{"id":"https://openalex.org/W4379115845","doi":"https://doi.org/10.23919/date56975.2023.10136956","title":"A Practical Remote Power Attack on Machine Learning Accelerators in Cloud FPGAs","display_name":"A Practical Remote Power Attack on Machine Learning Accelerators in Cloud FPGAs","publication_year":2023,"publication_date":"2023-04-01","ids":{"openalex":"https://openalex.org/W4379115845","doi":"https://doi.org/10.23919/date56975.2023.10136956"},"language":"en","primary_location":{"id":"doi:10.23919/date56975.2023.10136956","is_oa":false,"landing_page_url":"https://doi.org/10.23919/date56975.2023.10136956","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 Design, Automation &amp; Test in Europe Conference &amp; Exhibition (DATE)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5043309650","display_name":"Shanquan Tian","orcid":"https://orcid.org/0000-0002-1469-4045"},"institutions":[{"id":"https://openalex.org/I32971472","display_name":"Yale University","ror":"https://ror.org/03v76x132","country_code":"US","type":"education","lineage":["https://openalex.org/I32971472"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Shanquan Tian","raw_affiliation_strings":["Yale University,New Haven,CT,USA","Yale University, New Haven, CT, USA"],"affiliations":[{"raw_affiliation_string":"Yale University,New Haven,CT,USA","institution_ids":["https://openalex.org/I32971472"]},{"raw_affiliation_string":"Yale University, New Haven, CT, USA","institution_ids":["https://openalex.org/I32971472"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019394906","display_name":"Shayan Moini","orcid":"https://orcid.org/0000-0001-7981-9649"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Shayan Moini","raw_affiliation_strings":["University of Massachusetts,Amherst,MA,USA","University of Massachusetts, Amherst, MA, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts,Amherst,MA,USA","institution_ids":["https://openalex.org/I24603500"]},{"raw_affiliation_string":"University of Massachusetts, Amherst, MA, USA","institution_ids":["https://openalex.org/I24603500"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052791292","display_name":"Daniel Holcomb","orcid":"https://orcid.org/0000-0002-2052-9820"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Daniel Holcomb","raw_affiliation_strings":["University of Massachusetts,Amherst,MA,USA","University of Massachusetts, Amherst, MA, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts,Amherst,MA,USA","institution_ids":["https://openalex.org/I24603500"]},{"raw_affiliation_string":"University of Massachusetts, Amherst, MA, USA","institution_ids":["https://openalex.org/I24603500"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012168703","display_name":"Russell Tessier","orcid":"https://orcid.org/0000-0003-0591-7566"},"institutions":[{"id":"https://openalex.org/I24603500","display_name":"University of Massachusetts Amherst","ror":"https://ror.org/0072zz521","country_code":"US","type":"education","lineage":["https://openalex.org/I24603500"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Russell Tessier","raw_affiliation_strings":["University of Massachusetts,Amherst,MA,USA","University of Massachusetts, Amherst, MA, USA"],"affiliations":[{"raw_affiliation_string":"University of Massachusetts,Amherst,MA,USA","institution_ids":["https://openalex.org/I24603500"]},{"raw_affiliation_string":"University of Massachusetts, Amherst, MA, USA","institution_ids":["https://openalex.org/I24603500"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5044387689","display_name":"Jakub Szefer","orcid":"https://orcid.org/0000-0001-9721-3640"},"institutions":[{"id":"https://openalex.org/I32971472","display_name":"Yale University","ror":"https://ror.org/03v76x132","country_code":"US","type":"education","lineage":["https://openalex.org/I32971472"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Jakub Szefer","raw_affiliation_strings":["Yale University,New Haven,CT,USA","Yale University, New Haven, CT, USA"],"affiliations":[{"raw_affiliation_string":"Yale University,New Haven,CT,USA","institution_ids":["https://openalex.org/I32971472"]},{"raw_affiliation_string":"Yale University, New Haven, CT, USA","institution_ids":["https://openalex.org/I32971472"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5043309650"],"corresponding_institution_ids":["https://openalex.org/I32971472"],"apc_list":null,"apc_paid":null,"fwci":2.4605,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.88442211,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":96,"max":98},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9987999796867371,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.8297141790390015},{"id":"https://openalex.org/keywords/field-programmable-gate-array","display_name":"Field-programmable gate array","score":0.8137533664703369},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7252151370048523},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.5553349256515503},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.28742510080337524}],"concepts":[{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.8297141790390015},{"id":"https://openalex.org/C42935608","wikidata":"https://www.wikidata.org/wiki/Q190411","display_name":"Field-programmable gate array","level":2,"score":0.8137533664703369},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7252151370048523},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.5553349256515503},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.28742510080337524}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.23919/date56975.2023.10136956","is_oa":false,"landing_page_url":"https://doi.org/10.23919/date56975.2023.10136956","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 Design, Automation &amp; Test in Europe Conference &amp; Exhibition (DATE)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W2461943168","https://openalex.org/W2603766943","https://openalex.org/W2798781612","https://openalex.org/W2868091835","https://openalex.org/W2900463239","https://openalex.org/W2915743430","https://openalex.org/W2964318098","https://openalex.org/W2969965903","https://openalex.org/W2973060714","https://openalex.org/W2996863257","https://openalex.org/W3008905965","https://openalex.org/W3014400029","https://openalex.org/W3036146501","https://openalex.org/W3155198371","https://openalex.org/W3162298623","https://openalex.org/W3166251174","https://openalex.org/W3181637428","https://openalex.org/W3183466684","https://openalex.org/W3194922745","https://openalex.org/W4246001895","https://openalex.org/W4288117700","https://openalex.org/W6759475201","https://openalex.org/W6775078712"],"related_works":["https://openalex.org/W2748952813","https://openalex.org/W4244478748","https://openalex.org/W4223488648","https://openalex.org/W2134969820","https://openalex.org/W2251605416","https://openalex.org/W4389340727","https://openalex.org/W2096844293","https://openalex.org/W2363944576","https://openalex.org/W2351041855","https://openalex.org/W2570254841"],"abstract_inverted_index":{"The":[0,114,171],"security":[1,39],"and":[2,25,168,188,214,243],"performance":[3],"of":[4,40,96],"FPGA-based":[5],"accelerators":[6,32,41,86,100,215],"play":[7],"vital":[8],"roles":[9],"in":[10,65,70,88,101,110,120,251],"today's":[11],"cloud":[12,23],"services.":[13],"In":[14],"addition":[15],"to":[16,20,91,139,175,183,211,219,229,263],"supporting":[17],"convenient":[18],"access":[19],"high-end":[21],"FPGAs,":[22],"vendors":[24],"third-party":[26],"developers":[27],"now":[28],"provide":[29],"numerous":[30],"FPGA":[31,46,63,72,108,194,199],"for":[33,43,146,236],"machine":[34,84],"learning":[35,85],"models.":[36],"However,":[37],"the":[38,93,135,193,198,202,234,247],"developed":[42,87],"state-of-the-art":[44],"Cloud":[45,71,107,154,266],"environments":[47],"has":[48],"not":[49],"been":[50,59],"fully":[51],"explored,":[52],"since":[53],"most":[54],"remote":[55,150],"accelerator":[56],"attacks":[57,98],"have":[58],"prototyped":[60],"on":[61,99,141,153,197],"local":[62],"boards":[64],"lab":[66],"settings,":[67],"rather":[68],"than":[69],"environments.":[73],"To":[74,245],"address":[75,246],"existing":[76,83],"research":[77],"gaps,":[78],"this":[79,252,254],"work":[80],"analyzes":[81],"three":[82],"Xilinx":[89],"Vitis":[90,136],"assess":[92],"potential":[94],"threats":[95,249],"power":[97,151,177,185],"Amazon":[102],"Web":[103],"Services":[104],"(AWS)":[105],"F1":[106],"platforms,":[109],"a":[111,121,148,237],"multi-tenant":[112,122,265],"setting.":[113],"experiments":[115],"show":[116],"that":[117,224,259],"malicious":[118],"co-tenants":[119],"environment":[123,138],"can":[124,225],"instantiate":[125],"voltage":[126,166,231],"sensing":[127],"circuits":[128],"as":[129],"register-transfer":[130],"level":[131],"(RTL)":[132],"kernels":[133],"within":[134],"design":[137],"spy":[140],"co-tenant":[142,204],"modules.":[143],"A":[144],"methodology":[145],"launching":[147],"practical":[149],"attack":[152,223],"FPGAs":[155,267],"is":[156,173],"also":[157,256],"presented,":[158],"which":[159,179],"uses":[160],"an":[161,221],"enhanced":[162],"time-to-digital":[163],"(TDC)":[164],"based":[165],"sensor":[167],"auto-triggered":[169,222],"mechanism.":[170],"TDC":[172],"used":[174,182,218],"capture":[176,230],"signatures,":[178],"are":[180,216],"then":[181,217],"identify":[184],"consumption":[186],"spikes":[187],"observe":[189],"activity":[190],"patterns":[191,209],"involving":[192],"shell,":[195],"DRAM":[196],"board,":[200],"or":[201],"other":[203],"victim's":[205],"accelerators.":[206],"Voltage":[207],"change":[208],"related":[210],"shell":[212],"use":[213],"create":[220],"automatically":[226],"detect":[227],"when":[228],"traces":[232],"without":[233],"need":[235],"hard-wired":[238],"synchronization":[239],"signal":[240],"between":[241],"victim":[242],"attacker.":[244],"novel":[248],"presented":[250],"work,":[253],"paper":[255],"discusses":[257],"defenses":[258],"could":[260],"be":[261],"leveraged":[262],"secure":[264],"from":[268],"power-based":[269],"attacks.":[270]},"counts_by_year":[{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":3}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
