Dual-Rail Precharge Logic-Based Side-Channel Countermeasure for DNN Systolic Array

Le Wu,Liji Wu,Xiangmin Zhang,Munkhbaatar Chinbat
DOI: https://doi.org/10.1109/tvlsi.2024.3387986
2024-01-01
IEEE Transactions on Very Large Scale Integration (VLSI) Systems
Abstract:Deep neural network (DNN) accelerators are widely used in cloud-edge-end and other application scenarios. Researchers recently focused on extracting secret information from DNN through side-channel attacks (SCAs), which substantially threaten AI security. In this brief, we propose a high-security, high-performance side-channel countermeasure using dual-rail precharge logic (DPL) for the DNN systolic array. By collecting and analyzing 5000 power traces, our proposed DPL-based systolic array provides a significantly lower correlation coefficient of 0.045. Through system-level side-channel security evaluation on field-programmable gate arrays (FPGAs), the DPL-based systolic array can effectively defend against weight extraction under power SCAs.
What problem does this paper attempt to address?