0.04648327827453613}],"concepts":[{"id":"https://openalex.org/C2776743756","wikidata":"https://www.wikidata.org/wiki/Q5097921","display_name":"Safeguarding","level":2,"score":0.9284012913703918},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.8071802854537964},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.672897219657898},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.6035394072532654},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4471290409564972},{"id":"https://openalex.org/C2777211547","wikidata":"https://www.wikidata.org/wiki/Q17141490","display_name":"Training (meteorology)","level":2,"score":0.41039901971817017},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.30692410469055176},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.10149848461151123},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.06715741753578186},{"id":"https://openalex.org/C153294291","wikidata":"https://www.wikidata.org/wiki/Q25261","display_name":"Meteorology","level":1,"score":0.04648327827453613},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C159110408","wikidata":"https://www.wikidata.org/wiki/Q121176","display_name":"Nursing","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/host64725.2025.11050015","is_oa":false,"landing_page_url":"https://doi.org/10.1109/host64725.2025.11050015","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":33,"referenced_works":["https://openalex.org/W1990514347","https://openalex.org/W2008420411","https://openalex.org/W2069131066","https://openalex.org/W2079128711","https://openalex.org/W2103956991","https://openalex.org/W2117593045","https://openalex.org/W2320968599","https://openalex.org/W2755255888","https://openalex.org/W2765200655","https://openalex.org/W2798967590","https://openalex.org/W2896712926","https://openalex.org/W2945680873","https://openalex.org/W2963837235","https://openalex.org/W3111925745","https://openalex.org/W3132743969","https://openalex.org/W3168508484","https://openalex.org/W3186461170","https://openalex.org/W3201525770","https://openalex.org/W4200392948","https://openalex.org/W4223468676","https://openalex.org/W4237378407","https://openalex.org/W4280546230","https://openalex.org/W4283800453","https://openalex.org/W4285345508","https://openalex.org/W4293261736","https://openalex.org/W4380627387","https://openalex.org/W4386965170","https://openalex.org/W4389168221","https://openalex.org/W4399487474","https://openalex.org/W4402351418","https://openalex.org/W6748082217","https://openalex.org/W6759360685","https://openalex.org/W6844254439"],"related_works":["https://openalex.org/W4387497383","https://openalex.org/W3183948672","https://openalex.org/W3173606202","https://openalex.org/W3110381201","https://openalex.org/W2948807893","https://openalex.org/W2935909890","https://openalex.org/W2778153218","https://openalex.org/W2758277628","https://openalex.org/W1531601525","https://openalex.org/W2374550342"],"abstract_inverted_index":{"The":[0],"high":[1],"costs":[2],"of":[3,20,161,175,202],"existing":[4],"quantum":[5,14,26,32,36,223],"cloud":[6,27,60,124],"services,":[7],"combined":[8,131,238],"with":[9,48,237],"the":[10,18,49,59,65,100,116,139,157,162,173,197],"growing":[11],"demand":[12],"for":[13,120,196],"resources,":[15],"could":[16],"drive":[17],"development":[19],"more":[21],"affordable":[22],"but":[23],"potentially":[24],"untrusted":[25,42,209],"providers.":[28],"Deploying":[29],"or":[30,102],"hosting":[31,97],"models,":[33],"such":[34,86,106],"as":[35],"neural":[37],"networks":[38],"(QNNs),":[39],"on":[40,99,220],"these":[41,128],"platforms":[43],"introduces":[44],"numerous":[45],"security":[46,199],"concerns,":[47],"most":[50],"critical":[51],"being":[52],"model":[53],"theft.":[54],"This":[55,187],"vulnerability":[56],"arises":[57],"from":[58],"provider's":[61],"full":[62],"access":[63],"to":[64,82,154,168,194,208,230,241],"circuits":[66],"during":[67],"training":[68],"and/or":[69],"inference.":[70],"In":[71],"this":[72],"work,":[73],"we":[74],"introduce":[75],"STIQ,":[76],"a":[77,107,176,191],"novel":[78],"ensemble-based":[79],"strategy":[80],"designed":[81],"safeguard":[83],"QNNs":[84,95,118,147,203],"against":[85],"cloud-based":[87,205],"adversaries.":[88,210],"Our":[89],"method":[90],"innovatively":[91],"trains":[92],"two":[93],"distinct":[94],"concurrently,":[96],"them":[98],"same":[101],"different":[103],"platforms,":[104],"in":[105,183,204],"way":[108],"that":[109,226],"each":[110],"network":[111],"yields":[112],"obfuscated":[113],"outputs,":[114],"rendering":[115],"individual":[117],"ineffective":[119],"adversaries":[121],"operating":[122],"within":[123],"environments.":[125],"However,":[126],"when":[127],"outputs":[129],"are":[130],"locally":[132],"(using":[133],"an":[134,242],"aggregate":[135],"function),":[136],"they":[137],"reveal":[138],"correct":[140],"result.":[141],"Through":[142],"extensive":[143],"experiments":[144],"across":[145],"various":[146],"and":[148,159,200],"datasets,":[149],"our":[150],"technique":[151],"has":[152],"proven":[153],"effectively":[155],"mask":[156],"accuracy":[158],"losses":[160],"individually":[163],"hosted":[164],"models":[165],"by":[166,217],"up":[167,229],"76":[169],"%,":[170],"albeit":[171],"at":[172],"expense":[174],"<tex":[177,231],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\"":[178,232],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">$\\leq":[179],"2":[180],"\\times$</tex>":[181],"increase":[182],"total":[184],"computational":[185],"overhead.":[186],"trade-off,":[188],"however,":[189],"is":[190],"small":[192],"price":[193],"pay":[195],"enhanced":[198],"integrity":[201],"environments":[206],"prone":[207],"We":[211],"also":[212],"demonstrated":[213],"STIQ's":[214],"practical":[215],"application":[216],"evaluating":[218],"it":[219],"multiple":[221],"real":[222],"hardwares,":[224],"showing":[225],"STIQ":[227],"achieves":[228],"xmlns:xlink=\"http://www.w3.org/1999/xlink\">$\\approx":[233],"70":[234],"\\%$</tex>":[235],"obfuscation,":[236],"performance":[239],"comparable":[240],"unobfuscated":[243],"model.":[244]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
