THE-X: Privacy-Preserving Transformer Inference with Homomorphic Encryption

被引:0
|
作者
Chen, Tianyu [1 ,2 ,5 ]
Bao, Hangbo [3 ]
Huang, Shaohan [3 ]
Dong, Li [3 ]
Jiao, Binxing [4 ]
Jiang, Daxin [4 ]
Zhou, Haoyi [1 ,2 ]
Li, Jianxin [1 ,2 ]
Wei, Furu [3 ]
机构
[1] Beihang Univ, BDBC, Beijing, Peoples R China
[2] Beihang Univ, SKLSDE, Beijing, Peoples R China
[3] Microsoft Res, Mountain View, CA USA
[4] Microsoft STCA, NLP Grp, Beijing, Peoples R China
[5] MSRA, Beijing, Peoples R China
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As more and more pre-trained language models adopt on-cloud deployment, the privacy issues grow quickly, mainly for the exposure of plain-text user data (e.g., search history, medical record, bank account). Privacy-preserving inference of transformer models is on the demand of cloud service users. To protect privacy, it is an attractive choice to compute only with ciphertext in homomorphic encryption (HE). However, enabling pre-trained models inference on ciphertext data is difficult due to the complex computations in transformer blocks, which are not supported by current HE tools yet. In this work, we introduce THE-X, an approximation approach for transformers, which enables privacy-preserving inference of pre-trained models developed by popular frameworks. THE-X proposes a workflow to deal with complex computation in transformer networks, including all the non-polynomial functions like GELU, softmax, and Layer-Norm. Experiments reveal our proposed THE-X can enable transformer inference on encrypted data for different downstream tasks, all with negligible performance drop but enjoying the theory-guaranteed privacy-preserving advantage.
引用
收藏
页码:3510 / 3520
页数:11
相关论文
共 50 条
  • [1] Optimized Privacy-Preserving CNN Inference With Fully Homomorphic Encryption
    Kim, Dongwoo
    Guyot, Cyril
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 2175 - 2187
  • [2] Privacy-Preserving Collective Learning With Homomorphic Encryption
    Paul, Jestine
    Annamalai, Meenatchi Sundaram Muthu Selva
    Ming, William
    Al Badawi, Ahmad
    Veeravalli, Bharadwaj
    Aung, Khin Mi Mi
    [J]. IEEE ACCESS, 2021, 9 : 132084 - 132096
  • [3] A privacy-preserving parallel and homomorphic encryption scheme
    Min, Zhaoe
    Yang, Geng
    Shi, Jingqi
    [J]. OPEN PHYSICS, 2017, 15 (01): : 135 - 142
  • [4] A Review of Homomorphic Encryption for Privacy-Preserving Biometrics
    Yang, Wencheng
    Wang, Song
    Cui, Hui
    Tang, Zhaohui
    Li, Yan
    [J]. SENSORS, 2023, 23 (07)
  • [5] Privacy-Preserving Neural Network Inference Framework via Homomorphic Encryption and SGX
    Xiao, Huizi
    Zhang, Qingyang
    Pei, Qingqi
    Shi, Weisong
    [J]. 2021 IEEE 41ST INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2021), 2021, : 751 - 761
  • [6] Lightweight and Efficient Privacy-Preserving Multimodal Representation Inference via Fully Homomorphic Encryption
    Li, Zhaojue
    Sang, Yingpeng
    Deng, Xinru
    Tian, Hui
    [J]. INTELLIGENT INFORMATION AND DATABASE SYSTEMS, ACIIDS 2023, PT I, 2023, 13995 : 307 - 321
  • [7] Efficient and privacy-preserving tree-based inference via additive homomorphic encryption
    Zhao, Jiaqi
    Zhu, Hui
    Wang, Fengwei
    Lu, Rongxing
    Li, Hui
    [J]. INFORMATION SCIENCES, 2023, 650
  • [8] Privacy-Preserving Decentralized Optimization Using Homomorphic Encryption
    Huo, Xiang
    Liu, Mingxi
    [J]. IFAC PAPERSONLINE, 2020, 53 (05): : 630 - 633
  • [9] Privacy-Preserving Swarm Learning Based on Homomorphic Encryption
    Chen, Lijie
    Fu, Shaojing
    Lin, Liu
    Luo, Yuchuan
    Zhao, Wentao
    [J]. ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2021, PT III, 2022, 13157 : 509 - 523
  • [10] Privacy-Preserving Federated Learning Using Homomorphic Encryption
    Park, Jaehyoung
    Lim, Hyuk
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (02):