PRESS-NEWS.org - Press Release Distribution
PRESS RELEASES DISTRIBUTION

This tiny chip can safeguard user data while enabling efficient computing on a smartphone

Researchers have developed a security solution for power-hungry AI models that offers protection against two common attacks.

2024-04-23
(Press-News.org)

Health-monitoring apps can help people manage chronic diseases or stay on track with fitness goals, using nothing more than a smartphone. However, these apps can be slow and energy-inefficient because the vast machine-learning models that power them must be shuttled between a smartphone and a central memory server.

Engineers often speed things up using hardware that reduces the need to move so much data back and forth. While these machine-learning accelerators can streamline computation, they are susceptible to attackers who can steal secret information. 

To reduce this vulnerability, researchers from MIT and the MIT-IBM Watson AI Lab created a machine-learning accelerator that is resistant to the two most common types of attacks. Their chip can keep a user’s health records, financial information, or other sensitive data private while still enabling huge AI models to run efficiently on devices.

The team developed several optimizations that enable strong security while only slightly slowing the device. Moreover, the added security does not impact the accuracy of computations. This machine-learning accelerator could be particularly beneficial for demanding AI applications like augmented and virtual reality or autonomous driving.

While implementing the chip would make a device slightly more expensive and less energy-efficient, that is sometimes a worthwhile price to pay for security, says lead author Maitreyi Ashok, an electrical engineering and computer science (EECS) graduate student at MIT.

“It is important to design with security in mind from the ground up. If you are trying to add even a minimal amount of security after a system has been designed, it is prohibitively expensive. We were able to effectively balance a lot of these tradeoffs during the design phase,” says Ashok.

Her co-authors include Saurav Maji, an EECS graduate student; Xin Zhang and John Cohn of the MIT-IBM Watson AI Lab; and senior author Anantha Chandrakasan, MIT’s chief innovation and strategy officer, dean of the School of Engineering, and the Vannevar Bush Professor of EECS. The research will be presented at the IEEE Custom Integrated Circuits Conference.

Side-channel susceptibility

The researchers targeted a type of machine-learning accelerator called digital in-memory compute. A digital IMC chip performs computations inside a device’s memory, where pieces of a machine-learning model are stored after being moved over from a central server. 

The entire model is too big to store on the device, but by breaking it into pieces and reusing those pieces as much as possible, IMC chips reduce the amount of data that must be moved back and forth.

But IMC chips can be susceptible to hackers. In a side-channel attack, a hacker monitors the chip’s power consumption and uses statistical techniques to reverse-engineer data as the chip computes. In a bus-probing attack, the hacker can steal bits of the model and dataset by probing the communication between the accelerator and the off-chip memory.

Digital IMC speeds computation by performing millions of operations at once, but this complexity makes it tough to prevent attacks using traditional security measures, Ashok says.

She and her collaborators took a three-pronged approach to blocking side-channel and bus-probing attacks.

First, they employed a security measure where data in the IMC are split into random pieces. For instance, a bit zero might be split into three bits that still equal zero after a logical operation. The IMC never computes with all pieces in the same operation, so a side-channel attack could never reconstruct the real information. 

But for this technique to work, random bits must be added to split the data. Because digital IMC performs millions of operations at once, generating so many random bits would involve too much computing. For their chip, the researchers found a way to simplify computations, making it easier to effectively split data while eliminating the need for random bits.

Second, they prevented bus-probing attacks using a lightweight cipher that encrypts the model stored in off-chip memory. This lightweight cipher only requires simple computations. In addition, they only decrypted the pieces of the model stored on the chip when necessary. 

Third, to improve security, they generated the key that decrypts the cipher directly on the chip, rather than moving it back and forth with the model. They generated this unique key from random variations in the chip that are introduced during manufacturing, using what is known as a physically unclonable function. 

“Maybe one wire is going to be a little bit thicker than another. We can use these variations to get zeros and ones out of a circuit. For every chip, we can get a random key that should be consistent because these random properties shouldn’t change significantly over time,” Ashok explains.

They reused the memory cells on the chip, leveraging the imperfections in these cells to generate the key. This requires less computation than generating a key from scratch. 

“As security has become a critical issue in the design of edge devices, there is a need to develop a complete system stack focusing on secure operation. This work focuses on security for machine-learning workloads and describes a digital processor that uses cross-cutting optimization. It incorporates encrypted data access between memory and processor, approaches to preventing side-channel attacks using randomization, and exploiting variability to generate unique codes. Such designs are going to be critical in future mobile devices,” says Chandrakasan.

Safety testing

To test their chip, the researchers took on the role of hackers and tried to steal secret information using side-channel and bus-probing attacks. 

Even after making millions of attempts, they couldn’t reconstruct any real information or extract pieces of the model or dataset. The cipher also remained unbreakable. By contrast, it took only about 5,000 samples to steal information from an unprotected chip.

The addition of security did reduce the energy efficiency of the accelerator, and it also required a larger chip area, which would make it more expensive to fabricate.

The team is planning to explore methods that could reduce the energy consumption and size of their chip in the future, which would make it easier to implement at scale.

“As it becomes too expensive, it becomes harder to convince someone that security is critical. Future work could explore these tradeoffs. Maybe we could make it a little less secure but easier to implement and less expensive,” Ashok says.

The research is funded, in part, by the MIT-IBM Watson AI Lab, the National Science Foundation, and a Mathworks Engineering Fellowship.

###

Written by Adam Zewe, MIT News

END



ELSE PRESS RELEASES FROM THIS DATE:

World’s chocolate supply threatened by devastating virus

World’s chocolate supply threatened by devastating virus
2024-04-23
A rapidly spreading virus threatens the health of the cacao tree and the dried seeds from which chocolate is made, jeopardizing the global supply of the world’s most popular treat. About 50% of the world’s chocolate originates from cacao trees in the West Africa countries of Ivory Coast and Ghana. The damaging virus is attacking cacao trees in Ghana, resulting in harvest losses of between 15 and 50%. Spread by small insects called mealybugs that eat the leaves, buds and flowers of trees, the cacao swollen shoot virus disease (CSSVD) is among the most damaging threats to the root ingredient of chocolate. “This ...

Wake up and die: Human brain neurons re-entering the cell cycle age quickly shift to senescence

Wake up and die: Human brain neurons re-entering the cell cycle age quickly shift to senescence
2024-04-23
Post-mitotic neurons in the brain that re-enter the cell cycle quickly succumb to senescence, and this re-entry is more common in Alzheimer’s disease, according to a new study published April 9th in the open-access journal PLOS Biology by Kim Hai-Man Chow and colleagues at the Chinese University of Hong Kong. The phenomenon may provide an opportunity to learn more about the neurodegeneration process, and the technique used to make this discovery is readily applicable to other inquiries about unique populations of cells in the brain. Most neurons in the ...

Phage therapy is being explored to treat multidrug-resistant bacterial infections, but what are the direct effects of phages on the human host?

Phage therapy is being explored to treat multidrug-resistant bacterial infections, but what are the direct effects of phages on the human host?
2024-04-23
Phage therapy is being explored to treat multidrug-resistant bacterial infections, but what are the direct effects of phages on the human host? This study shows that therapeutic phages can be detected by epithelial cells of the human respiratory tract, eliciting proinflammatory responses that depend on specific phage properties and the airway microenvironment.   ##### In your coverage, please use this URL to provide access to the freely available paper in PLOS Biology:   http://journals.plos.org/plosbiology/article?id=10.1371/journal.pbio.3002566 Article ...

Social media use linked to tobacco initiation among youth

2024-04-23
FOR IMMEDIATE RELEASE Tuesday, April 23, 2024 Contact: Jillian McKoy, jpmckoy@bu.edu Michael Saunders, msaunder@bu.edu ## The tobacco industry has long appealed to youth through targeted marketing that glamorizes smoking with imagery of candy-flavored products, celebrity endorsements, social settings, and other enticing tactics. That marketing approach appears to be particularly effective on social media, according to a new study led by Boston University School of Public Health (BUSPH) researchers.  Published in the journal Addictive Behaviors, the study found that frequent social media use was linked to an increased risk of youth using ...

Marginalized communities developed 'disaster subculture' when living through extreme climate events, study finds

2024-04-23
LAWRENCE — Locations around the globe are experiencing climate disasters on a regular basis. But some of the most marginalized populations experience disasters so often it has come to be normalized. A new study from the University of Kansas found residents of one Seoul, South Korea, neighborhood have grown so accustomed to living through extreme climate events they have developed a “disaster subculture” that challenges both views of reality and how social agencies can help. Joonmo Kang, assistant professor ...

AGS honors Dr. William Hall with prestigious Nascher/Manning Award in Geriatrics

2024-04-23
New York (April 23, 2024) —The American Geriatrics Society (AGS) will honor William J. Hall, MD, MACP Emeritus Professor of Medicine at the University of Rochester this year with the prestigious Nascher/Manning Award, given biannually at the AGS Annual Scientific Meeting (#AGS24 will be held virtually May 9 – 11 (pre-conference days: Tuesday & Wednesday, May 7-8). The Nascher/Manning Award was named in honor of Ignatz Leo Nascher, MD who was the first clinician to advocate for establishing a specialty focused on the care ...

Human Frontier Science Program: life science research addressing sustainability of living systems

2024-04-23
STRASBOURG, France, 23 April 2024 — Why do stressed bats shed more viruses? How do some key species engineer whole landscapes? How do humans and animals work in groups to solve problems, shape behavior? These eight research projects are among the Human Frontier Science Program’s (HFSP) 93 Research Grant and Fellowship Awards recently announced to begin in 2024. “HFSP has funded basic research in the life sciences for the benefit of humankind, and sustainability science spans some of the most complex research imaginable,” said HFSP Chief Scientific Officer Guntram Bauer. “These investigations examine highly interrelated living systems – many ...

Wind turbine blades get a sustainable upgrade

Wind turbine blades get a sustainable upgrade
2024-04-23
The average wind turbine generates enough electricity in 46 minutes to power a home in the United States for an entire month, according to the United States Geological Survey. And with more than 70,800 turbines scattered throughout the country, wind power has now surpassed hydroelectric power as the largest producer of renewable energy. With a $2 million grant from the Department of Energy, researchers from Virginia Tech are pioneering processes to make this sustainable energy source even more sustainable. The grant is part ...

New study uncovers lasting financial hardship associated with cancer diagnosis for working-age adults in the U.S.

New study uncovers lasting financial hardship associated with cancer diagnosis for working-age adults in the U.S.
2024-04-23
A new study led by researchers at the American Cancer Society (ACS) highlights the lasting financial impact of a cancer diagnosis for many working-age adults and their families in the United States. It shows a cancer diagnosis and the time required for its treatment can result in employment disruptions, loss of household income and loss of employment-based health insurance coverage, leading to financial hardship. When combined with high out-of-pocket costs for cancer care, nearly 60% of working-age cancer survivors report at least one type of financial hardship, such as being unable to afford ...

The coupling between healthspan and lifespan in Caenorhabditis depends on…

The coupling between healthspan and lifespan in Caenorhabditis depends on…
2024-04-23
“The ultimate goal of exploiting model organisms to screen for anti-aging interventions is to identify treatments that might translate to healthy lifespan extension in humans.” BUFFALO, NY- April 23, 2024 – A new research paper was published in Aging (listed by MEDLINE/PubMed as "Aging (Albany NY)" and "Aging-US" by Web of Science) Volume 16, Issue 7, entitled, “The coupling between healthspan and lifespan in Caenorhabditis depends on complex interactions between compound intervention and genetic background.” Aging is characterized by declining health that results ...

LAST 30 PRESS RELEASES:

Variety in building block softness makes for softer amorphous materials

Tennis greats Chris Evert and Martina Navratilova honored at A Conversation With a Living Legend®

Seismic waves used to track LA’s groundwater recharge after record wet winter

When injecting pure spin into chiral materials, direction matters

New quantum sensing scheme could lead to enhanced high-precision nanoscopic techniques

New MSU research: Are carbon-capture models effective?

One vaccine, many cancers

nTIDE April 2024 Jobs Report: Post-pandemic gains seen in employment for people with disabilities appear to continue

Exploring oncogenic driver molecular alterations in Hispanic/Latin American cancer patients

Hungry, hungry white dwarfs: solving the puzzle of stellar metal pollution

New study reveals how teens thrive online: factors that shape digital success revealed

U of T researchers discover compounds produced by gut bacteria that can treat inflammation

Aligned peptide ‘noodles’ could enable lab-grown biological tissues

Law fails victims of financial abuse from their partner, research warns

Mental health first-aid training may enhance mental health support in prison settings

Tweaking isotopes sheds light on promising approach to engineer semiconductors

How E. coli get the power to cause urinary tract infections

Quantifying U.S. health impacts from gas stoves

Physics confirms that the enemy of your enemy is, indeed, your friend

Stony coral tissue loss disease is shifting the ecological balance of Caribbean reefs

Newly discovered mechanism of T-cell control can interfere with cancer immunotherapies

Wistar scientists discover new immunosuppressive mechanism in brain cancer

ADA Forsyth ranks number 1 on the East Coast in oral health research

The American Ornithological Society (AOS) names Judit Szabo as new Ornithological Applications editor-in-chief

Catheter-directed mechanical thrombectomy system demonstrates safety and effectiveness in patients with pulmonary embolism

Novel thrombectomy system demonstrates positive safety and feasibility results in treating acute pulmonary embolism

Biomimetic transcatheter aortic heart valve offers new option for aortic stenosis patients

SMART trial reaffirms hemodynamic superiority of TAVR self-expanding valve in aortic stenosis patients with a small annulus over time and regardless of age

Metastatic prostate cancer research: PSMAfore follow-on study favors radioligand therapy over change to androgen receptor pathway inhibition

Studies highlight need for tailored treatment options for women with peripheral artery disease

[Press-News.org] This tiny chip can safeguard user data while enabling efficient computing on a smartphone
Researchers have developed a security solution for power-hungry AI models that offers protection against two common attacks.