Trojllm: A black-box trojan prompt attack on large language models

J Xue, M Zheng, T Hua, Y Shen, Y Liu… - Advances in Neural …, 2023 - proceedings.neurips.cc
Abstract Large Language Models (LLMs) are progressively being utilized as machine
learning services and interface tools for various applications. However, the security …

Rowpress: Amplifying read disturbance in modern dram chips

H Luo, A Olgun, AG Yağlıkçı, YC Tuğrul… - Proceedings of the 50th …, 2023 - dl.acm.org
Memory isolation is critical for system reliability, security, and safety. Unfortunately, read
disturbance can break memory isolation in modern DRAM chips. For example, RowHammer …

A survey of bit-flip attacks on deep neural network and corresponding defense methods

C Qian, M Zhang, Y Nie, S Lu, H Cao - Electronics, 2023 - mdpi.com
As the machine learning-related technology has made great progress in recent years, deep
neural networks are widely used in many scenarios, including security-critical ones, which …

You are catching my attention: Are vision transformers bad learners under backdoor attacks?

Z Yuan, P Zhou, K Zou… - Proceedings of the IEEE …, 2023 - openaccess.thecvf.com
Abstract Vision Transformers (ViTs), which made a splash in the field of computer vision
(CV), have shaken the dominance of convolutional neural networks (CNNs). However, in the …

Not all prompts are secure: A switchable backdoor attack against pre-trained vision transfomers

S Yang, J Bai, K Gao, Y Yang, Y Li… - Proceedings of the …, 2024 - openaccess.thecvf.com
Given the power of vision transformers a new learning paradigm pre-training and then
prompting makes it more efficient and effective to address downstream visual recognition …

Fundamentally understanding and solving rowhammer

O Mutlu, A Olgun, AG Yağlıkcı - Proceedings of the 28th Asia and South …, 2023 - dl.acm.org
We provide an overview of recent developments and future directions in the RowHammer
vulnerability that plagues modern DRAM (Dynamic Random Memory Access) chips, which …

CoMeT: Count-Min-Sketch-based Row Tracking to Mitigate RowHammer at Low Cost

FN Bostanci, IE Yüksel, A Olgun… - … Symposium on High …, 2024 - ieeexplore.ieee.org
DRAM chips are increasingly more vulnerable to read-disturbance phenomena (eg,
RowHammer and RowPress), where repeatedly accessing DRAM rows causes bitflips in …

{ABACuS}:{All-Bank} Activation Counters for Scalable and Low Overhead {RowHammer} Mitigation

A Olgun, YC Tugrul, N Bostanci, IE Yuksel… - 33rd USENIX Security …, 2024 - usenix.org
We introduce ABACuS, a new low-cost hardware-counterbased RowHammer mitigation
technique that performance-, energy-, and area-efficiently scales with worsening …

DRAM bender: An extensible and versatile FPGA-based infrastructure to easily test state-of-the-art DRAM chips

A Olgun, H Hassan, AG Yağlıkçı… - … on Computer-Aided …, 2023 - ieeexplore.ieee.org
To understand and improve DRAM performance, reliability, security, and energy efficiency,
prior works study characteristics of commodity DRAM chips. Unfortunately, state-of-the-art …

Forget and Rewire: Enhancing the Resilience of Transformer-based Models against {Bit-Flip} Attacks

N Nazari, HM Makrani, C Fang, H Sayadi… - 33rd USENIX Security …, 2024 - usenix.org
Bit-Flip Attacks (BFAs) involve adversaries manipulating a model's parameter bits to
undermine its accuracy significantly. They typically target the most vulnerable parameters …