But there's no "source code" here to encrypt. The model in this paper isn't even self-modifying.
The only "source code" are the learned network weights. These are the only parameters that describe the encryption function. You can still run the model forwards or backwards.
We already don't understand neural network weights on an intuitive level. No need to encrypt them. :-)
The only "source code" are the learned network weights. These are the only parameters that describe the encryption function. You can still run the model forwards or backwards.
We already don't understand neural network weights on an intuitive level. No need to encrypt them. :-)