Research Article

Inversion Attacks against CNN Models Based on Timing Attack

Table 11

Comparison with different algorithms.

FactorsTraditional inverse algorithmOur inverse algorithm

Attack sceneContactNoncontact
White box100%100%
Gray box≥ 82%≥ 90%
Black box≥ 70%≥ 78%
Complexity≥ O (N)O (N)