{"id":"https://openalex.org/W2961904611","doi":"https://doi.org/10.1109/vts.2019.8758660","title":"Leveraging Memory PUFs and PIM-based encryption to secure edge deep learning systems","display_name":"Leveraging Memory PUFs and PIM-based encryption to secure edge deep learning systems","publication_year":2019,"publication_date":"2019-04-01","ids":{"openalex":"https://openalex.org/W2961904611","doi":"https://doi.org/10.1109/vts.2019.8758660","mag":"2961904611"},"language":"en","primary_location":{"id":"doi:10.1109/vts.2019.8758660","is_oa":false,"landing_page_url":"https://doi.org/10.1109/vts.2019.8758660","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE 37th VLSI Test Symposium (VTS)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100320320","display_name":"Wen Li","orcid":"https://orcid.org/0000-0002-8346-2926"},"institutions":[{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Wen Li","raw_affiliation_strings":["SKLCA, Institute of Computing Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"SKLCA, Institute of Computing Technology, Beijing, China","institution_ids":["https://openalex.org/I4210090176"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100346965","display_name":"Ying Wang","orcid":"https://orcid.org/0000-0001-5172-4736"},"institutions":[{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ying Wang","raw_affiliation_strings":["SKLCA, Institute of Computing Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"SKLCA, Institute of Computing Technology, Beijing, China","institution_ids":["https://openalex.org/I4210090176"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100768288","display_name":"Huawei Li","orcid":"https://orcid.org/0000-0001-8082-4218"},"institutions":[{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Huawei Li","raw_affiliation_strings":["SKLCA, Institute of Computing Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"SKLCA, Institute of Computing Technology, Beijing, China","institution_ids":["https://openalex.org/I4210090176"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5023380073","display_name":"Xiaowei Li","orcid":"https://orcid.org/0000-0002-0874-814X"},"institutions":[{"id":"https://openalex.org/I4210090176","display_name":"Institute of Computing Technology","ror":"https://ror.org/0090r4d87","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210090176"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xiaowei Li","raw_affiliation_strings":["SKLCA, Institute of Computing Technology, Beijing, China"],"affiliations":[{"raw_affiliation_string":"SKLCA, Institute of Computing Technology, Beijing, China","institution_ids":["https://openalex.org/I4210090176"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5100320320"],"corresponding_institution_ids":["https://openalex.org/I4210090176"],"apc_list":null,"apc_paid":null,"fwci":0.2408,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.48004174,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9994999766349792,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T14117","display_name":"Integrated Circuits and Semiconductor Failure Analysis","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.8308469653129578},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8235876560211182},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.7610046863555908},{"id":"https://openalex.org/keywords/edge-device","display_name":"Edge device","score":0.7253593802452087},{"id":"https://openalex.org/keywords/edge-computing","display_name":"Edge computing","score":0.6018438339233398},{"id":"https://openalex.org/keywords/enhanced-data-rates-for-gsm-evolution","display_name":"Enhanced Data Rates for GSM Evolution","score":0.5971954464912415},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.5688340663909912},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.533087968826294},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.5121586322784424},{"id":"https://openalex.org/keywords/big-data","display_name":"Big data","score":0.4787794351577759},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.43697795271873474},{"id":"https://openalex.org/keywords/convolutional-neural-network","display_name":"Convolutional neural network","score":0.43444231152534485},{"id":"https://openalex.org/keywords/data-modeling","display_name":"Data modeling","score":0.41730812191963196},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.3834523558616638},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3471393287181854},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.34361422061920166},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.18214190006256104},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.1601094901561737},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.15570557117462158}],"concepts":[{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.8308469653129578},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8235876560211182},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.7610046863555908},{"id":"https://openalex.org/C138236772","wikidata":"https://www.wikidata.org/wiki/Q25098575","display_name":"Edge device","level":3,"score":0.7253593802452087},{"id":"https://openalex.org/C2778456923","wikidata":"https://www.wikidata.org/wiki/Q5337692","display_name":"Edge computing","level":3,"score":0.6018438339233398},{"id":"https://openalex.org/C162307627","wikidata":"https://www.wikidata.org/wiki/Q204833","display_name":"Enhanced Data Rates for GSM Evolution","level":2,"score":0.5971954464912415},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.5688340663909912},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.533087968826294},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.5121586322784424},{"id":"https://openalex.org/C75684735","wikidata":"https://www.wikidata.org/wiki/Q858810","display_name":"Big data","level":2,"score":0.4787794351577759},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.43697795271873474},{"id":"https://openalex.org/C81363708","wikidata":"https://www.wikidata.org/wiki/Q17084460","display_name":"Convolutional neural network","level":2,"score":0.43444231152534485},{"id":"https://openalex.org/C67186912","wikidata":"https://www.wikidata.org/wiki/Q367664","display_name":"Data modeling","level":2,"score":0.41730812191963196},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3834523558616638},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3471393287181854},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.34361422061920166},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.18214190006256104},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.1601094901561737},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.15570557117462158}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/vts.2019.8758660","is_oa":false,"landing_page_url":"https://doi.org/10.1109/vts.2019.8758660","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE 37th VLSI Test Symposium (VTS)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":34,"referenced_works":["https://openalex.org/W1673923490","https://openalex.org/W1945616565","https://openalex.org/W2034547981","https://openalex.org/W2128111793","https://openalex.org/W2152839228","https://openalex.org/W2309480169","https://openalex.org/W2396572963","https://openalex.org/W2403646140","https://openalex.org/W2435473771","https://openalex.org/W2603766943","https://openalex.org/W2616028256","https://openalex.org/W2618043096","https://openalex.org/W2620512600","https://openalex.org/W2748789698","https://openalex.org/W2757528734","https://openalex.org/W2766489088","https://openalex.org/W2794842046","https://openalex.org/W2797142180","https://openalex.org/W2886404480","https://openalex.org/W2910734357","https://openalex.org/W2949140995","https://openalex.org/W2963207607","https://openalex.org/W2963564844","https://openalex.org/W2964082701","https://openalex.org/W2964153729","https://openalex.org/W4241721083","https://openalex.org/W4293865127","https://openalex.org/W6637162671","https://openalex.org/W6640425456","https://openalex.org/W6717974185","https://openalex.org/W6743581629","https://openalex.org/W6750223653","https://openalex.org/W6753606494","https://openalex.org/W6763152210"],"related_works":["https://openalex.org/W4322761281","https://openalex.org/W4238233472","https://openalex.org/W4313526662","https://openalex.org/W3111395152","https://openalex.org/W4312996489","https://openalex.org/W3106131444","https://openalex.org/W3216099748","https://openalex.org/W4205963435","https://openalex.org/W4313463379","https://openalex.org/W3214037210"],"abstract_inverted_index":{"There":[0],"is":[1,61,90],"a":[2,45,136,197],"sheer":[3],"growth":[4],"of":[5,10,21,116,149,176],"attention":[6],"on":[7,68,73,166,180],"the":[8,19,28,34,74,84,93,101,108,114,147,162,173],"issue":[9],"deep":[11,56,63,76,182,191],"learning":[12,57,64,77,183,192],"attacks":[13,142],"launched":[14],"by":[15],"adversaries.":[16],"Especially":[17],"with":[18,27,196],"spread":[20],"edge":[22,87,168,190],"computing":[23],"devices":[24,169],"that":[25,62,186],"cooperate":[26],"central":[29],"cloud,":[30],"how":[31],"to":[32,92,113],"protect":[33],"neural":[35,104],"network":[36,105],"models":[37,65,106,193],"and":[38,71,107,123,143,156,170,194],"private":[39,109,177],"data":[40,89,110],"from":[41],"being":[42,117],"attacked":[43,118],"becomes":[44],"hot":[46],"topic.":[47],"In":[48,98],"this":[49,131],"paper,":[50],"we":[51,134],"consider":[52],"two":[53],"collaborative":[54],"edge-cloud":[55],"scenarios.":[58],"The":[59],"first":[60],"are":[66,111,121],"trained":[67],"resource-rich":[69],"cloud":[70,94],"deployed":[72],"terminal":[75],"accelerators":[78],"for":[79,95],"delay-sensitive":[80],"tasks.":[81,97],"While":[82],"in":[83,125],"second":[85],"scenario,":[86],"collected":[88],"offloaded":[91],"computationally-intensive":[96],"both":[99],"scenarios,":[100],"valuable":[102],"pre-trained":[103],"exposed":[112],"risks":[115],"if":[119],"they":[120],"transmitted":[122],"processed":[124],"an":[126],"unencrypted":[127],"way.":[128],"To":[129],"tackle":[130],"security":[132],"problem,":[133],"present":[135],"lightweight":[137],"protection":[138],"scheme":[139],"towards":[140],"data-oriented":[141],"model-oriented":[144],"attacks.":[145],"With":[146],"use":[148],"on-chip":[150],"memory":[151],"Physical":[152],"Unclonable":[153],"Functions":[154],"(PUFs)":[155],"Processing-In-Memory":[157],"(PIM),":[158],"our":[159,187],"method":[160,188],"limits":[161],"model":[163],"execution":[164],"only":[165],"specific":[167],"also":[171],"prevents":[172],"unauthorized":[174],"analysis":[175],"data.":[178],"Experiments":[179],"state-of-the-art":[181],"networks":[184],"show":[185],"secures":[189],"user-data":[195],"negligible":[198],"performance":[199],"overhead.":[200]},"counts_by_year":[{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
