{"id":"https://openalex.org/W4403565917","doi":"https://doi.org/10.48550/arxiv.2410.09457","title":"Power-Softmax: Towards Secure LLM Inference over Encrypted Data","display_name":"Power-Softmax: Towards Secure LLM Inference over Encrypted Data","publication_year":2024,"publication_date":"2024-10-12","ids":{"openalex":"https://openalex.org/W4403565917","doi":"https://doi.org/10.48550/arxiv.2410.09457"},"language":"en","primary_location":{"id":"pmh:oai:arXiv.org:2410.09457","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2410.09457","pdf_url":"https://arxiv.org/pdf/2410.09457","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"type":"preprint","indexed_in":["arxiv","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2410.09457","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5044670359","display_name":"Itamar Zimerman","orcid":"https://orcid.org/0000-0001-8321-0609"},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Zimerman, Itamar","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5005928079","display_name":"Allon Adir","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Adir, Allon","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011835299","display_name":"Ehud Aharoni","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Aharoni, Ehud","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5114332059","display_name":"Matan Avitan","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Avitan, Matan","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027308449","display_name":"Moran Baruch","orcid":"https://orcid.org/0000-0003-0615-6164"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Baruch, Moran","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051431512","display_name":"Nir Drucker","orcid":"https://orcid.org/0000-0002-7273-4797"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Drucker, Nir","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024854076","display_name":"Jenny Lerner","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Lerner, Jenny","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5087060990","display_name":"Ramy Masalha","orcid":"https://orcid.org/0000-0002-6808-5675"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Masalha, Ramy","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5114332060","display_name":"Reut Meiri","orcid":"https://orcid.org/0009-0003-9640-448X"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Meiri, Reut","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5007886066","display_name":"Omri Soceanu","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Soceanu, Omri","raw_affiliation_strings":[],"affiliations":[]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":10,"corresponding_author_ids":["https://openalex.org/A5044670359"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9933000206947327,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9933000206947327,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.9754999876022339,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9750999808311462,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/softmax-function","display_name":"Softmax function","score":0.8684035539627075},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.7031733989715576},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.6414508819580078},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5694416165351868},{"id":"https://openalex.org/keywords/power","display_name":"Power (physics)","score":0.46630871295928955},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.323575884103775},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.25092101097106934},{"id":"https://openalex.org/keywords/physics","display_name":"Physics","score":0.10351118445396423}],"concepts":[{"id":"https://openalex.org/C188441871","wikidata":"https://www.wikidata.org/wiki/Q7554146","display_name":"Softmax function","level":3,"score":0.8684035539627075},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.7031733989715576},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.6414508819580078},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5694416165351868},{"id":"https://openalex.org/C163258240","wikidata":"https://www.wikidata.org/wiki/Q25342","display_name":"Power (physics)","level":2,"score":0.46630871295928955},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.323575884103775},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.25092101097106934},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.10351118445396423},{"id":"https://openalex.org/C62520636","wikidata":"https://www.wikidata.org/wiki/Q944","display_name":"Quantum mechanics","level":1,"score":0.0},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"pmh:oai:arXiv.org:2410.09457","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2410.09457","pdf_url":"https://arxiv.org/pdf/2410.09457","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},{"id":"doi:10.48550/arxiv.2410.09457","is_oa":true,"landing_page_url":"https://doi.org/10.48550/arxiv.2410.09457","pdf_url":null,"source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2410.09457","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2410.09457","pdf_url":"https://arxiv.org/pdf/2410.09457","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"text"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4403565917.pdf","grobid_xml":"https://content.openalex.org/works/W4403565917.grobid-xml"},"referenced_works_count":0,"referenced_works":[],"related_works":["https://openalex.org/W3107204728","https://openalex.org/W4287591324","https://openalex.org/W3108503355","https://openalex.org/W4226420367","https://openalex.org/W2962876041","https://openalex.org/W3090555870","https://openalex.org/W3022820045","https://openalex.org/W2801655600","https://openalex.org/W3005627584","https://openalex.org/W4303493643"],"abstract_inverted_index":{"Modern":[0],"cryptographic":[1],"methods":[2],"for":[3,88,97,156,165],"implementing":[4],"privacy-preserving":[5],"LLMs":[6,14,106],"such":[7,21,31],"as":[8,32,189],"Homomorphic":[9],"Encryption":[10],"(HE)":[11],"require":[12],"the":[13,103,116,140,147,163,170],"to":[15,93,136],"have":[16,39],"a":[17,22,77,85,112,144,152,190],"polynomial":[18,105],"form.":[19],"Forming":[20],"representation":[23],"is":[24,91,187],"challenging":[25],"because":[26],"Transformers":[27],"include":[28],"non-polynomial":[29,56],"components,":[30],"Softmax":[33,64],"and":[34,90,110,130,168,182],"layer":[35],"normalization.":[36],"Previous":[37],"approaches":[38],"either":[40],"directly":[41],"approximated":[42],"pre-trained":[43],"models":[44,120,127],"with":[45,58,65,95,107],"large-degree":[46],"polynomials,":[47],"which":[48],"are":[49],"less":[50],"efficient":[51],"over":[52,111,159],"HE,":[53],"or":[54],"replaced":[55],"components":[57],"easier-to-approximate":[59],"primitives":[60],"before":[61],"training,":[62],"e.g.,":[63],"pointwise":[66],"attention.":[67],"The":[68,125],"latter":[69],"approach":[70],"might":[71],"introduce":[72],"scalability":[73],"challenges.":[74],"We":[75],"present":[76],"new":[78],"HE-friendly":[79,180],"variant":[80,181],"of":[81,118,139],"self-attention":[82],"that":[83],"offers":[84],"stable":[86],"form":[87],"training":[89],"easy":[92],"approximate":[94],"polynomials":[96],"secure":[98],"inference.":[99],"Our":[100,185],"work":[101],"introduces":[102],"first":[104],"32":[108],"layers":[109],"billion":[113],"parameters,":[114],"exceeding":[115],"size":[117],"previous":[119],"by":[121],"more":[122],"than":[123],"tenfold.":[124],"resulting":[126],"demonstrate":[128],"reasoning":[129],"in-context":[131],"learning":[132],"(ICL)":[133],"capabilities":[134],"comparable":[135],"standard":[137,183],"transformers":[138,176],"same":[141],"size,":[142],"representing":[143],"breakthrough":[145],"in":[146,172],"field.":[148],"Finally,":[149],"we":[150],"provide":[151],"detailed":[153],"latency":[154],"breakdown":[155],"each":[157],"computation":[158],"encrypted":[160],"data,":[161],"paving":[162],"way":[164],"further":[166],"optimization,":[167],"explore":[169],"differences":[171],"inductive":[173],"bias":[174],"between":[175],"relying":[177],"on":[178],"our":[179],"transformers.":[184],"code":[186],"attached":[188],"supplement.":[191]},"counts_by_year":[],"updated_date":"2026-03-14T08:43:22.919905","created_date":"2025-10-10T00:00:00"}
