- 专利标题: Protection of neural networks by obfuscation of neural network architecture
-
申请号: US17553545申请日: 2021-12-16
-
公开(公告)号: US12056219B2公开(公告)日: 2024-08-06
- 发明人: Mark Evan Marson , Michael Alexander Hamburg , Helena Handschuh
- 申请人: Cryptography Research, Inc.
- 申请人地址: US CA San Jose
- 专利权人: Cryptography Research, Inc.
- 当前专利权人: Cryptography Research, Inc.
- 当前专利权人地址: US CA San Jose
- 代理机构: Lowenstein Sandler LLP
- 主分类号: G06F21/14
- IPC分类号: G06F21/14 ; G06N3/02
摘要:
Aspects of the present disclosure involve implementations that may be used to protect neural network models against adversarial attacks by obfuscating neural network operations and architecture. Obfuscation techniques include obfuscating weights and biases of neural network nodes, obfuscating activation functions used by neural networks, as well as obfuscating neural network architecture by introducing dummy operations, dummy nodes, and dummy layers into the neural networks.
公开/授权文献
信息查询