Robust Encrypted Inference in Deep Learning: A Pathway to Secure Misinformation Detection
Author | Ali, Hassan |
Author | Javed, Rana Tallal |
Author | Qayyum, Adnan |
Author | AlGhadhban, Amer |
Author | Alazmi, Meshari |
Author | Alzamil, Ahmad |
Author | Al-Utaibi, Khalid |
Author | Qadir, Junaid |
Available date | 2025-07-08T03:58:09Z |
Publication Date | 2025 |
Publication Name | IEEE Transactions on Dependable and Secure Computing |
Resource | Scopus |
Identifier | http://dx.doi.org/10.1109/TDSC.2024.3447629 |
ISSN | 15455971 |
Abstract | To combat the rapid spread of misinformation on social networks, automated misinformation detection systems based on deep neural networks (DNNs) have been developed. However, these tools are often proprietary and lack transparency, which limits their usefulness. Furthermore, privacy concerns limit data sharing by data owners as well as by data-driven misinformationdetection services. Although data encryption techniques can help address privacy concerns in DNN inference, there is a challenge to the seamless integration of these techniques due to the encryption errors induced by cascaded encrypted operations, as well as a mismatch between the tools used for DNNs and cryptography. In this paper, we make two-fold contributions. First, we study the noise bounds of homomorphic encryption (HE) operations as error propagation in DNN layers and derive two properties that, if satisfied by the layer, will considerably reduce the output error.We identify that L2 regularization and sigmoid activation satisfy these properties and validate our hypothesis, for instance, replacing ReLU with sigmoid reduced the output error by 106 x (best case) to 10 x (worst case). Second, we extend the Python encryption library TenSeal by enabling the automatic conversion of a TensorFlow DNN into an encryption-compatible DNN with a few lines of code. These contributions are significant as encryption-friendly DL architectures are sorely needed to close the gap between DL-in-research and DL-in-practice. |
Sponsor | Funding text 1: This work was supported by Deputy for Research & Innovation, Ministry of Education through the Initiative of Institutional Funding at the University of Ha\u2019il-Saudi Arabia under Grant IFP-22 216. This work was supported by Deputy for Research & Innovation, Ministry of Education through the Initiative of Institutional Funding at the University of Ha\u2019il-Saudi Arabia under Grant IFP-22 216.; Funding text 2: This research has been funded by Deputy for Research & Innovation, Ministry of Education through the Initiative of Institutional Funding at the University of Ha\u2019il-Saudi Arabia through project number IFP-22 216. |
Language | en |
Publisher | IEEE |
Subject | encrypted inference (EI) machine learning as a service (MLaaS) Misinformation detection |
Type | Article |
Pagination | 1627-1639 |
Issue Number | 2 |
Volume Number | 22 |
Files in this item
This item appears in the following Collection(s)
-
Computer Science & Engineering [2482 items ]