{"id":"https://openalex.org/W3158166437","doi":"https://doi.org/10.1109/iscas51556.2021.9401659","title":"Exploiting Process Variations to Protect Machine Learning Inference Engine from Chip Cloning","display_name":"Exploiting Process Variations to Protect Machine Learning Inference Engine from Chip Cloning","publication_year":2021,"publication_date":"2021-04-27","ids":{"openalex":"https://openalex.org/W3158166437","doi":"https://doi.org/10.1109/iscas51556.2021.9401659","mag":"3158166437"},"language":"en","primary_location":{"id":"doi:10.1109/iscas51556.2021.9401659","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iscas51556.2021.9401659","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Symposium on Circuits and Systems (ISCAS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5014877058","display_name":"Shanshi Huang","orcid":"https://orcid.org/0000-0002-1760-7656"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Shanshi Huang","raw_affiliation_strings":["School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076031530","display_name":"Xiaochen Peng","orcid":"https://orcid.org/0000-0001-6148-7711"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xiaochen Peng","raw_affiliation_strings":["School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013020304","display_name":"Hongwu Jiang","orcid":"https://orcid.org/0000-0002-3048-5948"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hongwu Jiang","raw_affiliation_strings":["School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5021633981","display_name":"Yandong Luo","orcid":"https://orcid.org/0000-0001-8239-0492"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yandong Luo","raw_affiliation_strings":["School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA","institution_ids":["https://openalex.org/I130701444"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5054894631","display_name":"Shimeng Yu","orcid":"https://orcid.org/0000-0002-0068-3652"},"institutions":[{"id":"https://openalex.org/I130701444","display_name":"Georgia Institute of Technology","ror":"https://ror.org/01zkghx44","country_code":"US","type":"education","lineage":["https://openalex.org/I130701444"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shimeng Yu","raw_affiliation_strings":["School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA"],"affiliations":[{"raw_affiliation_string":"School of Electrical and Computer Engineering, Georgia Institute of Technology, Atlanta, GA","institution_ids":["https://openalex.org/I130701444"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5014877058"],"corresponding_institution_ids":["https://openalex.org/I130701444"],"apc_list":null,"apc_paid":null,"fwci":0.1003,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.40422203,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":"106","issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11601","display_name":"Neuroscience and Neural Engineering","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/2804","display_name":"Cellular and Molecular Neuroscience"},"field":{"id":"https://openalex.org/fields/28","display_name":"Neuroscience"},"domain":{"id":"https://openalex.org/domains/1","display_name":"Life Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7374463081359863},{"id":"https://openalex.org/keywords/chip","display_name":"Chip","score":0.5151099562644958},{"id":"https://openalex.org/keywords/field-programmable-gate-array","display_name":"Field-programmable gate array","score":0.48141834139823914},{"id":"https://openalex.org/keywords/offset","display_name":"Offset (computer science)","score":0.4609862267971039},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.4471830427646637},{"id":"https://openalex.org/keywords/inference-engine","display_name":"Inference engine","score":0.4245993196964264},{"id":"https://openalex.org/keywords/efficient-energy-use","display_name":"Efficient energy use","score":0.42431578040122986},{"id":"https://openalex.org/keywords/encoder","display_name":"Encoder","score":0.42197301983833313},{"id":"https://openalex.org/keywords/computer-hardware","display_name":"Computer hardware","score":0.4169681966304779},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3979964554309845},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.37179237604141235},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.2744112014770508},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.14239099621772766},{"id":"https://openalex.org/keywords/electrical-engineering","display_name":"Electrical engineering","score":0.10640081763267517}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7374463081359863},{"id":"https://openalex.org/C165005293","wikidata":"https://www.wikidata.org/wiki/Q1074500","display_name":"Chip","level":2,"score":0.5151099562644958},{"id":"https://openalex.org/C42935608","wikidata":"https://www.wikidata.org/wiki/Q190411","display_name":"Field-programmable gate array","level":2,"score":0.48141834139823914},{"id":"https://openalex.org/C175291020","wikidata":"https://www.wikidata.org/wiki/Q1156822","display_name":"Offset (computer science)","level":2,"score":0.4609862267971039},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.4471830427646637},{"id":"https://openalex.org/C46743427","wikidata":"https://www.wikidata.org/wiki/Q1341685","display_name":"Inference engine","level":3,"score":0.4245993196964264},{"id":"https://openalex.org/C2742236","wikidata":"https://www.wikidata.org/wiki/Q924713","display_name":"Efficient energy use","level":2,"score":0.42431578040122986},{"id":"https://openalex.org/C118505674","wikidata":"https://www.wikidata.org/wiki/Q42586063","display_name":"Encoder","level":2,"score":0.42197301983833313},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.4169681966304779},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3979964554309845},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.37179237604141235},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.2744112014770508},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.14239099621772766},{"id":"https://openalex.org/C119599485","wikidata":"https://www.wikidata.org/wiki/Q43035","display_name":"Electrical engineering","level":1,"score":0.10640081763267517},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/iscas51556.2021.9401659","is_oa":false,"landing_page_url":"https://doi.org/10.1109/iscas51556.2021.9401659","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Symposium on Circuits and Systems (ISCAS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/7","score":0.9100000262260437,"display_name":"Affordable and clean energy"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":25,"referenced_works":["https://openalex.org/W1686810756","https://openalex.org/W1946546377","https://openalex.org/W1970598944","https://openalex.org/W2011096548","https://openalex.org/W2421397265","https://openalex.org/W2533624512","https://openalex.org/W2742395195","https://openalex.org/W2782046614","https://openalex.org/W2785141883","https://openalex.org/W2790511620","https://openalex.org/W2798554798","https://openalex.org/W2805362231","https://openalex.org/W2919115771","https://openalex.org/W2921329602","https://openalex.org/W2962835968","https://openalex.org/W2970584581","https://openalex.org/W2970971581","https://openalex.org/W2974585810","https://openalex.org/W2983750276","https://openalex.org/W3005619596","https://openalex.org/W3061567197","https://openalex.org/W4295312788","https://openalex.org/W6637373629","https://openalex.org/W6742224841","https://openalex.org/W6766978945"],"related_works":["https://openalex.org/W2111241003","https://openalex.org/W4200391368","https://openalex.org/W2355315220","https://openalex.org/W2210979487","https://openalex.org/W2074043759","https://openalex.org/W2373535795","https://openalex.org/W2082487009","https://openalex.org/W4390516098","https://openalex.org/W2406926880","https://openalex.org/W2364622490"],"abstract_inverted_index":{"Machine":[0],"learning":[1],"inference":[2],"engine":[3,45],"is":[4,46,60],"of":[5,67,92,164,186,195],"great":[6,33],"interest":[7],"to":[8,56,82,102],"smart":[9],"edge":[10],"computing.":[11],"Compute-in-memory":[12],"(CIM)":[13],"architecture":[14],"has":[15],"shown":[16],"significant":[17,116],"improvements":[18],"in":[19,205],"throughput":[20],"and":[21,38,52],"energy":[22],"efficiency":[23],"for":[24,35,109,119,156,199],"hardware":[25],"acceleration.":[26],"Emerging":[27],"nonvolatile":[28],"memory":[29],"(eNVM)":[30],"technologies":[31],"offer":[32],"potentials":[34],"instant":[36],"on":[37,65,71,128,147,167,175],"off":[39],"by":[40,49,87],"dynamic":[41],"power":[42],"gating.":[43],"Inference":[44],"typically":[47],"pre-trained":[48],"the":[50,57,68,83,89,93,104,148,157,161],"cloud":[51],"then":[53],"being":[54],"deployed":[55],"field.":[58],"There":[59],"a":[61,80,110,129,134],"new":[62],"security":[63],"concern":[64],"cloning":[66,85],"weights":[69,165],"stored":[70],"eNVM-based":[72],"CIM":[73],"chip.":[74],"In":[75,96],"this":[76],"paper,":[77],"we":[78,98,151],"propose":[79],"countermeasure":[81],"weight":[84,100,178,203],"attack":[86],"exploiting":[88],"process":[90],"variations":[91],"periphery":[94],"circuitry.":[95],"particular,":[97],"use":[99],"fine-tuning":[101],"compensate":[103],"analog-to-digital":[105],"converter":[106],"(ADC)":[107],"offset":[108],"specific":[111],"chip":[112,121,159],"instance":[113],"while":[114,160],"inducing":[115],"accuracy":[117,155,174],"drop":[118],"cloned":[120,166],"instances.":[122],"We":[123],"evaluate":[124],"our":[125],"proposed":[126],"scheme":[127],"CIFAR-10":[130],"classification":[131],"task":[132],"using":[133],"VGG-":[135],"8":[136],"network.":[137],"Our":[138],"results":[139],"show":[140],"that":[141],"with":[142],"precisely":[143],"chosen":[144],"transistor":[145],"size":[146],"employed":[149],"SAR-ADC,":[150],"could":[152,180],"maintain":[153],"88%~90%":[154],"fine-tuned":[158],"same":[162],"set":[163],"other":[168],"chips":[169],"will":[170],"only":[171,191],"have":[172],"20~40%":[173],"average.":[176],"The":[177],"fine-tune":[179],"be":[181],"completed":[182],"within":[183],"one":[184],"epoch":[185],"250":[187],"iterations.":[188],"On":[189],"average":[190],"0.02%,":[192],"0.025%,":[193],"0.142%":[194],"cells":[196],"are":[197],"updated":[198],"2-bit,":[200],"4-bit,":[201],"8-bit":[202],"precisions":[204],"each":[206],"iteration.":[207]},"counts_by_year":[{"year":2022,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
