{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,24]],"date-time":"2026-02-24T22:55:27Z","timestamp":1771973727909,"version":"3.50.1"},"reference-count":56,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,3,31]],"date-time":"2025-03-31T00:00:00Z","timestamp":1743379200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,3,31]],"date-time":"2025-03-31T00:00:00Z","timestamp":1743379200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["2228028"],"award-info":[{"award-number":["2228028"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,3,31]]},"DOI":"10.23919\/date64628.2025.10993193","type":"proceedings-article","created":{"date-parts":[[2025,5,21]],"date-time":"2025-05-21T17:36:35Z","timestamp":1747848995000},"page":"1-7","source":"Crossref","is-referenced-by-count":1,"title":["Compromising the Intelligence of Modern DNNs: On the Effectiveness of Targeted RowPress"],"prefix":"10.23919","author":[{"given":"Ranyang","family":"Zhou","sequence":"first","affiliation":[{"name":"New Jersey Institute of Technology,Department of Electrical and Computer Engineering,Newark,NJ,USA"}]},{"given":"Jacqueline T.","family":"Liu","sequence":"additional","affiliation":[{"name":"State University of New York,Department of Computer Science,Binghamton,NY,USA"}]},{"given":"Sabbir","family":"Ahmed","sequence":"additional","affiliation":[{"name":"State University of New York,Department of Computer Science,Binghamton,NY,USA"}]},{"given":"Shaahin","family":"Angizi","sequence":"additional","affiliation":[{"name":"New Jersey Institute of Technology,Department of Electrical and Computer Engineering,Newark,NJ,USA"}]},{"given":"Adnan Siraj","family":"Rakin","sequence":"additional","affiliation":[{"name":"State University of New York,Department of Computer Science,Binghamton,NY,USA"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2016.90"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/TITS.2020.3048878"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/taslp.2017.2756440"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3048047"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2909068"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.1706.06083"},{"key":"ref7","article-title":"Deephammer: Depleting the intelligence of deep neural networks through targeted chain of bit flips","author":"Yao","year":"2020","journal-title":"{USENIX} Security"},{"key":"ref8","first-page":"497","article-title":"Terminal brain damage: Exposing the graceless degradation in deep neural networks under hardware fault attacks","author":"Hong","year":"2019","journal-title":"USENIX"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2019.00130"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR42600.2020.01321"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00762"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/2678373.2665726"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA.2018.00057"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/IRPS48227.2022.9764591"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/LCA.2014.2332177"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3470496.3527421"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1145\/3579371.3589063"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/3566097.3568350"},{"key":"ref19","first-page":"1","article-title":"Red-lut: Reconfigurable in-dram luts enabling massive parallel computation","volume-title":"Proceedings of the 41st IEEE\/ACM International Conference on Computer-Aided Design","author":"Zhou","year":"2022"},{"key":"ref20","first-page":"71","article-title":"Exploiting the dram rowhammer bug to gain kernel privileges","volume":"15","author":"Seaborn","year":"2015","journal-title":"Black Hat"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSPW51379.2020.00102"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00031"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00090"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833664"},{"key":"ref25","author":"Zhou","year":"2023","journal-title":"Dnn-defender: An in-dram deep neural network defense mechanism for adversarial weight attack"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3466752.3480110"},{"key":"ref27","first-page":"110","article-title":"Panopticon: A complete in-dram rowhammer mitigation","volume":"22","author":"Bennett","year":"2021","journal-title":"DRAMSec"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3307650.3322232"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO50266.2020.00014"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA53966.2022.00088"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/lca.2016.2614497"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833743"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA52012.2021.00078"},{"key":"ref34","first-page":"1919","article-title":"Deep-dup: An adversarial weight duplication attack framework to crush deep neural network in multi-tenant fpga","author":"Rakin","year":"2021","journal-title":"USENIX Security"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/TPAMI.2023.3296408"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/ICMLA.2015.152"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00020"},{"key":"ref38","first-page":"565","article-title":"Drama: Exploiting dram addressing for cross-cpu attacks","volume-title":"25th USENIX security symposium (USENIX security 16)","author":"Pessl","year":"2016"},{"key":"ref39","first-page":"697","article-title":"Zebram: Comprehensive and compatible software protection against rowhammer attacks","author":"Konoth","year":"2018","journal-title":"USENIX"},{"key":"ref40","first-page":"2003","article-title":"Cache telepathy: Leveraging shared resource attacks to learn dnn architectures","volume-title":"29th USENIX Security Symposium","author":"Yan"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1109\/TCSII.2020.2973007"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/HOST45689.2020.9300274"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1016\/j.micpro.2019.102942"},{"key":"ref44","article-title":"Blaster: Characterizing the blast radius of rowhammer","author":"Lang","year":"2023","journal-title":"3rd Workshop on DRAM Security (DRAMSec) co-located with ISCA 2023"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TCAD.2023.3282172"},{"key":"ref46","volume-title":"xilinx alveo u200 fpga board","year":"2021"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1145\/2508148.2485928"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV.2015.123"},{"key":"ref50","author":"Krizhevsky","year":"2010","journal-title":"Cifar-10 (canadian institute for advanced research)"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR.2009.5206848"},{"key":"ref52","first-page":"10 347","article-title":"Training data-efficient image transformers & distillation through attention","volume-title":"International conference on machine learning","author":"Touvron","year":"2021"},{"key":"ref53","author":"Liu","year":"2024","journal-title":"Vmamba: Visual state space model"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/ICASSP.2017.7952190"},{"key":"ref55","author":"Warden","year":"2018","journal-title":"Speech commands: A dataset for limited-vocabulary speech recognition"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/ICCV48922.2021.00774"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52729.2023.01575"}],"event":{"name":"2025 Design, Automation &amp; Test in Europe Conference (DATE)","location":"Lyon, France","start":{"date-parts":[[2025,3,31]]},"end":{"date-parts":[[2025,4,2]]}},"container-title":["2025 Design, Automation &amp;amp; Test in Europe Conference (DATE)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10992638\/10992588\/10993193.pdf?arnumber=10993193","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,22]],"date-time":"2025-05-22T05:33:07Z","timestamp":1747891987000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10993193\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,3,31]]},"references-count":56,"URL":"https:\/\/doi.org\/10.23919\/date64628.2025.10993193","relation":{},"subject":[],"published":{"date-parts":[[2025,3,31]]}}}