Fetching the paper…
Reading the bibliography…
As deep learning systems are widely adopted in safety- and security-critical applications, such as autonomous vehicles, banking systems, etc., malicious faults and attacks become a tremendous concern, which potentially could lead to catastrophic consequences.
Biham, E., Shamir, A.: Differential fault analysis of secret key cryptosystems. In: Annual international cryptology conference. pp. 513–525. Springer (1997)
1997
Earlier work this paper cites.
Boneh, D., DeMillo, R.A., Lipton, R.J.: On the importance of checking cryptographic protocols for faults. In: International conference on the theory and applications of cryptographic techniques. pp. 37–51. Springer (1997)
1997
Earlier work this paper cites.
LeCun, Y.: The mnist database of handwritten digits. http://yann. lecun. com/exdb/mnist/ (1998)
1998
Earlier work this paper cites.
Giraud, C., Thiebeauld, H.: A survey on fault attacks. In: Smart Card Research and Advanced Applications VI, pp. 159–176. Springer (2004)
2004
Earlier work this paper cites.
Ciet, M., Joye, M.: Practical fault countermeasures for chinese remaindering based rsa. In: Workshop on Fault Diagnosis and Tolerance in Cryptography–FDTC. vol. 5, pp. 124–132 (2005)
2005
Earlier work this paper cites.
Bar-El, H., Choukri, H., Naccache, D., Tunstall, M., Whelan, C.: The sorcerer’s apprentice guide to fault attacks. Proceedings of the IEEE 94(2), 370–382 (2006)
2006
Earlier work this paper cites.
Kim, C.H., Quisquater, J.J.: Faults, injection methods, and fault attacks. IEEE Design & Test of Computers 24(6), 544–545 (2007)
2007
Earlier work this paper cites.
Agoyan, M., Dutertre, J.M., Mirbaha, A.P., Naccache, D., Ribotta, A.L., Tria, A.: How to flip a bit? In: On-Line Testing Symposium (IOLTS), 2010 IEEE 16th International. pp. 235–239. IEEE (2010)
2010
Earlier work this paper cites.
Balasch, J., Gierlichs, B., Verbauwhede, I.: An in-depth and black-box characterization of the effects of clock glitches on 8-bit mcus. In: Fault Diagnosis and Tolerance in Cryptography (FDTC), 2011 Workshop on. pp. 105–114. IEEE (2011)
2011
Earlier work this paper cites.
Joye, M., Tunstall, M.: Fault analysis in cryptography, vol. 40. Springer (2012)
2012
Earlier work this paper cites.
Moro, N., Dehbaoui, A., Heydemann, K., Robisson, B., Encrenaz, E.: Electromagnetic fault injection: towards a fault model on a 32-bit microcontroller. In: Fault Diagnosis and Tolerance in Cryptography (FDTC), 2013 Workshop on. pp. 77–88. IEEE (2013)
2013
Cited alongside, same era.
Barthe, G., Dupressoir, F., Fouque, P.A., Grégoire, B., Zapalowicz, J.C.: Synthesis of fault attacks on cryptographic implementations. In: Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security. pp. 1016–1027. CCS ’14, ACM, New York, NY, USA (2014), http://doi.acm.org/10.1145/2660267.2660304
2014
Cited alongside, same era.
Lee, M., Hwang, K., Sung, W.: Fault tolerance analysis of digital feed-forward deep neural networks. In: Acoustics, Speech and Signal Processing (ICASSP), 2014 IEEE International Conference on. pp. 5031–5035. IEEE (2014)
2014
Cited alongside, same era.
Servant, V., Debande, N., Maghrebi, H., Bringer, J.: Study of a novel software constant weight implementation. In: International Conference on Smart Card Research and Advanced Applications. pp. 35–48. Springer (2014)
Breier, J., Hou, X.: Feeding two cats with one bowl: On designing a fault and side-channel resistant software encoding scheme. In: Cryptographers’ Track at the RSA Conference. pp. 77–94. Springer (2017)
2017
Later among the works it cites.
Carlini, N., Wagner, D.: Adversarial examples are not easily detected: Bypassing ten detection methods. In: Proceedings of the 10th ACM Workshop on Artificial Intelligence and Security. pp. 3–14. ACM (2017)
2017
Later among the works it cites.
Carlini, N., Wagner, D.: Towards evaluating the robustness of neural networks. In: Security and Privacy (SP), 2017 IEEE Symposium on. pp. 39–57. IEEE (2017)
2017
Later among the works it cites.
Liu, Y., Wei, L., Luo, B., Xu, Q.: Fault injection attack on deep neural network. In: Proceedings of the 36th International Conference on Computer-Aided Design. pp. 131–138. IEEE Press (2017)
2017
Later among the works it cites.
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2014
Cited alongside, same era.
Szegedy, C., Zaremba, W., Sutskever, I., Bruna, J., Erhan, D., Goodfellow, I., Fergus, R.: Intriguing properties of neural networks. In: ICLR (2014)
2014
Cited alongside, same era.
Breier, J., Jap, D., Chen, C.N.: Laser profiling for the back-side fault attacks: with a practical laser skip instruction attack on aes. In: Proceedings of the 1st ACM Workshop on Cyber-Physical System Security. pp. 99–103. ACM (2015)
2015
Cited alongside, same era.
Chollet, F., et al.: Keras (2015)
2015
Cited alongside, same era.
Goodfellow, I.J., Shlens, J., Szegedy, C.: Explaining and harnessing adversarial examples. ICLR (2015)
2015
Cited alongside, same era.
Abadi, M., Barham, P., Chen, J., Chen, Z., Davis, A., Dean, J., Devin, M., Ghemawat, S., Irving, G., Isard, M., et al.: Tensorflow: A system for large-scale machine learning. In: OSDI. vol. 16, pp. 265–283 (2016)
2016
Cited alongside, same era.
Goodfellow, I., Bengio, Y., Courville, A.: Deep Learning. MIT Press (2016), http://www.deeplearningbook.org
2016
Cited alongside, same era.
Batina, L., Bhasin, S., Jap, D., Picek, S.: Csi neural network: Using side-channels to recover your artificial neural network information. Cryptology ePrint Archive, Report 2018/477 (2018), https://eprint.iacr.org/2018/477
2018
Closest in time.
Brendel, W., Rauber, J., Bethge, M.: Decision-based adversarial attacks: Reliable attacks against black-box machine learning models. In: ICLR (2018)
2018
Closest in time.
Deshpande, A.: The last 5 years in deep learning. https://adeshpande3.github.io/The-Last-5-Years-in-Deep-Learning
2018
Closest in time.
He, W., Li, B., Song, D.: Decision boundary analysis of adversarial examples. In: ICLR (2018)
2018
Closest in time.
Xiao, C., Zhu, J.Y., Li, B., He, W., Liu, M., Song, D.: Spatially transformed adversarial examples. In: ICLR (2018)
2018
Closest in time.