Select your language

They design a tool to prevent attacks on compressed artificial intelligence systems

United States. Security cameras, smartphones, and speakers are just a few of the devices that will soon run more AI software to speed up image processing and speech tasks.

A compression technique known as quantization is paving the way by making deep learning models smaller to reduce computing and energy costs. But it turns out that smaller models make it easier for malicious attackers to trick an AI system into misbehaving, a concern since more complex decision-making is transferred to machines.

In a new study, researchers at MIT and IBM show how vulnerable compressed AI models are to adversary attack, and offer a solution: Add a mathematical constraint during the quantification process to reduce the odds of an AI falling prey to a slightly modified image and misclassifying what they see.

When a deep learning model is reduced from the standard 32 bits to a lower bit length, it is more likely to misclassify the altered images due to an error amplification effect: the manipulated image becomes more distorted with each additional layer of processing. In the end, the model is more likely to mistake a bird for a cat, for example, or a frog for a deer.

- Publicidad -

Models quantified at 8 bits or less are more susceptible to adverse attacks, the researchers show, with accuracy dropping from 30-40 percent to less than 10 percent as bit width decreases. But controlling Lipschitz restriction during quantization restores some resistance. When the researchers added the restriction, they saw small performance gains in an attack, with the smaller models in some cases outperforming the 32-bit model.

"Our technique limits error amplification and can even make compressed deep learning models more robust than full-precision models," says Song Han, an assistant professor in MIT's Department of Electrical and Computer Engineering and a member of MIT's Microsystems Technology Laboratories. "With proper quantization, we can limit error."

The team plans to further improve the technique by training it on larger datasets and applying it to a wider range of models. "Deep learning models need to be fast and secure as they move forward in a world of internet-connected devices," says study co-author Chuang Gan, a researcher at the MIT-IBM Watson artificial intelligence lab. "Our defensive quantification technique helps on both fronts."

By making AI models smaller so that they run faster and use less energy, Han is using AI to push the boundaries of model compression technology.

In related recent work, Han and his colleagues show how reinforcement learning can be used to automatically find the smallest bit length for each layer in a quantified model based on how quickly the device running the model can process images. This flexible bit-width approach reduces latency and power usage by up to 200 percent compared to an 8-bit fixed model, Han says.

Source: MIT.

Duván Chaverra Agudelo
Duván Chaverra AgudeloEmail: [email protected]
Editor Jefe
Jefe Editorial en Latin Press, Inc,. Comunicador Social y Periodista con experiencia de más de 13 años en medios de comunicación. Apasionado por la tecnología.

No comments

• If you're already registered, please log in first. Your email will not be published.

Leave your comment

In reply to Some User
Security becomes a technological platform

Security becomes a technological platform

Mexico. Security is moving from a set of standalone systems to an integrated technology platform that combines artificial intelligence, video analytics, sensors, access control, and data platforms....

Security industry in Mexico and Latin America continues its expansion and professionalization

Security industry in Mexico and Latin America continues its expansion and professionalization

International. The security industry in Mexico and Latin America maintains a growth trend driven by digital transformation, the increase in physical and cyber risks, as well as the need to protect...

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

United States. Veeam Software today announced the launch of Agent Commander, a solution aimed at helping organizations detect risks associated with artificial intelligence, protect AI-based systems...

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

In industries where every minute counts, efficient asset and resource management has become a strategic factor to ensure operational continuity, safety, and productivity. By: Héctor Meléndez,...

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Puerto Rico. A centralized monitoring operation developed by Genesis Security was able to significantly reduce the volume of false alarms in its security systems, thanks to the integration of...

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Türkiye. An open-ocean fish farming farm in Turkey implemented a smart surveillance system based on Dahua solar cameras, thermal monitoring, and wireless data transmission to improve safety and...

 The Hidden Security Gap in Data Centers

The Hidden Security Gap in Data Centers

Imagine the journey of an authorized technician inside a data center. When he arrives, he presents his credential and enters the premises, and before entering the server corridor he needs a key to...

Digital fraud increased at Christmas

Digital fraud increased at Christmas

Colombia. During the holiday season, as e-commerce and digital transactions intensified, online fraud attempts also increased. Fake promotions, impersonation of businesses and messages that...

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Mexico. Milestone Systems, a leading provider of open platform video management software (VMS), hosted the Milestone XPerience Days Mexico 2025 event, a gathering that brought together industry...

Hikvision Mexico launches the third edition of

Hikvision Mexico launches the third edition of "Hikvision Women"

Mexico. Hikvision Mexico announced the launch of the third edition of its "Hikvision Women" program, an initiative aimed at strengthening the participation and professional development of women in...

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter