Title
Attacking a CNN-based Layout Hotspot Detector Using Group Gradient Method
Abstract
ABSTRACTDeep neural networks are being used in disparate VLSI design automation tasks, including layout printability estimation, mask optimization, and routing congestion analysis. Preliminary results show the power of deep learning as an alternate solution in state-of-the-art design and sign-off flows. However, deep learning is vulnerable to adversarial attacks. In this paper, we examine the risk of state-of-the-art deep learning-based layout hotspot detectors under practical attack scenarios. We show that legacy gradient-based attacks do not adequately consider the design rule constraints. We present an innovative adversarial attack formulation to attack the layout clips and propose a fast group gradient method to solve it. Experiments show that the attack can deceive the deep neural networks using small perturbations in clips which preserve layout functionality while meeting the design rules. The source code is available at https://github.com/phdyang007/dlhsd/tree/dct_as_conv.
Year
DOI
Venue
2021
10.1145/3394885.3431571
Asia and South Pacific Design Automation Conference
DocType
ISSN
Citations 
Conference
2153-6961
0
PageRank 
References 
Authors
0.34
0
9
Name
Order
Citations
PageRank
Haoyu Yang16011.51
Shifan Zhang200.34
Kang Liu381.57
Siting Liu400.68
Benjamin Tan553.58
Ramesh Karri62968224.90
Siddharth Garg701.01
Bei Yu865674.07
Evangeline F. Y. Young999583.54