SECURE COMPUTER-IMPLEMENTED METHOD FOR PREVENTING A RECOVERY OF EMBEDDED DATA WITHIN A NEURAL NETWORK MODEL

    公开(公告)号:EP4421683A1

    公开(公告)日:2024-08-28

    申请号:EP23305255.4

    申请日:2023-02-24

    发明人: LI, Qiang

    IPC分类号: G06N3/045 G06F21/55 G06F7/76

    摘要: The invention relates to a secure computer-implemented method (1) for preventing a recovery of embedded data (d) within an neural network model (NN), said neural network model (NN) comprising a plurality of layers (L), each layer (L) having a related matrix of parameters (M) and being configured to receive at least one input tensor (t1), wherein said secure computed implemented method (1) comprises:
    - for at least one layer (L), permuting sets (s) of parameters (P) within its related matrix of parameters (M) so as to change their initial positions (p) in said matrix of parameters (M),
    - applying said matrix of permuted parameters (M') to the at least one input tensor (t1) so as to generate an output tensor (t2').