EnsGuard: A Novel Acceleration Framework for Adversarial Ensemble Learning

被引:0
|
作者
Wang, Xingbin [1 ]
Wang, Yan [1 ]
Su, Yulan [1 ]
Zhang, Sisi [1 ]
Meng, Dan [1 ]
Hou, Rui [1 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, Key Lab Cyberspace Secur Def, Beijing 100093, Peoples R China
基金
中国国家自然科学基金;
关键词
Computational modeling; Hardware; Ensemble learning; Robustness; Computer architecture; Training; Resource management; Adversarial defense; asymmetric multicore (AMC) architecture; deep neural network (DNN) accelerator; ensemble learning; instruction set; ROBUSTNESS;
D O I
10.1109/TCAD.2024.3390031
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
-To defend against various adversarial attacks, it is essential to develop a robust and high computing efficiency defence framework. Adversarial ensemble learning is the most effective technique for defending against adversarial example attacks, which constructs ensembles of multiple Deep neural networks (DNNs) with adversarial training to obtain stronger defense. However, ensemble models run noticeably slower on existing DNN accelerators than single-model inference. Deploying ensemble models on the existing DNN accelerators leads to many critical issues such as the underutilization of hardware resources. To tackle emerging challenges, we propose EnsGuard, , a dynamic asymmetric multicore systolic array architecture for adversarial ensemble learning inference to fully exploit both static and dynamic parallelism of ensemble models. Specifically, on the hardware level, we propose a novel instruction set extension and develop efficient architecture components to fully exploit the new hardware abstraction of scattered idle computing cores, and use them to dynamically create on-the-fly neural processing units (fNPUs). Moreover, we propose a computing power recycle mechanism to run on-the-fly models (small models) on fNPUs by carefully orchestrating execution order of ensemble models for maximizing hardware resources and bandwidth utilization. On the software level, EnsGuard adopts an integrated hardware/randomized ensemble co-design optimizer aiming at winning both faster inference and higher adversarial robustness. On top of that, a multimodel mapping method based on decision tree is proposed to enable the interleaving of different DNN executions both spatially and temporally, and mitigate straggler problems. Evaluation with a diverse set of workloads shows significant gains in throughput (4.4x) and energy reduction (3.2x).
引用
收藏
页码:3088 / 3101
页数:14
相关论文
共 50 条
  • [1] ELAMD: An ensemble learning framework for adversarial malware defense
    Chen, Jiaqi
    Yuan, Chong
    Li, Jiashuo
    Tian, Donghai
    Ma, Rui
    Jia, Xiaoqi
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 75
  • [2] RobEns: Robust Ensemble Adversarial Machine Learning Framework for Securing IoT Traffic
    Alkadi, Sarah
    Al-Ahmadi, Saad
    Ben Ismail, Mohamed Maher
    [J]. SENSORS, 2024, 24 (08)
  • [3] Forecasting energy consumption with a novel ensemble deep learning framework
    Shojaei, Tahereh
    Mokhtar, Alireza
    [J]. JOURNAL OF BUILDING ENGINEERING, 2024, 96
  • [4] A novel self-directed learning framework for cluster ensemble
    Kadhim, Mustafa R.
    Zhou, Guangyao
    Tian, Wenhong
    [J]. JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (10) : 7841 - 7855
  • [5] Machine learning based novel ensemble learning framework for electricity operational forecasting
    Weeraddana, Dilusha
    Khoa, Nguyen Lu Dang
    Mahdavi, Nariman
    [J]. ELECTRIC POWER SYSTEMS RESEARCH, 2021, 201
  • [6] A Novel Adversarial Learning Framework for Passive Bistatic Radar Signal Enhancement
    Che, Jibin
    Wang, Li
    Wang, Changlong
    Zhou, Feng
    [J]. ELECTRONICS, 2023, 12 (14)
  • [7] Generative Adversarial Ensemble Learning for Face Forensics
    Baek, Jae-Yong
    Yoo, Yong-Sang
    Bae, Seung-Hwan
    [J]. IEEE ACCESS, 2020, 8 : 45421 - 45431
  • [8] Inverse Adversarial Diversity Learning for Network Ensemble
    Zhou, Sanping
    Wang, Jinjun
    Wang, Le
    Wan, Xingyu
    Hui, Siqi
    Zheng, Nanning
    [J]. IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2024, 35 (06) : 7923 - 7935
  • [9] Using a novel ensemble learning framework to detect financial reporting misconduct
    Pan, Siqi
    Ye, Qiang
    Shi, Wen
    [J]. JOURNAL OF MANAGEMENT ANALYTICS, 2023, 10 (04) : 607 - 624
  • [10] A novel ensemble learning framework based on a genetic algorithm for the classification of pneumonia
    Kaya, Mahir
    Cetin-Kaya, Yasemin
    [J]. ENGINEERING APPLICATIONS OF ARTIFICIAL INTELLIGENCE, 2024, 133