The UML class diagram visualizes a threat model with 3 threats, determined from the conducted systematic literature review, which target the model parameters for the initial compromise. The compromise of the model parameters is conducted either through “Processing hardware running the ML model” or by targeting the “Machine learning model” itself.
Model parameters: integral components of a model, internal variables, critical to its operation and utility. In the context of the work, the following components are considered as model parameters: layers, type of activation function, layer connections, parameters, weights. The values of parameters are adjusted during the training