Research Article
Inversion Attacks against CNN Models Based on Timing Attack
Table 11
Comparison with different algorithms.
| Factors | Traditional inverse algorithm | Our inverse algorithm |
| Attack scene | Contact | Noncontact | White box | 100% | 100% | Gray box | ≥ 82% | ≥ 90% | Black box | ≥ 70% | ≥ 78% | Complexity | ≥ O (N) | O (N) |
|
|