SecureNet: Proactive intellectual property protection and model security defense for DNNs based on backdoor learning

后门 计算机科学 钥匙(锁) 许可证 计算机安全 知识产权 人工智能 机器学习 操作系统
作者
Peihao Li,Jie Huang,Huaqing Wu,Zeping Zhang,Chunyang Qi
出处
期刊:Neural Networks [Elsevier BV]
卷期号:: 106199-106199
标识
DOI:10.1016/j.neunet.2024.106199
摘要

With the widespread application of deep neural networks (DNNs), the risk of privacy breaches against DNN models is constantly on the rise, resulting in an increasing need for intellectual property (IP) protection for such models. Although neural network watermarking techniques are widely used to safeguard the IP of DNNs, they can only achieve passive protection and cannot actively prevent unauthorized users from illicit use or embezzlement of the trained DNN models. Therefore, the development of proactive protection techniques to prevent IP infringement is imperative. To this end, we propose SecureNet, a key-based access license framework for DNN models. The proposed approach involves injecting license keys into the model through backdoor learning, enabling correct model functionality only when the appropriate license key is included in the input. To ensure the reusability of DNN models, we also propose a license key replacement algorithm. In addition, based on SecureNet, we designed defense mechanisms against adversarial attacks and backdoor attacks, respectively. Furthermore, we introduce a fine-grained authorization method that enables flexible granting of model permissions to different users. We have designed four license-key schemes with different privileges, tailored to various scenarios. We evaluated SecureNet on five benchmark datasets including MNIST, Cifar10, Cifar100, FaceScrub, and CelebA, and assessed its performance on six classic DNN models: LeNet-5, VGG16, ResNet18, ResNet101, NFNet-F5, and MobileNetV3. The results demonstrate that our approach outperforms the state-of-the-art model parameter encryption methods by at least 95% in terms of computational efficiency. Additionally, it provides effective defense against adversarial attacks and backdoor attacks without compromising the model’s overall performance.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
SciGPT应助谢天采纳,获得10
2秒前
liu.lzy发布了新的文献求助10
3秒前
越明年完成签到,获得积分10
4秒前
4秒前
4秒前
无极微光应助stay采纳,获得20
4秒前
研途者完成签到,获得积分10
4秒前
张0完成签到,获得积分10
5秒前
刘闪闪完成签到,获得积分10
5秒前
6秒前
6秒前
Julie发布了新的文献求助10
6秒前
华仔应助淡淡红茶采纳,获得10
7秒前
7秒前
未晚完成签到,获得积分10
7秒前
小红完成签到,获得积分10
8秒前
ANQ发布了新的文献求助10
9秒前
yaya完成签到,获得积分10
9秒前
一叶扁舟完成签到,获得积分10
9秒前
碧蓝碧凡发布了新的文献求助10
10秒前
小1完成签到,获得积分10
10秒前
10秒前
10秒前
科研通AI2S应助千支小刀采纳,获得10
11秒前
梁梁梁发布了新的文献求助10
11秒前
12秒前
花卷发布了新的文献求助10
12秒前
小1发布了新的文献求助10
13秒前
小红发布了新的文献求助10
13秒前
大气的玉米完成签到,获得积分10
14秒前
小白菜完成签到,获得积分10
14秒前
香蕉觅云应助感性的又槐采纳,获得10
14秒前
LXLAN完成签到,获得积分10
15秒前
15秒前
机智向松发布了新的文献求助10
16秒前
HH发布了新的文献求助10
16秒前
gg关注了科研通微信公众号
16秒前
17秒前
Candy完成签到,获得积分10
19秒前
凝芙发布了新的文献求助10
19秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Cowries - A Guide to the Gastropod Family Cypraeidae 1200
Quality by Design - An Indispensable Approach to Accelerate Biopharmaceutical Product Development 800
Pulse width control of a 3-phase inverter with non sinusoidal phase voltages 777
Signals, Systems, and Signal Processing 610
Research Methods for Applied Linguistics 500
Chemistry and Physics of Carbon Volume 15 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6396165
求助须知:如何正确求助?哪些是违规求助? 8211441
关于积分的说明 17393784
捐赠科研通 5449521
什么是DOI,文献DOI怎么找? 2880549
邀请新用户注册赠送积分活动 1857118
关于科研通互助平台的介绍 1699454