arrow
返回

zkDL: Efficient Zero-Knowledge Proofs of Deep Learning Training

delete2025-01-01
delete0
PRE
AI
H
Haochen Sun
T
Tonghe Bai
J
J. Li
H
Hongyang Zhang *
DOI:10.1109/TIFS.2024.3520863delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
The recent advancements in deep learning have brought about significant changes in various aspects of people's lives. Meanwhile, these rapid developments have raised concerns about the legitimacy of the training process of deep neural networks. To protect the intellectual properties of AI developers, directly examining the training process by accessing the model parameters and training data is often prohibited for verifiers. In response to this challenge, we present zero-knowledge deep learning (zkDL), an efficient zero-knowledge proof for deep learning training. To address the long-standing challenge of verifiable computations of non-linearities in deep learning training, we introduce zkReLU, a specialized proof for the ReLU activation and its backpropagation. zkReLU turns the disadvantage of non-arithmetic relations into an advantage, leading to the creation of FAC4DNN, our specialized arithmetic circuit design for modelling neural networks. This design aggregates the proofs over different layers and training steps, without being constrained by their sequential order in the training process. With our new CUDA implementation that achieves full compatibility with the tensor structures and the aggregated proof design, zkDL enables the generation of complete and sound proofs in less than a second per batch update for an 8-layer neural network with 10M parameters and a batch size of 64, while provably ensuring the privacy of data and model parameters. To our best knowledge, we are not aware of any existing work on zero-knowledge proof of deep learning training that is scalable to million-size networks.
Keyword:
Training
Arithmetic
Deep learning
Tensors
Data models
Backpropagation
Training data
Artificial neural networks
Protocols
Mathematical models
Verifiable training
deep learning
privacy-preserving

期刊

IEEE Transactions on Information Forensics and Security 封面图
IEEE Transactions on Information Forensics and Security
IF:
8
论文数:
5.3K
被引数:
2.3W

机构

U
University of Waterloo
学者数:
2.2W
论文数: 2.3W
被引数: 3.3W
引用论文

引用论文

Sea ice export through the Fram Strait derived from a combined model and satellite data set
err2019-12-04
err0
errOAAI
errChao Min; Longjiang Mu; Qinghua Yang; Robert Ricker; Qian Shi; Bo Han; Renhao Wu; Jiping Liu
err分享
err收藏
err分享
err收藏
Screening Blood Donations for Hepatitis C Virus by Polymerase Chain Reaction
err2003-03-28
err0
PREAI
errL. Jarvis; A. Cleland; P. Simmonds; B. Dow; M. Munro; A. Jordan; C. Prowse; P.L. Yap
err分享
err收藏
Dichlorophosphate von Niob, Tantal, Zirkonium und Hafnium; die Kristallstruktur von NbOCl3· POCl3
err1978-01-01
err0
PREAI
errVon Günter Münninghoff; Erwin Hellner; Mervat El Essawi; Kurt Dehnicke
err分享
err收藏
学者 查看更多内容