4 ms·
It's pretty confident this calculator is a cat. https://i.postimg.cc/90WGjk8t/results.png https://i.postimg.cc/90WGjk8t/results.png What's the use case for th
by smalltorch 3mo ago
It's pretty confident this calculator is a cat.
https://i.postimg.cc/90WGjk8t/results.png https://i.postimg.cc/90WGjk8t/results.png
What's the use case for this?
- malcolmgreaves 3mo agoFrom the webpage: > Image classification without the server seeing the image. The value is in being able to get the prediction from the model without ever giving unencrypted data to somebody you don’t trust. You could have an LLM generate code for you without ever giving the operator your proprietary source code.
- furkanturan 3mo agoConsider encrypted AI. You ask a question under encryption. The remote calculates the answer, which is still under encryption. This is the critical point; the remote cannot see the question and answer. It only calculates. Once you receive the answer, you decrypt it and see the answer; only you see the answer.
- smalltorch 3mo agoAh, that sounds impossible. Good luck, sir...Also, who wants this if you can just run a local model?
- furkanturan 3mo agoThanks a lot. Though encrypted AI chat bot is not far ahead, do not think of that as the primary target of today. Instead, there are many untapped applications (e.g. inter-bank transfers, industry, healthcare) where regulations, privacy laws and compliance requirements restrict institutions from touching data. These will initially be our key enablers, and over time we hope to extend the range of applications.
- smalltorch 3mo agoHave you considered that maybe the computation itself on the private data, no matter how you put it, even if encrypted, was designed to protect the consumer? I.E., gaining any sort of insight a transaction of protected information is what the protections were in place for. So is FHE more about skirting regulations and privacy laws? Or, is it a new frontier of an untapped data source that has some red tape around it? To me, something was simply not encrypted properly if you are able to draw conclusions/learn insights/detect anything about the data. It's in conflict with the idea of what secure encryption means to me.
- j2kun 3mo ago> gaining any sort of insight The server providing the FHE-based service does not gain any sort of insight. This is a key point: only the client can see the output of the computation.
- smalltorch 3mo agoInteresting. I have some homework to do then. Do we have to close our eyes and look away for it to be true or does it really not gain any insight? Where can I find out more about how this could be possible?
- larrygates 3mo agoGood primer on FHE here: https://eurocrypt.iacr.org/2021/slides/gentry.pdf https://eurocrypt.iacr.org/2021/slides/gentry.pdf
- furkanturan 3mo agoCheck this one too: https://openmined.org/blog/ckks-explained-part-1-simple-encoding-and-decoding/ https://openmined.org/blog/ckks-explained-part-1-simple-enco...
- mswphd 3mo agothis is only true in the IND-CPA model for most "practical" FHE work. So a more precise way to describe things is "a server who faithfully performs the task given to them does not gain any sort of insight" (perhaps with an additional caveat about decryption failures).
- simcop2387 3mo agoIt'll be very useful for even local setups when the data needs to be confidential. Look at the research related to medical training of llms (ignore their current lack of direct usefulness/trustworthiness, those are potentially solvable), with a homomorphically encrypted session, the large inference servers never see hipaa protected data in a way that exposes it if the server is compromised even if its an on premises setup in your doctors office processing the data, reducing risk of the data leaking anywhere.
- binary132 3mo agomaybe it could be running a much more powerful system than you have access to
- smalltorch 3mo agoI can't tell if your being sarcastic but if you can't prove fhe within ( and I'll be generous) a few 1000 lines of code. Bologna.
- Pro7ech 3mo agoA local model works when one party owns everything. But often you'll have more than one party, for example different machine operators, the machine manufacturer, the sensor provider, all involved, each with data they cannot or IP they do not want share. That’s where FHE becomes truly useful and more than an additional layer of protection by enabling collaborations that were simply not possible before.
- sambejk 3mo agoI think calculator is not part of the labels in cifar-10. Pretty normal as it has ‘only’ 90% accuracy. Things could improve quickly though
- jcs 3mo agoThat 90% only measures images already known to be one of CIFAR-10’s ten classes. There is no “none of the above,” so even a perfect benchmark score would still force a calculator into one of those labels.
- Eduard 3mo agoyep: https://en.wikipedia.org/wiki/CIFAR-10 https://en.wikipedia.org/wiki/CIFAR-10 "The 10 different classes represent airplanes, cars, birds, cats, deer, dogs, frogs, horses, ships, and trucks."