Communities
Connect sessions
AI calendar
Organizations
Join Slack
Contact Sales
Search
Open menu
Home
Papers
2111.04625
Cited By
DeepSteal: Advanced Model Extractions Leveraging Efficient Weight Stealing in Memories
8 November 2021
Adnan Siraj Rakin
Md Hafizul Islam Chowdhuryy
Fan Yao
Deliang Fan
AAML
MIACV
Re-assign community
ArXiv (abs)
PDF
HTML
Github
Papers citing
"DeepSteal: Advanced Model Extractions Leveraging Efficient Weight Stealing in Memories"
50 / 66 papers shown
CacheTrap: Unveiling a Stealthier Gray-Box Trojan against LLMs
Mohaiminul Al Nahian
Abeer Matar A. Almalky
Gamana Aragonda
Ranyang Zhou
Sabbir Ahmed
Dmitry Ponomarev
Li Yang
Shaahin Angizi
Adnan Siraj Rakin
109
1
0
27 Nov 2025
SoK: Systematizing a Decade of Architectural RowHammer Defenses Through the Lens of Streaming Algorithms
M. Kim
Seungmin Baek
Jumin Kim
Hwayong Nam
Nam Sung Kim
Jung Ho Ahn
123
1
0
09 Nov 2025
ColumnDisturb: Understanding Column-based Read Disturbance in Real DRAM Chips and Implications for Future Systems
Ismail Emir Yüksel
Ataberk Olgun
F. Nisa Bostancı
Haocong Luo
Mohammad Sadrosadati
Onur Mutlu
276
7
0
16 Oct 2025
Stealing AI Model Weights Through Covert Communication Channels
Valentin Barbaza
Alan Rodrigo Diaz-Rizo
Hassan Aboushady
Spyridon Raptis
Haralampos-G. Stratigopoulos
148
1
0
30 Sep 2025
Knock-Knock: Black-Box, Platform-Agnostic DRAM Address-Mapping Reverse Engineering
Antoine Plin
Lorenzo Casalino
Thomas Rokicki
Ruben Salvador
93
1
0
23 Sep 2025
SLasH-DSA: Breaking SLH-DSA Using an Extensible End-To-End Rowhammer Framework
Jeremy Boy
Antoon Purnal
Anna Pätschke
Luca Wilke
T. Eisenbarth
234
1
0
16 Sep 2025
TensorShield: Safeguarding On-Device Inference by Shielding Critical DNN Tensors with TEE
Tong Sun
Bowen Jiang
Hailong Lin
Borui Li
Yixiao Teng
Yi Gao
Wei Dong
FedML
274
7
0
28 May 2025
When Mitigations Backfire: Timing Channel Attacks and Defense for PRAC-Based RowHammer Mitigations
International Symposium on Computer Architecture (ISCA), 2025
Jeonghyun Woo
Joyce Qu
Gururaj Saileshwar
Shiyang Chen
344
5
0
15 May 2025
Threat Modeling for AI: The Case for an Asset-Centric Approach
Jose Sanchez Vicarte
Marcin Spoczynski
Mostafa Elsaid
439
0
0
08 May 2025
Onboard Optimization and Learning: A Survey
Monirul Islam Pavel
Siyi Hu
Mahardhika Pratama
Ryszard Kowalczyk
448
2
0
07 May 2025
Hessian-aware Training for Enhancing DNNs Resilience to Parameter Corruptions
Tahmid Hasan Prato
Seijoon Kim
Lizhong Chen
Sanghyun Hong
AAML
365
1
0
02 Apr 2025
Understanding and Mitigating Covert Channel and Side Channel Vulnerabilities Introduced by RowHammer Defenses
F. Nisa Bostancı
Oguzhan Canpolat
Ataberk Olgun
Ismail Emir Yüksel
Mohammad Sadrosadati
Mohammad Sadrosadati
O. Mutlu
Onur Mutlu
AAML
391
0
0
23 Mar 2025
Revisiting DRAM Read Disturbance: Identifying Inconsistencies Between Experimental Characterization and Device-Level Studies
IEEE VLSI Test Symposium (VTS), 2025
Haocong Luo
Ismail Emir Yüksel
Ataberk Olgun
Mohammad Sadrosadati
O. Mutlu
418
6
0
20 Mar 2025
MACPruning: Dynamic Operation Pruning to Mitigate Side-Channel DNN Model Extraction
IEEE International Symposium on Hardware Oriented Security and Trust (HOST), 2025
Ruyi Ding
Cheng Gongye
Davis Ranney
A. A. Ding
Yunsi Fei
AAML
288
1
0
24 Feb 2025
THOR: A Non-Speculative Value Dependent Timing Side Channel Attack Exploiting Intel AMX
IEEE computer architecture letters (CAL), 2025
Farshad Dizani
Azam Ghanbari
Joshua Kalyanapu
Darsh Asher
Samira Mirbagher Ajorpaz
340
2
0
24 Feb 2025
Verification of Bit-Flip Attacks against Quantized Neural Networks
Yedi Zhang
Lei Huang
Pengfei Gao
Fu Song
Jun Sun
Jin Song Dong
AAML
290
4
0
22 Feb 2025
A Survey of Model Extraction Attacks and Defenses in Distributed Computing Environments
Kaixiang Zhao
Lincan Li
Kaize Ding
Neil Zhenqiang Gong
Yue Zhao
Yushun Dong
AAML
301
8
0
22 Feb 2025
Chronus: Understanding and Securing the Cutting-Edge Industry Solutions to DRAM Read Disturbance
International Symposium on High-Performance Computer Architecture (HPCA), 2025
Oguzhan Canpolat
Mohammad Sadrosadati
Geraldo F. Oliveira
Ataberk Olgun
Nisa Bostancı
Ismail Emir Yüksel
Haocong Luo
Oguz Ergin
Onur Mutlu
198
21
0
18 Feb 2025
Understanding RowHammer Under Reduced Refresh Latency: Experimental Analysis of Real DRAM Chips and Implications on Future Solutions
International Symposium on High-Performance Computer Architecture (HPCA), 2025
Yahya Can Tugrul
Mohammad Sadrosadati
Ismail Emir Yüksel
Ataberk Olgun
Oguzhan Canpolat
Nisa Bostancı
Mohammad Sadrosadati
Oguz Ergin
O. Mutlu
238
8
0
17 Feb 2025
Data-Free Model-Related Attacks: Unleashing the Potential of Generative AI
Dayong Ye
Tianqing Zhu
Shang Wang
B. Liu
Guang Dai
Wanlei Zhou
Yanmei Zhang
AAML
SILM
297
0
0
28 Jan 2025
PrisonBreak: Jailbreaking Large Language Models with at Most Twenty-Five Targeted Bit-flips
Zachary Coalson
Jeonghyun Woo
Shiyang Chen
Yu Sun
Yu Sun
...
Lishan Yang
Gururaj Saileshwar
Prashant J. Nair
Bo Fang
Sanghyun Hong
AAML
671
8
0
10 Dec 2024
SoK: A Systems Perspective on Compound AI Threats and Countermeasures
Sarbartha Banerjee
Prateek Sahu
Mulong Luo
Anjo Vahldiek-Oberwagner
N. Yadwadkar
Mohit Tiwari
AAML
395
3
0
20 Nov 2024
A Divide-and-Conquer Strategy for Hard-Label Extraction of Deep Neural Networks via Side-Channel Attacks
IACR Cryptology ePrint Archive (IACR ePrint), 2024
Benoît Coqueret
Mathieu Carbone
Olivier Sentieys
Gabriel Zaid
AAML
MLAU
FedML
334
3
0
15 Nov 2024
TEESlice: Protecting Sensitive Neural Network Models in Trusted Execution Environments When Attackers have Pre-Trained Models
ACM Transactions on Software Engineering and Methodology (TOSEM), 2024
Ding Li
Ziqi Zhang
Mengyu Yao
Y. Cai
Yao Guo
Xiangqun Chen
FedML
364
12
0
15 Nov 2024
The Early Bird Catches the Leak: Unveiling Timing Side Channels in LLM Serving Systems
IEEE Transactions on Information Forensics and Security (IEEE TIFS), 2024
Linke Song
Zixuan Pang
Wenhao Wang
Zihao Wang
XiaoFeng Wang
H. G. Chen
Wei Song
Yier Jin
Dan Meng
Rui Hou
710
29
0
30 Sep 2024
IDEA: An Inverse Domain Expert Adaptation Based Active DNN IP Protection Method
Chaohui Xu
Qi Cui
Jinxin Dong
Weiyang He
Chip-Hong Chang
AAML
519
3
0
29 Sep 2024
Say No to Freeloader: Protecting Intellectual Property of Your Deep Model
IEEE Transactions on Pattern Analysis and Machine Intelligence (TPAMI), 2024
Lianyu Wang
Ming Wang
Huazhu Fu
Daoqiang Zhang
374
9
0
23 Aug 2024
DeepBaR: Fault Backdoor Attack on Deep Neural Network Layers
Camilo A. Mart´ınez-Mej´ıa
Jesus Solano
J. Breier
Dominik Bucko
Xiaolu Hou
AAML
258
2
0
30 Jul 2024
Understanding the Security Benefits and Overheads of Emerging Industry Solutions to DRAM Read Disturbance
Oguzhan Canpolat
A. Giray Yağlıkçı
Geraldo F. Oliveira
Ataberk Olgun
Oguz Ergin
Onur Mutlu
297
26
0
27 Jun 2024
An Experimental Characterization of Combined RowHammer and RowPress Read Disturbance in Modern DRAM Chips
Haocong Luo
Ismail Emir Yüksel
Ataberk Olgun
A. Giray Yağlıkçı
Mohammad Sadrosadati
Onur Mutlu
279
11
0
18 Jun 2024
AI Risk Management Should Incorporate Both Safety and Security
Xiangyu Qi
Yangsibo Huang
Yi Zeng
Edoardo Debenedetti
Jonas Geiping
...
Chaowei Xiao
Yue Liu
Dawn Song
Peter Henderson
Prateek Mittal
AAML
323
21
0
29 May 2024
DLoRA: Distributed Parameter-Efficient Fine-Tuning Solution for Large Language Model
Chao Gao
Sai Qian Zhang
ALM
444
10
0
08 Apr 2024
CoMeT: Count-Min-Sketch-based Row Tracking to Mitigate RowHammer at Low Cost
F. N. Bostanci
Ismail Emir Yüksel
Ataberk Olgun
Konstantinos Kanellopoulos
Yahya Can Tugrul
A. G. Yaglikçi
Mohammad Sadrosadati
Onur Mutlu
258
29
0
29 Feb 2024
Spatial Variation-Aware Read Disturbance Defenses: Experimental Analysis of Real DRAM Chips and Implications on Future Solutions
A. G. Yaglikçi
Yahya Can Tugrul
Geraldo F. Oliveira
Ismail Emir Yüksel
Ataberk Olgun
Haocong Luo
Onur Mutlu
308
21
0
28 Feb 2024
Stealing the Invisible: Unveiling Pre-Trained CNN Models through Adversarial Examples and Timing Side-Channels
Shubhi Shukla
Manaar Alam
Pabitra Mitra
Debdeep Mukhopadhyay
MLAU
AAML
421
2
0
19 Feb 2024
SparseLock: Securing Neural Network Models in Deep Learning Accelerators
Nivedita Shrivastava
S. Sarangi
AAML
291
3
0
05 Nov 2023
Like an Open Book? Read Neural Network Architecture with Simple Power Analysis on 32-bit Microcontrollers
Smart Card Research and Advanced Application Conference (CARDIS), 2023
Raphael Joud
Pierre-Alain Moëllic
S. Pontié
J. Rigaud
362
5
0
02 Nov 2023
Read Disturbance in High Bandwidth Memory: A Detailed Experimental Study on HBM2 DRAM Chips
Dependable Systems and Networks (DSN), 2023
Ataberk Olgun
Majd Osseiran
A. G. Yaglikçi
Yahya Can Tugrul
Haocong Luo
Steve Rhyner
Behzad Salami
Juan Gómez Luna
Onur Mutlu
368
18
0
23 Oct 2023
ABACuS: All-Bank Activation Counters for Scalable and Low Overhead RowHammer Mitigation
Ataberk Olgun
Yahya Can Tugrul
Nisa Bostanci
Ismail Emir Yüksel
Haocong Luo
Steve Rhyner
A. G. Yaglikçi
Geraldo F. Oliveira
Onur Mutlu
400
28
0
15 Oct 2023
No Privacy Left Outside: On the (In-)Security of TEE-Shielded DNN Partition for On-Device ML
Ziqi Zhang
Chen Gong
Yifeng Cai
Yuanyuan Yuan
Bingyan Liu
Ding Li
Yao Guo
Xiangqun Chen
FedML
225
53
0
11 Oct 2023
Exploring the Horizon: A Comprehensive Survey of Rowhammer
Amir Naseredini
186
0
0
10 Oct 2023
Beyond Labeling Oracles: What does it mean to steal ML models?
Avital Shafran
Ilia Shumailov
Murat A. Erdogdu
Nicolas Papernot
AAML
430
5
0
03 Oct 2023
DeepTheft: Stealing DNN Model Architectures through Power Side Channel
IEEE Symposium on Security and Privacy (IEEE S&P), 2023
Yansong Gao
Huming Qiu
Zhi-Li Zhang
Binghui Wang
Hua Ma
A. Abuadbba
Minhui Xue
Anmin Fu
Surya Nepal
MLAU
FedML
219
37
0
21 Sep 2023
Fault Injection and Safe-Error Attack for Extraction of Embedded Neural Network Models
Kevin Hector
Pierre-Alain Moëllic
Mathieu Dumont
J. Dutertre
SILM
MIACV
356
6
0
31 Aug 2023
Fault Injection on Embedded Neural Networks: Impact of a Single Instruction Skip
Euromicro Symposium on Digital Systems Design (DSD), 2023
Clément Gaine
Pierre-Alain Moëllic
O. Potin
J. Dutertre
AAML
SILM
352
2
0
31 Aug 2023
One-bit Flip is All You Need: When Bit-flip Attack Meets Model Training
IEEE International Conference on Computer Vision (ICCV), 2023
Jianshuo Dong
Han Qiu
Yiming Li
Tianwei Zhang
Yuan-Fang Li
Zeqi Lai
Chao Zhang
Shutao Xia
AAML
183
33
0
12 Aug 2023
Pareto-Secure Machine Learning (PSML): Fingerprinting and Securing Inference Serving Systems
Debopam Sanyal
Jui-Tse Hung
Manavi Agrawal
Prahlad Jasti
Shahab Nikkhoo
S. Jha
Tianhao Wang
Sibin Mohan
Alexey Tumanov
443
1
0
03 Jul 2023
RowPress: Amplifying Read Disturbance in Modern DRAM Chips
International Symposium on Computer Architecture (ISCA), 2023
Haocong Luo
Ataberk Olgun
A. G. Yaglikçi
Yahya Can Tugrul
Steve Rhyner
Meryem Banu Cavlak
Joel Lindegger
Mohammad Sadrosadati
O. Mutlu
624
92
0
29 Jun 2023
Retrospective: Flipping Bits in Memory Without Accessing Them: An Experimental Study of DRAM Disturbance Errors
O. Mutlu
360
561
0
28 Jun 2023
Extracting Cloud-based Model with Prior Knowledge
Songtao Zhao
Kangjie Chen
Meng Hao
Jian Zhang
Guowen Xu
Hongwei Li
Tianwei Zhang
AAML
MIACV
SILM
MLAU
SLR
484
6
0
07 Jun 2023
1
2
Next
Page 1 of 2