SoK Paper: Security Concerns in Quantum Machine Learning as a Service

Satwik Kundu, Swaroop Ghosh

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Quantum machine learning (QML) is a category of algorithms that uses variational quantum circuits (VQCs) to solve machine learning tasks. Recent works have shown that QML models can effectively generalize from limited training data samples. This capability has led to an increased interest in deploying these models to address practical, real-world problems, resulting in the emergence of Quantum Machine Learning as a Service (QMLaaS). QMLaaS represents a hybrid model that utilizes both classical and quantum computing resources. Classical computers play a crucial role in this setup, handling initial pre-processing and subsequent post-processing of data to compensate for the current limitations of quantum hardware. Since this is a new area, very little work exists to paint the whole picture of QMLaaS in the context of known security threats in the domain of classical and quantum machine learning. This SoK paper is aimed to bridge this gap by outlining the complete QMLaaS workflow, which includes both the training and inference phases and highlighting security concerns involving untrusted classical and quantum providers. QML models contain several sensitive assets, such as the model architecture, training data, encoding techniques, and trained parameters. Unauthorized access to these components could compromise the model's integrity and lead to intellectual property (IP) theft. We pinpoint the critical security issues that must be considered to pave the way for a secure QMLaaS deployment.

Original languageEnglish (US)
Title of host publicationProceedings of the 13th International Workshop on Hardware and Architectural Support for Security and Privacy, HASP 2024
PublisherAssociation for Computing Machinery
Pages28-36
Number of pages9
ISBN (Electronic)9798400712210
DOIs
StatePublished - Nov 2 2024
Event13th International Workshop on Hardware and Architectural Support for Security and Privacy, HASP 2024, held in conjunction with the 57th International Symposium on Microarchitecture, MICRO 2024 - Austin, United States
Duration: Nov 2 2024 → …

Publication series

NameACM International Conference Proceeding Series

Conference

Conference13th International Workshop on Hardware and Architectural Support for Security and Privacy, HASP 2024, held in conjunction with the 57th International Symposium on Microarchitecture, MICRO 2024
Country/TerritoryUnited States
CityAustin
Period11/2/24 → …

All Science Journal Classification (ASJC) codes

  • Human-Computer Interaction
  • Computer Networks and Communications
  • Computer Vision and Pattern Recognition
  • Software

Fingerprint

Dive into the research topics of 'SoK Paper: Security Concerns in Quantum Machine Learning as a Service'. Together they form a unique fingerprint.

Cite this