Episode 246: Adversarial Machine Learning Research with Florian Tramèr - a podcast by Fredrik Harrysson, Anna Rose

from 2022-09-21T15:00

:: ::

This week, Anna (https://twitter.com/annarrose) and Tarun (https://twitter.com/tarunchitra) chat with Florian Tramèr (https://twitter.com/florian_tramer), Assistant Professor at ETH Zurich (https://ethz.ch/en.html). They discuss his earlier work on side channel attacks on privacy blockchains, as well as his academic focus on Machine Learning (ML) and adversarial research. They define some key ML terms, tease out some of the nuances of ML training and models, chat zkML and other privacy environments where ML can be trained, and look at why the security around ML will be important as these models become increasingly used in production.
Here are some additional links for this episode:* Episode 228: Catch-up at DevConnect AMS with Tarun, Guillermo and Brendan (https://zeroknowledge.fm/228a/)
* Florian Tramèr’s Github (https://github.com/ftramer)* Florian Tramèr’s Publications&Papers (https://floriantramer.com/publications/)
* ETH Zurich (https://ethz.ch/en.html)* Single Secret Leader Election by Dan Boneh, Saba Eskandarian, Lucjan Hanzlik, and Nicola Greco (https://eprint.iacr.org/2020/025)
* GasToken: A Journey Through Blockchain Resource Arbitrage by Tramèr, Daian, Breidenbach and Juels (https://floriantramer.com/docs/slides/CESC18gastoken.pdf)* Enter the Hydra: Towards Principled Bug Bounties and Exploit-Resistant Smart Contracts by Tramèr, Daian, Breidenbach and Juels (https://eprint.iacr.org/2017/1090)
* Ronin Bridge Hack – Community Alert: Ronin Validators Compromised (https://roninblockchain.substack.com/p/community-alert-ronin-validators?s=w)* InstaHide: Instance-hiding Schemes for Private Distributed Learning, Huang et al. 2020. (https://arxiv.org/abs/2010.02772)
* Is Private Learning Possible with Instance Encoding? (https://arxiv.org/abs/2011.05315)* OpenAI's GPT-3 model (https://openai.com/api/)
* OpenAI's GPT-2 model (https://openai.com/blog/tags/gpt-2/)* OpenAI's GPT-2 model (https://openai.com/blog/tags/gpt-2/)* The Part-Time Parliament, Lamport, 1998. (https://lamport.azurewebsites.net/pubs/lamport-paxos.pdf)
* You Autocomplete Me: Poisoning Vulnerabilities in Neural Code Completion (https://arxiv.org/abs/2007.02220)ZK Whiteboard Sessions (https://zkhack.dev/whiteboard/) – as part of ZK Hack and powered by Polygon – a new series of educational videos that will help you get onboarded into the concepts and terms that we talk about on the ZK front.
ZK Jobs Board (https://jobsboard.zeroknowledge.fm/) – has a fresh batch of open roles from ZK-focused projects. Find your next opportunity working in ZK!Today’s episode is sponsored by Mina Protocol (https://minaprotocol.com/).
With Mina’s zero knowledge smart contracts – or zkApps – developers can create apps that offer privacy, security, and verifiability for your users.Head to minaprotocol.com/zkpodcast (http://minaprotocol.com/zkpodcast) to learn about their developer bootcamps and open grants.
If you like what we do:* Find all our links here! @ZeroKnowledge | Linktree (https://linktr.ee/zeroknowledge)
* Subscribe to our podcast newsletter (https://zeroknowledge.substack.com)* Follow us on Twitter @zeroknowledgefm (https://twitter.com/zeroknowledgefm)
* Join us on Telegram (https://zeroknowledge.fm/telegram)* Catch us on Youtube (https://zeroknowledge.fm/)
* Head to the ZK Community Forum (https://community.zeroknowledge.fm/)* Support our Gitcoin Grant (https://zeroknowledge.fm/gitcoin-grant-329-zkp-2)

Further episodes of Zero Knowledge

Further podcasts by Fredrik Harrysson, Anna Rose

Website of Fredrik Harrysson, Anna Rose