Predicting the Execution Time of Secure Neural Network Inference

Authors
Publication date 2024
Host editors
  • N. Pitropakis
  • S. Katsikas
  • S. Furnell
  • K. Markantonakis
Book title ICT Systems Security and Privacy Protection
Book subtitle 39th IFIP International Conference, SEC 2024, Edinburgh, UK, June 12–14, 2024, Proceedings
ISBN
  • 9783031651748
ISBN (electronic)
  • 9783031651755
Series IFIP Advances in Information and Communication Technology
Event 39th International Conference on ICT Systems Security and Privacy Protection
Volume | Issue number Cham
Pages (from-to) 481–494
Publisher Springer
Organisations
  • Faculty of Science (FNWI) - Informatics Institute (IVI)
Abstract
In the secure neural network inference (SNNI) problem, a service provider offers inference as a service with a pre-trained neural network (NN). Clients can use the service by providing an input and obtaining the output of the inference with the NN. For reasons of privacy and intellectual property protection, the service provider must not learn anything about the input or the output, and the client must not learn anything about the internal parameters of the NN. This is possible by applying techniques like multi-party computing (MPC) or homomorphic encryption (HE), although with a significant performance overhead.
One way to improve the efficiency of SNNI is by selecting NN architectures that can be evaluated faster using MPC or HE. For this, it would be important to predict how long SNNI with a given NN takes. This turns out to be challenging. Traditional predictors for NN inference time, like the number of parameters in the NN, are poor predictors of SNNI execution time, since they ignore the characteristics of cryptographic protocols. This paper is the first to address this problem. We propose three different prediction methods for SNNI execution time, and investigate experimentally their strengths and weaknesses. The results show that the proposed methods offer different advantages in terms of accuracy and speed.
Document type Conference contribution
Language English
Published at https://doi.org/10.1007/978-3-031-65175-5_34
Permalink to this page
Back