International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

Delving into Cryptanalytic Extraction of PReLU Neural Networks

Authors:
Yi Chen , Institute for Advanced Study, Tsinghua University
Xiaoyang Dong , Tsinghua University
Ruijie Ma , Tsinghua University
Yantian Shen , Tsinghua University
Anyu Wang , Institute for Advanced Study, Tsinghua University
Hongbo Yu , Tsinghua University
Xiaoyun Wang , Institute for Advanced Study, Tsinghua University
Download:
Search ePrint
Search Google
Conference: ASIACRYPT 2025
Abstract: The machine learning problem of model extraction was first introduced in 1991 and gained prominence as a cryptanalytic challenge starting with Crypto 2020. For over three decades, research in this field has primarily focused on ReLU-based neural networks. In this work, we take the first step towards the cryptanalytic extraction of PReLU neural networks, which employ more complex nonlinear activation functions than their ReLU counterparts. We propose a raw output-based parameter recovery attack for PReLU networks and extend it to more restrictive scenarios where only the top-m probability scores are accessible. Our attacks are rigorously evaluated through end-to-end experiments on diverse PReLU neural networks, including models trained on the MNIST dataset. To the best of our knowledge, this is the first practical demonstration of the PReLU neural network extraction across three distinct attack scenarios.
BibTeX
@inproceedings{asiacrypt-2025-36041,
  title={Delving into Cryptanalytic Extraction of PReLU Neural Networks},
  publisher={Springer-Verlag},
  author={Yi Chen and Xiaoyang Dong and Ruijie Ma and Yantian Shen and Anyu Wang and Hongbo Yu and Xiaoyun Wang},
  year=2025
}