Graduate School and Research Center in Digital Sciences

SoK: Cryptography for neural network

Azraoui, Monir; Bahram, Muhammad; Bozdemir, Beyza; Canard, Sébastien; Ciceri, Eleonora; Ermis, Orhan; Masalha, Ramy; Mosconi, Marco; Önen, Melek; Paindavoine, Marie; Rozenberg, Boris; Vialla, Bastien; Vicini, Sauro

IFIP Summer School on Privacy and Identity Management, 18-23 August 2019, Brugg Windisch, Switzerland

With the advent of the big data technologies which bring better scalability and performance results, machine learning (ML) algorithms become affordable in a number of different applications and areas. The use of large volumes of data to obtain accurate predictions unfortunately come with a high cost in terms of privacy exposures. The underlying data are often personal or con dential and therefore need to be properly safeguarded. Given the cost of machine learning algorithms, these would need to be outsourced to third-party servers and hence the encryption of the data becomes mandatory. While traditional data encryption solutions would not allow for the access over the content of the data, these would, nevertheless, prevent third-party servers to properly execute the ML algorithms. The goal is therefore to come up with customized ML algorithms that would by design preserve the privacy of the processed data. Advanced cryptographic techniques such as fully homomorphic encryption or secure multi-party computation enable the execution of some operations over encrypted data and therefore can be considered as potential candidates for these algorithms. Yet, these incur high computational and/or communication costs for some operations. In this paper, we propose a Systematization of Knowledge (SoK) whereby we analyze the tension between a particular ML technique, namely, neural networks (NN), and the characteristics of relevant cryptographic tools.

Document Bibtex

Title:SoK: Cryptography for neural network
Keywords:privacy, neural networks, homomorphic encryption, secure multiparty computation
Type:Conference
Language:English
City:Brugg Windisch
Country:SWITZERLAND
Date:
Department:Digital Security
Eurecom ref:6137
Copyright: © IFIP. Personal use of this material is permitted. The definitive version of this paper was published in IFIP Summer School on Privacy and Identity Management, 18-23 August 2019, Brugg Windisch, Switzerland and is available at :
Bibtex: @inproceedings{EURECOM+6137, year = {2019}, title = {{S}o{K}: {C}ryptography for neural network}, author = {{A}zraoui, {M}onir and {B}ahram, {M}uhammad and {B}ozdemir, {B}eyza and {C}anard, {S}{\'e}bastien and {C}iceri, {E}leonora and {E}rmis, {O}rhan and {M}asalha, {R}amy and {M}osconi, {M}arco and {\"{O}}nen, {M}elek and {P}aindavoine, {M}arie and {R}ozenberg, {B}oris and {V}ialla, {B}astien and {V}icini, {S}auro}, booktitle = {{IFIP} {S}ummer {S}chool on {P}rivacy and {I}dentity {M}anagement, 18-23 {A}ugust 2019, {B}rugg {W}indisch, {S}witzerland }, address = {{B}rugg {W}indisch, {SWITZERLAND}}, month = {08}, url = {http://www.eurecom.fr/publication/6137} }
See also: