{"id":"https://openalex.org/W4379382243","doi":"https://doi.org/10.1109/tcad.2023.3282897","title":"Joint Protection Scheme for Deep Neural Network Hardware Accelerators and Models","display_name":"Joint Protection Scheme for Deep Neural Network Hardware Accelerators and Models","publication_year":2023,"publication_date":"2023-06-05","ids":{"openalex":"https://openalex.org/W4379382243","doi":"https://doi.org/10.1109/tcad.2023.3282897"},"language":"en","primary_location":{"id":"doi:10.1109/tcad.2023.3282897","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcad.2023.3282897","pdf_url":null,"source":{"id":"https://openalex.org/S100835903","display_name":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems","issn_l":"0278-0070","issn":["0278-0070","1937-4151"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101961261","display_name":"Jingbo Zhou","orcid":"https://orcid.org/0000-0002-6321-6293"},"institutions":[{"id":"https://openalex.org/I52357470","display_name":"The Ohio State University","ror":"https://ror.org/00rs6vg23","country_code":"US","type":"education","lineage":["https://openalex.org/I52357470"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Jingbo Zhou","raw_affiliation_strings":["Electrical and Computer Engineering Department, The Ohio State University, Columbus, OH, USA"],"affiliations":[{"raw_affiliation_string":"Electrical and Computer Engineering Department, The Ohio State University, Columbus, OH, USA","institution_ids":["https://openalex.org/I52357470"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5063673084","display_name":"Xinmiao Zhang","orcid":"https://orcid.org/0000-0002-8289-2377"},"institutions":[{"id":"https://openalex.org/I33213144","display_name":"University of Florida","ror":"https://ror.org/02y3ad647","country_code":"US","type":"education","lineage":["https://openalex.org/I33213144"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Xinmiao Zhang","raw_affiliation_strings":["University of Florida, Gainesville, FL, USA"],"affiliations":[{"raw_affiliation_string":"University of Florida, Gainesville, FL, USA","institution_ids":["https://openalex.org/I33213144"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5101961261"],"corresponding_institution_ids":["https://openalex.org/I52357470"],"apc_list":null,"apc_paid":null,"fwci":1.8481,"has_fulltext":false,"cited_by_count":6,"citation_normalized_percentile":{"value":0.84265075,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":98},"biblio":{"volume":"42","issue":"12","first_page":"4518","last_page":"4527"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.9980000257492065,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.794161319732666},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.5927770733833313},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.5760173201560974},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.5192875266075134},{"id":"https://openalex.org/keywords/scheme","display_name":"Scheme (mathematics)","score":0.48816925287246704},{"id":"https://openalex.org/keywords/obfuscation","display_name":"Obfuscation","score":0.4861183166503906},{"id":"https://openalex.org/keywords/computer-engineering","display_name":"Computer engineering","score":0.46159812808036804},{"id":"https://openalex.org/keywords/computer-hardware","display_name":"Computer hardware","score":0.45022153854370117},{"id":"https://openalex.org/keywords/hardware-acceleration","display_name":"Hardware acceleration","score":0.43784603476524353},{"id":"https://openalex.org/keywords/joint","display_name":"Joint (building)","score":0.41660910844802856},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.34742316603660583},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.26002490520477295},{"id":"https://openalex.org/keywords/field-programmable-gate-array","display_name":"Field-programmable gate array","score":0.19558194279670715},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.12822556495666504},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.07139301300048828}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.794161319732666},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.5927770733833313},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.5760173201560974},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.5192875266075134},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.48816925287246704},{"id":"https://openalex.org/C40305131","wikidata":"https://www.wikidata.org/wiki/Q2616305","display_name":"Obfuscation","level":2,"score":0.4861183166503906},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.46159812808036804},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.45022153854370117},{"id":"https://openalex.org/C13164978","wikidata":"https://www.wikidata.org/wiki/Q600158","display_name":"Hardware acceleration","level":3,"score":0.43784603476524353},{"id":"https://openalex.org/C18555067","wikidata":"https://www.wikidata.org/wiki/Q8375051","display_name":"Joint (building)","level":2,"score":0.41660910844802856},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.34742316603660583},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.26002490520477295},{"id":"https://openalex.org/C42935608","wikidata":"https://www.wikidata.org/wiki/Q190411","display_name":"Field-programmable gate array","level":2,"score":0.19558194279670715},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.12822556495666504},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.07139301300048828},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C170154142","wikidata":"https://www.wikidata.org/wiki/Q150737","display_name":"Architectural engineering","level":1,"score":0.0},{"id":"https://openalex.org/C134306372","wikidata":"https://www.wikidata.org/wiki/Q7754","display_name":"Mathematical analysis","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tcad.2023.3282897","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tcad.2023.3282897","pdf_url":null,"source":{"id":"https://openalex.org/S100835903","display_name":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems","issn_l":"0278-0070","issn":["0278-0070","1937-4151"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319808","host_organization_name":"Institute of Electrical and Electronics Engineers","host_organization_lineage":["https://openalex.org/P4310319808"],"host_organization_lineage_names":["Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/7","display_name":"Affordable and clean energy","score":0.9100000262260437}],"awards":[{"id":"https://openalex.org/G4930293850","display_name":null,"funder_award_id":"FA8650-20-C-1719","funder_id":"https://openalex.org/F4320338294","funder_display_name":"Air Force Research Laboratory"}],"funders":[{"id":"https://openalex.org/F4320338294","display_name":"Air Force Research Laboratory","ror":"https://ror.org/02e2egq70"}],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":35,"referenced_works":["https://openalex.org/W1504027613","https://openalex.org/W1524250393","https://openalex.org/W2008819052","https://openalex.org/W2067276029","https://openalex.org/W2083314129","https://openalex.org/W2108598243","https://openalex.org/W2194775991","https://openalex.org/W2289252105","https://openalex.org/W2419784917","https://openalex.org/W2747980214","https://openalex.org/W2766393343","https://openalex.org/W2790282160","https://openalex.org/W2810685556","https://openalex.org/W2913893101","https://openalex.org/W2922269119","https://openalex.org/W2950285720","https://openalex.org/W2979439447","https://openalex.org/W2981746473","https://openalex.org/W3012504067","https://openalex.org/W3016678144","https://openalex.org/W3090570602","https://openalex.org/W3092557510","https://openalex.org/W3106433382","https://openalex.org/W3118608800","https://openalex.org/W3131433865","https://openalex.org/W3140586337","https://openalex.org/W3158697642","https://openalex.org/W3163519515","https://openalex.org/W3187481008","https://openalex.org/W3206290655","https://openalex.org/W4246809981","https://openalex.org/W6637373629","https://openalex.org/W6684191040","https://openalex.org/W6718212895","https://openalex.org/W6789723219"],"related_works":["https://openalex.org/W4224216661","https://openalex.org/W2132360941","https://openalex.org/W3210347767","https://openalex.org/W2066014542","https://openalex.org/W4319952061","https://openalex.org/W4280636456","https://openalex.org/W4388913998","https://openalex.org/W4310584535","https://openalex.org/W4295935044","https://openalex.org/W3159906349"],"abstract_inverted_index":{"Deep":[0],"neural":[1],"networks":[2],"(DNNs)":[3],"are":[4,123],"utilized":[5],"in":[6,217],"numerous":[7],"image":[8],"processing,":[9],"object":[10],"detection,":[11],"and":[12,16,156,168,222,225,257],"video":[13],"analysis":[14],"tasks":[15],"need":[17,45,114],"to":[18,24,46,54,60,104,115,125,135,183,214,246],"be":[19,116,203],"implemented":[20],"using":[21,75,163],"hardware":[22,154,165],"accelerators":[23,155],"achieve":[25],"practical":[26],"speed.":[27],"Logic":[28],"locking":[29],"is":[30,71,161,181,194,239],"one":[31],"of":[32,50,89],"the":[33,48,62,67,87,93,112,119,137,143,178,185,190,199,207,227,235,242],"most":[34],"popular":[35],"methods":[36,129],"for":[37,79,152],"preventing":[38],"chip":[39],"counterfeiting.":[40],"Nevertheless,":[41],"existing":[42],"logic-locking":[43,82,96],"schemes":[44,83],"sacrifice":[47],"number":[49],"input":[51],"patterns":[52],"leading":[53],"wrong":[55,77,211],"output":[56,191],"under":[57],"incorrect":[58],"keys":[59],"resist":[61],"powerful":[63],"satisfiability":[64],"(SAT)-attack.":[65],"Furthermore,":[66],"DNN":[68,101,106,153,159,236],"model":[69,138,170,237,248,255,261],"inference":[70,220],"fault":[72],"tolerant.":[73],"Hence,":[74],"a":[76,132,148,164,169,197,210],"key":[78,166,171],"those":[80],"SAT-resistant":[81,95],"may":[84],"not":[85,188,259],"affect":[86,189],"accuracy":[88],"DNNs.":[90],"This":[91,145],"makes":[92,226],"previous":[94,175,247],"scheme":[97,151],"ineffective":[98],"on":[99],"protecting":[100],"accelerators.":[102],"Besides,":[103],"prevent":[105],"models":[107,113],"from":[108,174],"being":[109],"illegally":[110],"used,":[111],"obfuscated":[117,240],"by":[118,241],"designers":[120],"before":[121],"they":[122],"provided":[124],"end-users.":[126],"Previous":[127],"obfuscation":[128,249],"either":[130],"require":[131],"long":[133],"time":[134],"retrain":[136],"or":[139],"leak":[140,260],"information":[141],"about":[142],"model.":[144],"article":[146],"proposes":[147],"joint":[149],"protection":[150],"models.":[157],"The":[158],"accelerator":[160,228],"modified":[162],"(Hkey)":[167],"(Mkey).":[172],"Different":[173],"logic":[176],"locking,":[177],"Hkey,":[179],"which":[180],"used":[182],"protect":[184],"accelerator,":[186],"does":[187,258],"when":[192],"it":[193],"wrong.":[195],"As":[196],"result,":[198],"SAT":[200],"attack":[201],"can":[202,233],"effectively":[204],"resisted.":[205],"On":[206],"other":[208],"hand,":[209],"Hkey":[212],"leads":[213],"substantial":[215],"increase":[216],"memory":[218],"accesses,":[219],"time,":[221],"energy":[223],"consumption":[224],"unusable.":[229],"A":[230],"correct":[231],"Mkey":[232],"recover":[234],"that":[238],"proposed":[243,252],"method.":[244],"Compared":[245],"schemes,":[250],"our":[251],"method":[253],"avoids":[254],"retraining":[256],"information.":[262]},"counts_by_year":[{"year":2025,"cited_by_count":4},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
