BOLT: Privacy-Preserving, Accurate and Efficient Inference for Transformers

被引:9
作者
Pang, Qi [1 ]
Zhu, Jinhao [2 ]
Moellering, Helen M. [3 ]
Zheng, Wenting [1 ]
Schneider, Thomas [3 ]
机构
[1] Carnegie Mellon Univ, Pittsburgh, PA 15213 USA
[2] Univ Calif Berkeley, Berkeley, CA USA
[3] Tech Univ Darmstadt, Darmstadt, Germany
来源
45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024 | 2024年
基金
欧盟地平线“2020”;
关键词
secure multi-party computation; homomorphic encryption; secure machine learning inference; transformer;
D O I
10.1109/SP54263.2024.00130
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The advent of transformers has brought about significant advancements in traditional machine learning tasks. However, their pervasive deployment has raised concerns about the potential leakage of sensitive information during inference. Existing approaches using secure multiparty computation (MPC) face limitations when applied to transformers due to the extensive model size and resource-intensive matrix-matrix multiplications. In this paper, we present BOLT, a privacy-preserving inference framework for transformer models that supports efficient matrix multiplications and nonlinear computations. Combined with our novel machine learning optimizations, BOLT reduces the communication cost by 10.91x. Our evaluation on diverse datasets demonstrates that BOLT maintains comparable accuracy to floating-point models and achieves 4.8-9.5x faster inference across various network settings compared to the state-of-the-art system.
引用
收藏
页码:4753 / 4771
页数:19
相关论文
共 50 条
[21]   An efficient privacy-preserving recommender system in wireless networks [J].
Luo, Junwei ;
Yi, Xun ;
Han, Fengling ;
Yang, Xuechao .
WIRELESS NETWORKS, 2024, 30 (06) :4949-4960
[22]   Efficient paillier cryptoprocessor for privacy-preserving data mining [J].
San, Ismail ;
At, Nuray ;
Yakut, Ibrahim ;
Polat, Huseyin .
SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (11) :1535-1546
[23]   Efficient homomorphic encryption framework for privacy-preserving regression [J].
Byun, Junyoung ;
Park, Saerom ;
Choi, Yujin ;
Lee, Jaewook .
APPLIED INTELLIGENCE, 2023, 53 (09) :10114-10129
[24]   Efficient homomorphic encryption framework for privacy-preserving regression [J].
Junyoung Byun ;
Saerom Park ;
Yujin Choi ;
Jaewook Lee .
Applied Intelligence, 2023, 53 :10114-10129
[25]   Toward Understanding Efficient Privacy-Preserving Homomorphic Comparison [J].
Pulido-Gaytan, Bernardo ;
Tchernykh, Andrei ;
Leprevost, Franck ;
Bouvry, Pascal ;
Goldman, Alfredo .
IEEE ACCESS, 2023, 11 :102189-102206
[26]   EPDL: An efficient and privacy-preserving deep learning for crowdsensing [J].
Chang Xu ;
Guoxie Jin ;
Liehuang Zhu ;
Chuan Zhang ;
Yu Jia .
Peer-to-Peer Networking and Applications, 2022, 15 :2529-2541
[27]   EPDL: An efficient and privacy-preserving deep learning for crowdsensing [J].
Xu, Chang ;
Jin, Guoxie ;
Zhu, Liehuang ;
Zhang, Chuan ;
Jia, Yu .
PEER-TO-PEER NETWORKING AND APPLICATIONS, 2022, 15 (06) :2529-2541
[28]   Efficient Privacy-Preserving Approximation of the Kidney Exchange Problem [J].
Breuer, Malte ;
Meyer, Ulrike ;
Wetzel, Susanne .
PROCEEDINGS OF THE 19TH ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, ACM ASIACCS 2024, 2024, :306-322
[29]   Efficient and Practical Privacy-Preserving Face Recognition Protocol [J].
Zhang, Jianfei ;
Zhang, Yuanyuan .
FRONTIERS IN CYBER SECURITY, FCS 2024, PT I, 2024, 2315 :277-292
[30]   Privacy-preserving and verifiable deep learning inference based on secret sharing [J].
Duan, Jia ;
Zhou, Jiantao ;
Li, Yuanman ;
Huang, Caishi .
NEUROCOMPUTING, 2022, 483 :221-234