{"id":"https://openalex.org/W4318541558","doi":"https://doi.org/10.1145/3575693.3575738","title":"HuffDuff: Stealing Pruned DNNs from Sparse Accelerators","display_name":"HuffDuff: Stealing Pruned DNNs from Sparse Accelerators","publication_year":2023,"publication_date":"2023-01-27","ids":{"openalex":"https://openalex.org/W4318541558","doi":"https://doi.org/10.1145/3575693.3575738"},"language":"en","primary_location":{"id":"doi:10.1145/3575693.3575738","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3575693.3575738","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 28th ACM International Conference on Architectural Support for Programming Languages and Operating Systems, Volume 2","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5061974365","display_name":"Dingqing Yang","orcid":"https://orcid.org/0000-0002-5660-1273"},"institutions":[{"id":"https://openalex.org/I141945490","display_name":"University of British Columbia","ror":"https://ror.org/03rmrcq20","country_code":"CA","type":"education","lineage":["https://openalex.org/I141945490"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Dingqing Yang","raw_affiliation_strings":["University of British Columbia, Canada"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of British Columbia, Canada","institution_ids":["https://openalex.org/I141945490"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053993126","display_name":"Prashant J. Nair","orcid":"https://orcid.org/0000-0002-1732-4314"},"institutions":[{"id":"https://openalex.org/I141945490","display_name":"University of British Columbia","ror":"https://ror.org/03rmrcq20","country_code":"CA","type":"education","lineage":["https://openalex.org/I141945490"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Prashant J. Nair","raw_affiliation_strings":["University of British Columbia, Canada"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of British Columbia, Canada","institution_ids":["https://openalex.org/I141945490"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5067207130","display_name":"Mieszko Lis","orcid":"https://orcid.org/0000-0003-3376-4384"},"institutions":[{"id":"https://openalex.org/I141945490","display_name":"University of British Columbia","ror":"https://ror.org/03rmrcq20","country_code":"CA","type":"education","lineage":["https://openalex.org/I141945490"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Mieszko Lis","raw_affiliation_strings":["University of British Columbia, Canada"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of British Columbia, Canada","institution_ids":["https://openalex.org/I141945490"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I141945490"],"apc_list":null,"apc_paid":null,"fwci":1.613,"has_fulltext":false,"cited_by_count":10,"citation_normalized_percentile":{"value":0.86198916,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"385","last_page":"399"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.813206672668457},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8005307912826538},{"id":"https://openalex.org/keywords/edge-device","display_name":"Edge device","score":0.695559024810791},{"id":"https://openalex.org/keywords/enhanced-data-rates-for-gsm-evolution","display_name":"Enhanced Data Rates for GSM Evolution","score":0.6402919292449951},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.5615679621696472},{"id":"https://openalex.org/keywords/channel","display_name":"Channel (broadcasting)","score":0.5084847211837769},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.49542510509490967},{"id":"https://openalex.org/keywords/edge-computing","display_name":"Edge computing","score":0.4766612648963928},{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.42829784750938416},{"id":"https://openalex.org/keywords/power","display_name":"Power (physics)","score":0.4137616753578186},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.33764296770095825},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.27926573157310486},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.23571282625198364},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.2253095507621765},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1812628209590912},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.16051837801933289},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.14589923620224},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.10146588087081909}],"concepts":[{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.813206672668457},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8005307912826538},{"id":"https://openalex.org/C138236772","wikidata":"https://www.wikidata.org/wiki/Q25098575","display_name":"Edge device","level":3,"score":0.695559024810791},{"id":"https://openalex.org/C162307627","wikidata":"https://www.wikidata.org/wiki/Q204833","display_name":"Enhanced Data Rates for GSM Evolution","level":2,"score":0.6402919292449951},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.5615679621696472},{"id":"https://openalex.org/C127162648","wikidata":"https://www.wikidata.org/wiki/Q16858953","display_name":"Channel (broadcasting)","level":2,"score":0.5084847211837769},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.49542510509490967},{"id":"https://openalex.org/C2778456923","wikidata":"https://www.wikidata.org/wiki/Q5337692","display_name":"Edge computing","level":3,"score":0.4766612648963928},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.42829784750938416},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.4137616753578186},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.33764296770095825},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.27926573157310486},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.23571282625198364},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2253095507621765},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1812628209590912},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.16051837801933289},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.14589923620224},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.10146588087081909},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3575693.3575738","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3575693.3575738","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 28th ACM International Conference on Architectural Support for Programming Languages and Operating Systems, Volume 2","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/13","score":0.49000000953674316,"display_name":"Climate action"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":62,"referenced_works":["https://openalex.org/W592556692","https://openalex.org/W1901129140","https://openalex.org/W1988374166","https://openalex.org/W2010452422","https://openalex.org/W2048266589","https://openalex.org/W2067523571","https://openalex.org/W2099001231","https://openalex.org/W2108598243","https://openalex.org/W2144321583","https://openalex.org/W2147540684","https://openalex.org/W2152839228","https://openalex.org/W2175377689","https://openalex.org/W2194775991","https://openalex.org/W2535690855","https://openalex.org/W2603766943","https://openalex.org/W2606722458","https://openalex.org/W2625457103","https://openalex.org/W2747329762","https://openalex.org/W2750173518","https://openalex.org/W2752782242","https://openalex.org/W2807835252","https://openalex.org/W2883542588","https://openalex.org/W2884071170","https://openalex.org/W2891810898","https://openalex.org/W2895914074","https://openalex.org/W2899481200","https://openalex.org/W2906043559","https://openalex.org/W2920954974","https://openalex.org/W2935331687","https://openalex.org/W2945146780","https://openalex.org/W2946587664","https://openalex.org/W2950656546","https://openalex.org/W2953915593","https://openalex.org/W2963163009","https://openalex.org/W2964988320","https://openalex.org/W2979310060","https://openalex.org/W2979439447","https://openalex.org/W2979590285","https://openalex.org/W2979838629","https://openalex.org/W2981860227","https://openalex.org/W2990887689","https://openalex.org/W3008983606","https://openalex.org/W3035661013","https://openalex.org/W3046853140","https://openalex.org/W3046922233","https://openalex.org/W3102836279","https://openalex.org/W3169997198","https://openalex.org/W3188169042","https://openalex.org/W3211838634","https://openalex.org/W4224291906","https://openalex.org/W4232426554","https://openalex.org/W4240161932","https://openalex.org/W4240168186","https://openalex.org/W4246001895","https://openalex.org/W4249932213","https://openalex.org/W4251575795","https://openalex.org/W4280622459","https://openalex.org/W4283733277","https://openalex.org/W4293024088","https://openalex.org/W4297097318","https://openalex.org/W4298214729","https://openalex.org/W6712237015"],"related_works":["https://openalex.org/W4214838992","https://openalex.org/W4324372666","https://openalex.org/W2979760315","https://openalex.org/W4225706866","https://openalex.org/W4322761281","https://openalex.org/W2914646191","https://openalex.org/W4238233472","https://openalex.org/W4313339048","https://openalex.org/W4386004629","https://openalex.org/W2942586735"],"abstract_inverted_index":{"Deep":[0],"learning":[1],"models":[2,15,27,40,54],"are":[3,16,28],"a":[4,10,48],"valuable":[5],"\u201csecret":[6],"sauce\u201d":[7],"that":[8,77],"confers":[9],"significant":[11],"competitive":[12],"advantage.":[13],"Many":[14],"never":[17],"visible":[18],"to":[19,83],"the":[20,44],"user":[21],"and":[22],"even":[23],"publicly":[24],"known":[25],"state-of-the-art":[26],"either":[29],"completely":[30],"proprietary":[31],"or":[32],"only":[33],"accessible":[34],"via":[35],"access-controlled":[36],"APIs.":[37],"Increasingly,":[38],"these":[39],"run":[41],"directly":[42],"on":[43],"edge,":[45],"often":[46],"using":[47],"low-power":[49],"DNN":[50],"accelerator.":[51],"This":[52],"makes":[53],"particularly":[55],"vulnerable,":[56],"as":[57],"an":[58],"attacker":[59],"with":[60,95],"physical":[61],"access":[62,70],"can":[63,80],"exploit":[64],"side":[65],"channels":[66],"like":[67],"off-chip":[68],"memory":[69],"volumes.":[71],"Indeed,":[72],"prior":[73],"work":[74],"has":[75],"shown":[76],"this":[78],"channel":[79],"be":[81],"used":[82],"steal":[84],"dense":[85],"DNNs":[86],"from":[87],"edge":[88],"devices":[89],"by":[90],"correlating":[91],"data":[92],"transfer":[93],"volumes":[94],"layer":[96],"geometry.":[97]},"counts_by_year":[{"year":2026,"cited_by_count":3},{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":3},{"year":2023,"cited_by_count":1}],"updated_date":"2026-06-26T08:34:08.712188","created_date":"2025-10-10T00:00:00"}
