{"id":"W3203863013","doi":"","title":"Physical Security of Deep Learning on Edge Devices: Comprehensive Evaluation of Fault Injection Attack Vectors","year":2019,"lang":"en","type":"preprint","venue":"IACR Cryptology ePrint Archive","topic":"Adversarial Robustness in Machine Learning","field":"Computer Science","cited_by":0,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of Alberta","funders":"","keywords":"Softmax function; Computer science; Deep learning; Fault (geology); Enhanced Data Rates for GSM Evolution; Computer security; Artificial intelligence; Countermeasure; Artificial neural network; Fault injection; Attack surface; Deep neural networks; Edge device; Reliability (semiconductor); Machine learning; Software; Power (physics); Cloud computing","routes":{"ca_aff":true,"ca_fund":false,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"codex-gemma-dda1882f352a","candidate_categories":["metaepi_narrow","research_integrity"],"consensus_categories":[],"category_scores_codex":[0.0009838839,0.0005156524,0.001140281,0.0005055532,0.0001344073,0.00003499968,0.001467565,0.0003997602,0.00003016115],"category_scores_gemma":[0.0009045749,0.0005340152,0.0004002256,0.0003073792,0.0003917649,0.0001723489,0.00300498,0.002681506,0.00007235396],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0002214673,"about_ca_system_score_gemma":0.0003346466,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.0001247406,"about_ca_topic_score_gemma":0.00006073874,"domain_scores_codex":[0.9937053,0.002817182,0.0007574943,0.001240381,0.001040085,0.0004395004],"domain_scores_gemma":[0.9944541,0.001773999,0.00159936,0.001244481,0.0008351621,0.00009286747],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"simulation_or_modeling","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.0001003767,0.0002000515,0.009543729,0.0003099703,0.0002328464,0.000003895032,0.01650265,0.8733334,0.0005841851,0.08621135,0.00001194998,0.01296558],"study_design_scores_gemma":[0.0007227791,0.0003824968,0.02921263,0.0002500708,0.0001371021,0.00001055244,0.000364588,0.8393377,0.001149559,0.1279916,0.00006368419,0.0003771709],"study_design_candidate":"simulation_or_modeling","study_design_consensus":"simulation_or_modeling","genre_codex":"empirical","genre_gemma":"empirical","genre_scores_codex":[0.5125183,0.00004937806,0.4843095,0.00006075499,0.0009792997,0.0005752852,0.000006052419,0.00008104817,0.001420315],"genre_scores_gemma":[0.9541678,0.00001351253,0.04543,0.00003505951,0.0001965026,0.00005584235,0.00006574998,0.00003482573,7.135014e-7],"genre_candidate":"empirical","genre_consensus":"empirical","teacher_disagreement_score":0.4416494,"threshold_uncertainty_score":0.9997112,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.03799752205158395,"score_gpt":0.3391170141051966,"score_spread":0.3011194920536127,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}