3.8 Proceedings Paper

Oblivious Neural Network Predictions via MiniONN Transformations

出版社

ASSOC COMPUTING MACHINERY
DOI: 10.1145/3133956.3134056

关键词

privacy; machine learning; neural network predictions; secure two-party computation

资金

  1. TEKES - the Finnish Funding Agency for Innovation (CloSer project) [3881/31/2016]
  2. Intel (Intel Collaborative Research Institute for Secure Computing, ICRI-SC)

向作者/读者索取更多资源

Machine learning models hosted in a cloud service are increasingly popular but risk privacy: clients sending prediction requests to the service need to disclose potentially sensitive information. In this paper, we explore the problem of privacy-preserving predictions: after each prediction, the server learns nothing about clients' input and clients learn nothing about the model. We present MiniONN, the first approach for transforming an existing neural network to an oblivious neural network supporting privacy-preserving predictions with reasonable efficiency. Unlike prior work, MiniONN requires no change to how models are trained. To this end, we design oblivious protocols for commonly used operations in neural network prediction models. We show that MiniONN outperforms existing work in terms of response latency and message sizes. We demonstrate the wide applicability of MiniONN by transforming several typical neural network models trained from standard datasets.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

3.8
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据