Energy-latency attacks via sponge poisoning

Published: 01 Jan 2025, Last Modified: 15 May 2025Inf. Sci. 2025EveryoneRevisionsBibTeXCC BY-SA 4.0
Abstract: Highlights•We propose the first poisoning attack to increase energy consumption in DNNs while preserving their prediction accuracy.•We formulate a novel objective function to target energy consumption in Hardware ASIC accelerators.•We inspect the model activations of the models to detect the most vulnerable layers against sponge poisoning attacks.•We show that the proposed attack can be adapted to avoid violating specific energy consumption requirements.•We show how to repair models targeted by sponge attacks, revealing an alternative path toward building energy-saving DNNs.
Loading