-
Constructing Optimal Noise Channels for Enhanced Robustness in Quantum Machine Learning
Authors:
David Winderl,
Nicola Franco,
Jeanette Miriam Lorenz
Abstract:
With the rapid advancement of Quantum Machine Learning (QML), the critical need to enhance security measures against adversarial attacks and protect QML models becomes increasingly evident. In this work, we outline the connection between quantum noise channels and differential privacy (DP), by constructing a family of noise channels which are inherently $ε$-DP: $(α, γ)$-channels. Through this appr…
▽ More
With the rapid advancement of Quantum Machine Learning (QML), the critical need to enhance security measures against adversarial attacks and protect QML models becomes increasingly evident. In this work, we outline the connection between quantum noise channels and differential privacy (DP), by constructing a family of noise channels which are inherently $ε$-DP: $(α, γ)$-channels. Through this approach, we successfully replicate the $ε$-DP bounds observed for depolarizing and random rotation channels, thereby affirming the broad generality of our framework. Additionally, we use a semi-definite program to construct an optimally robust channel. In a small-scale experimental evaluation, we demonstrate the benefits of using our optimal noise channel over depolarizing noise, particularly in enhancing adversarial accuracy. Moreover, we assess how the variables $α$ and $γ$ affect the certifiable robustness and investigate how different encoding methods impact the classifier's robustness.
△ Less
Submitted 25 April, 2024;
originally announced April 2024.
-
Predominant Aspects on Security for Quantum Machine Learning: Literature Review
Authors:
Nicola Franco,
Alona Sakhnenko,
Leon Stolpmann,
Daniel Thuerck,
Fabian Petsch,
Annika Rüll,
Jeanette Miriam Lorenz
Abstract:
Quantum Machine Learning (QML) has emerged as a promising intersection of quantum computing and classical machine learning, anticipated to drive breakthroughs in computational tasks. This paper discusses the question which security concerns and strengths are connected to QML by means of a systematic literature review. We categorize and review the security of QML models, their vulnerabilities inher…
▽ More
Quantum Machine Learning (QML) has emerged as a promising intersection of quantum computing and classical machine learning, anticipated to drive breakthroughs in computational tasks. This paper discusses the question which security concerns and strengths are connected to QML by means of a systematic literature review. We categorize and review the security of QML models, their vulnerabilities inherent to quantum architectures, and the mitigation strategies proposed. The survey reveals that while QML possesses unique strengths, it also introduces novel attack vectors not seen in classical systems. We point out specific risks, such as cross-talk in superconducting systems and forced repeated shuttle operations in ion-trap systems, which threaten QML's reliability. However, approaches like adversarial training, quantum noise exploitation, and quantum differential privacy have shown potential in enhancing QML robustness. Our review discuss the need for continued and rigorous research to ensure the secure deployment of QML in real-world applications. This work serves as a foundational reference for researchers and practitioners aiming to navigate the security aspects of QML.
△ Less
Submitted 19 April, 2024; v1 submitted 15 January, 2024;
originally announced January 2024.
-
Quantum Optimization: Potential, Challenges, and the Path Forward
Authors:
Amira Abbas,
Andris Ambainis,
Brandon Augustino,
Andreas Bärtschi,
Harry Buhrman,
Carleton Coffrin,
Giorgio Cortiana,
Vedran Dunjko,
Daniel J. Egger,
Bruce G. Elmegreen,
Nicola Franco,
Filippo Fratini,
Bryce Fuller,
Julien Gacon,
Constantin Gonciulea,
Sander Gribling,
Swati Gupta,
Stuart Hadfield,
Raoul Heese,
Gerhard Kircher,
Thomas Kleinert,
Thorsten Koch,
Georgios Korpas,
Steve Lenk,
Jakub Marecek
, et al. (21 additional authors not shown)
Abstract:
Recent advances in quantum computers are demonstrating the ability to solve problems at a scale beyond brute force classical simulation. As such, a widespread interest in quantum algorithms has developed in many areas, with optimization being one of the most pronounced domains. Across computer science and physics, there are a number of algorithmic approaches, often with little linkage. This is fur…
▽ More
Recent advances in quantum computers are demonstrating the ability to solve problems at a scale beyond brute force classical simulation. As such, a widespread interest in quantum algorithms has developed in many areas, with optimization being one of the most pronounced domains. Across computer science and physics, there are a number of algorithmic approaches, often with little linkage. This is further complicated by the fragmented nature of the field of mathematical optimization, where major classes of optimization problems, such as combinatorial optimization, convex optimization, non-convex optimization, and stochastic extensions, have devoted communities. With these aspects in mind, this work draws on multiple approaches to study quantum optimization. Provably exact versus heuristic settings are first explained using computational complexity theory - highlighting where quantum advantage is possible in each context. Then, the core building blocks for quantum optimization algorithms are outlined to subsequently define prominent problem classes and identify key open questions that, if answered, will advance the field. The effects of scaling relevant problems on noisy quantum devices are also outlined in detail, alongside meaningful benchmarking problems. We underscore the importance of benchmarking by proposing clear metrics to conduct appropriate comparisons with classical optimization techniques. Lastly, we highlight two domains - finance and sustainability - as rich sources of optimization problems that could be used to benchmark, and eventually validate, the potential real-world impact of quantum optimization.
△ Less
Submitted 4 December, 2023;
originally announced December 2023.
-
Quantum Neural Networks under Depolarization Noise: Exploring White-Box Attacks and Defenses
Authors:
David Winderl,
Nicola Franco,
Jeanette Miriam Lorenz
Abstract:
Leveraging the unique properties of quantum mechanics, Quantum Machine Learning (QML) promises computational breakthroughs and enriched perspectives where traditional systems reach their boundaries. However, similarly to classical machine learning, QML is not immune to adversarial attacks. Quantum adversarial machine learning has become instrumental in highlighting the weak points of QML models wh…
▽ More
Leveraging the unique properties of quantum mechanics, Quantum Machine Learning (QML) promises computational breakthroughs and enriched perspectives where traditional systems reach their boundaries. However, similarly to classical machine learning, QML is not immune to adversarial attacks. Quantum adversarial machine learning has become instrumental in highlighting the weak points of QML models when faced with adversarial crafted feature vectors. Diving deep into this domain, our exploration shines light on the interplay between depolarization noise and adversarial robustness. While previous results enhanced robustness from adversarial threats through depolarization noise, our findings paint a different picture. Interestingly, adding depolarization noise discontinued the effect of providing further robustness for a multi-class classification scenario. Consolidating our findings, we conducted experiments with a multi-class classifier adversarially trained on gate-based quantum simulators, further elucidating this unexpected behavior.
△ Less
Submitted 21 December, 2023; v1 submitted 29 November, 2023;
originally announced November 2023.
-
Efficient MILP Decomposition in Quantum Computing for ReLU Network Robustness
Authors:
Nicola Franco,
Tom Wollschläger,
Benedikt Poggel,
Stephan Günnemann,
Jeanette Miriam Lorenz
Abstract:
Emerging quantum computing technologies, such as Noisy Intermediate-Scale Quantum (NISQ) devices, offer potential advancements in solving mathematical optimization problems. However, limitations in qubit availability, noise, and errors pose challenges for practical implementation. In this study, we examine two decomposition methods for Mixed-Integer Linear Programming (MILP) designed to reduce the…
▽ More
Emerging quantum computing technologies, such as Noisy Intermediate-Scale Quantum (NISQ) devices, offer potential advancements in solving mathematical optimization problems. However, limitations in qubit availability, noise, and errors pose challenges for practical implementation. In this study, we examine two decomposition methods for Mixed-Integer Linear Programming (MILP) designed to reduce the original problem size and utilize available NISQ devices more efficiently. We concentrate on breaking down the original problem into smaller subproblems, which are then solved iteratively using a combined quantum-classical hardware approach. We conduct a detailed analysis for the decomposition of MILP with Benders and Dantzig-Wolfe methods. In our analysis, we show that the number of qubits required to solve Benders is exponentially large in the worst-case, while remains constant for Dantzig-Wolfe. Additionally, we leverage Dantzig-Wolfe decomposition on the use-case of certifying the robustness of ReLU networks. Our experimental results demonstrate that this approach can save up to 90\% of qubits compared to existing methods on quantum annealing and gate-based quantum computers.
△ Less
Submitted 11 October, 2023; v1 submitted 30 April, 2023;
originally announced May 2023.
-
A Comparative Study On Solving Optimization Problems With Exponentially Fewer Qubits
Authors:
David Winderl,
Nicola Franco,
Jeanette Miriam Lorenz
Abstract:
Variational Quantum optimization algorithms, such as the Variational Quantum Eigensolver (VQE) or the Quantum Approximate Optimization Algorithm (QAOA), are among the most studied quantum algorithms. In our work, we evaluate and improve an algorithm based on VQE, which uses exponentially fewer qubits compared to the QAOA. We highlight the numerical instabilities generated by encoding the problem i…
▽ More
Variational Quantum optimization algorithms, such as the Variational Quantum Eigensolver (VQE) or the Quantum Approximate Optimization Algorithm (QAOA), are among the most studied quantum algorithms. In our work, we evaluate and improve an algorithm based on VQE, which uses exponentially fewer qubits compared to the QAOA. We highlight the numerical instabilities generated by encoding the problem into the variational ansatz and propose a classical optimization procedure to find the ground-state of the ansatz in less iterations with a better or similar objective. Furthermore, we compare classical optimizers for this variational ansatz on quadratic unconstrained binary optimization and graph partitioning problems.
△ Less
Submitted 21 October, 2022;
originally announced October 2022.
-
Quantum Robustness Verification: A Hybrid Quantum-Classical Neural Network Certification Algorithm
Authors:
Nicola Franco,
Tom Wollschlaeger,
Nicholas Gao,
Jeanette Miriam Lorenz,
Stephan Guennemann
Abstract:
In recent years, quantum computers and algorithms have made significant progress indicating the prospective importance of quantum computing (QC). Especially combinatorial optimization has gained a lot of attention as an application field for near-term quantum computers, both by using gate-based QC via the Quantum Approximate Optimization Algorithm and by quantum annealing using the Ising model. Ho…
▽ More
In recent years, quantum computers and algorithms have made significant progress indicating the prospective importance of quantum computing (QC). Especially combinatorial optimization has gained a lot of attention as an application field for near-term quantum computers, both by using gate-based QC via the Quantum Approximate Optimization Algorithm and by quantum annealing using the Ising model. However, demonstrating an advantage over classical methods in real-world applications remains an active area of research. In this work, we investigate the robustness verification of ReLU networks, which involves solving a many-variable mixed-integer programs (MIPs), as a practical application. Classically, complete verification techniques struggle with large networks as the combinatorial space grows exponentially, implying that realistic networks are difficult to be verified by classical methods. To alleviate this issue, we propose to use QC for neural network verification and introduce a hybrid quantum procedure to compute provable certificates. By applying Benders decomposition, we split the MIP into a quadratic unconstrained binary optimization and a linear program which are solved by quantum and classical computers, respectively. We further improve existing hybrid methods based on the Benders decomposition by reducing the overall number of iterations and placing a limit on the maximum number of qubits required. We show that, in a simulated environment, our certificate is sound, and provide bounds on the minimum number of qubits necessary to approximate the problem. Finally, we evaluate our method within simulation and on quantum hardware.
△ Less
Submitted 12 August, 2022; v1 submitted 2 May, 2022;
originally announced May 2022.
-
Physical models from noncommutative causality
Authors:
Nicolas Franco
Abstract:
We introduced few years ago a new notion of causality for noncommutative spacetimes directly related to the Dirac operator and the concept of Lorentzian spectral triple. In this paper, we review in a non-technical way the noncommutative causal structure of many toy models as almost commutative spacetimes and the Moyal-Weyl spacetime. We show that those models present some unexpected physical inter…
▽ More
We introduced few years ago a new notion of causality for noncommutative spacetimes directly related to the Dirac operator and the concept of Lorentzian spectral triple. In this paper, we review in a non-technical way the noncommutative causal structure of many toy models as almost commutative spacetimes and the Moyal-Weyl spacetime. We show that those models present some unexpected physical interpretations as a geometrical explanation of the Zitterbewegung trembling motion of a fermion as well as some geometrical constraints on translations and energy jumps of wave packets on the Moyal spacetime.
△ Less
Submitted 14 November, 2017;
originally announced November 2017.
-
The noncommutative geometry of Zitterbewegung
Authors:
Michał Eckstein,
Nicolas Franco,
Tomasz Miller
Abstract:
Based on the mathematics of noncommutative geometry, we model a 'classical' Dirac fermion propagating in a curved spacetime. We demonstrate that the inherent causal structure of the model encodes the possibility of Zitterbewegung - the 'trembling motion' of the fermion. We recover the well-known frequency of Zitterbewegung as the highest possible speed of change in the fermion's 'internal space'.…
▽ More
Based on the mathematics of noncommutative geometry, we model a 'classical' Dirac fermion propagating in a curved spacetime. We demonstrate that the inherent causal structure of the model encodes the possibility of Zitterbewegung - the 'trembling motion' of the fermion. We recover the well-known frequency of Zitterbewegung as the highest possible speed of change in the fermion's 'internal space'. Furthermore, we show that the latter does not change in the presence of an external electromagnetic field and derive its explicit analogue when the mass parameter is promoted to a Higgs-like field. We discuss a table-top experiment in the domain of quantum simulation to test the predictions of the model and outline the consequences of our model for quantum gauge theories.
△ Less
Submitted 31 October, 2016;
originally announced October 2016.