Probabilistic Selective Encryption of Convolutional Neural Networks for Hierarchical Services
Jinyu Tian, Jiantao Zhou, Jia Duan
Abstract
Model protection is vital when deploying Convolutional Neural Networks (CNNs) for commercial services, due to the massive costs of training them. In this work, we propose a selective encryption (SE) algorithm to protect CNN models from unauthorized access, with a unique feature of providing hierarchical services to users. Our algorithm firstly selects important model parameters via the proposed Probabilistic Selection Strategy (PSS). It then encrypts the most important parameters with the designed encryption method called Distribution Preserving Random Mask (DPRM), so as to maximize the performance degradation by encrypting only a very small portion of model parameters. We also design a set of access permissions, using which different amount of most important model parameters can be decrypted. Hence, different levels of model performance can be naturally provided for users. Experimental results demonstrate that the proposed scheme could effectively protect the classification model VGG19 by merely encrypting 8% parameters of convolutional layers. We also implement the proposed model protection scheme in the denoising model DnCNN, showcasing the hierarchical denoising services.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Related papers
- Steganography of Steganographic NetworksGuobiao Li, Sheng Li, Meiling Li, Xinpeng Zhang et al.AAAI 2023 · 28 citations
- PRNet: A Progressive Recovery Network for Revealing Perceptually Encrypted ImagesTao Xiang, Ying Yang, Shangwei Guo, Hangcheng Liu et al.ACM MM 2021 · 6 citations
- CORELOCKER: Neuron-level Usage ControlZihan Wang, Zhongkui Ma, Xinguo Feng, Ruoxi Sun et al.S&P 2024 · 11 citations
- Dynamic slicing for deep neural networksZiqi Zhang, Yuanchun Li, Yao Guo, Xiangqun Chen et al.FSE 2020 · 34 citations
- Provable Filter Pruning for Efficient Neural NetworksLucas Liebenwein, Cenk Baykal, Harry Lang, Dan Feldman et al.ICLR 2020 · 161 citations
