Crosstalk-induced Side Channel Threats in Multi-Tenant NISQ Computers

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Choudhury, Navnil, Mude, Chaithanya Naik, Das, Sanjay, Tikkireddi, Preetham Chandra, Tannu, Swamit, Basu, Kanad
Format: Preprint
Published: 2024
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866910744943001600
author Choudhury, Navnil
Mude, Chaithanya Naik
Das, Sanjay
Tikkireddi, Preetham Chandra
Tannu, Swamit
Basu, Kanad
author_facet Choudhury, Navnil
Mude, Chaithanya Naik
Das, Sanjay
Tikkireddi, Preetham Chandra
Tannu, Swamit
Basu, Kanad
contents As quantum computing rapidly advances, its near-term applications are becoming increasingly evident. However, the high cost and under-utilization of quantum resources are prompting a shift from single-user to multi-user access models. In a multi-tenant environment, where multiple users share one quantum computer, protecting user confidentiality becomes crucial. The varied uses of quantum computers increase the risk that sensitive data encoded by one user could be compromised by others, rendering the protection of data integrity and confidentiality essential. In the evolving quantum computing landscape, it is imperative to study these security challenges within the scope of realistic threat model assumptions, wherein an adversarial user can mount practical attacks without relying on any heightened privileges afforded by physical access to a quantum computer or rogue cloud services. In this paper, we demonstrate the potential of crosstalk as an attack vector for the first time on a Noisy Intermediate Scale Quantum (NISQ) machine, that an adversarial user can exploit within a multi-tenant quantum computing model. The proposed side-channel attack is conducted with minimal and realistic adversarial privileges, with the overarching aim of uncovering the quantum algorithm being executed by a victim. Crosstalk signatures are used to estimate the presence of CNOT gates in the victim circuit, and subsequently, this information is encoded and classified by a graph-based learning model to identify the victim quantum algorithm. When evaluated on up to 336 benchmark circuits, our attack framework is found to be able to unveil the victim's quantum algorithm with up to 85.7\% accuracy.
format Preprint
id arxiv_https___arxiv_org_abs_2412_10507
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Crosstalk-induced Side Channel Threats in Multi-Tenant NISQ Computers
Choudhury, Navnil
Mude, Chaithanya Naik
Das, Sanjay
Tikkireddi, Preetham Chandra
Tannu, Swamit
Basu, Kanad
Emerging Technologies
As quantum computing rapidly advances, its near-term applications are becoming increasingly evident. However, the high cost and under-utilization of quantum resources are prompting a shift from single-user to multi-user access models. In a multi-tenant environment, where multiple users share one quantum computer, protecting user confidentiality becomes crucial. The varied uses of quantum computers increase the risk that sensitive data encoded by one user could be compromised by others, rendering the protection of data integrity and confidentiality essential. In the evolving quantum computing landscape, it is imperative to study these security challenges within the scope of realistic threat model assumptions, wherein an adversarial user can mount practical attacks without relying on any heightened privileges afforded by physical access to a quantum computer or rogue cloud services. In this paper, we demonstrate the potential of crosstalk as an attack vector for the first time on a Noisy Intermediate Scale Quantum (NISQ) machine, that an adversarial user can exploit within a multi-tenant quantum computing model. The proposed side-channel attack is conducted with minimal and realistic adversarial privileges, with the overarching aim of uncovering the quantum algorithm being executed by a victim. Crosstalk signatures are used to estimate the presence of CNOT gates in the victim circuit, and subsequently, this information is encoded and classified by a graph-based learning model to identify the victim quantum algorithm. When evaluated on up to 336 benchmark circuits, our attack framework is found to be able to unveil the victim's quantum algorithm with up to 85.7\% accuracy.
title Crosstalk-induced Side Channel Threats in Multi-Tenant NISQ Computers
topic Emerging Technologies
url https://arxiv.org/abs/2412.10507