Adversarial attacks on cooperative multi-agent deep reinforcement learning: a dynamic group-based adversarial example transferability method

被引:2
|
作者
Zan, Lixia [1 ]
Zhu, Xiangbin [1 ]
Hu, Zhao-Long [1 ]
机构
[1] Zhejiang Normal Univ, Coll Math & Comp Sci, Jinhua, Zhejiang, Peoples R China
基金
中国国家自然科学基金;
关键词
Multi-agent reinforcement learning; Adversarial attack; Dynamic grouping; Transfer attack; Attack efficiency; ROBUSTNESS;
D O I
10.1007/s40747-023-01145-w
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Existing research shows that cooperative multi-agent deep reinforcement learning (c-MADRL) is vulnerable to adversarial attacks, and c-MADRL is increasingly being applied to safety-critical domains. However, the robustness of c-MADRL against adversarial attacks has not been fully studied. In the setting of c-MADRL, unlike the single-agent scenario, an adversary can attack multiple agents or all agents at each time step, but the attacker needs more computation to generate adversarial examples and will be more easily detected. Therefore, how the attacker chooses one or several agents instead of all agents to attack is a significant issue in the setting of c-MADRL. Aiming to address this issue, this paper proposes a novel adversarial attack approach, which dynamically groups the agents according to relevant features and selects a group to attack based on the group's contribution to the overall reward, thus effectively reducing the cost and number of attacks, as well as improving attack efficiency and decreasing the chance of attackers being detected. Moreover, we exploit the transferability of adversarial examples to greatly reduce the computational cost of generating adversarial examples. Our method is tested in multi-agent particle environments (MPE) and in StarCraft II. Experimental results demonstrate that our proposed method can effectively degrade the performance of multi-agent deep reinforcement learning algorithms with fewer attacks and lower computational costs.
引用
收藏
页码:7439 / 7450
页数:12
相关论文
共 50 条
  • [1] Adversarial attacks on cooperative multi-agent deep reinforcement learning: a dynamic group-based adversarial example transferability method
    Lixia Zan
    Xiangbin Zhu
    Zhao-Long Hu
    [J]. Complex & Intelligent Systems, 2023, 9 : 7439 - 7450
  • [2] Adversarial attacks in consensus-based multi-agent reinforcement learning
    Figura, Martin
    Kosaraju, Krishna Chaitanya
    Gupta, Vijay
    [J]. 2021 AMERICAN CONTROL CONFERENCE (ACC), 2021, : 3050 - 3055
  • [3] Towards Secure Multi-Agent Deep Reinforcement Learning: Adversarial Attacks and Countermeasures
    Zheng, Changgang
    Zhen, Chen
    Xie, Haiyong
    Yang, Shufan
    [J]. 2022 5TH IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (IEEE DSC 2022), 2022,
  • [4] Efficient Adversarial Attacks on Online Multi-agent Reinforcement Learning
    Liu, Guanlin
    Lai, Lifeng
    [J]. ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 36 (NEURIPS 2023), 2023,
  • [5] XSS adversarial example attacks based on deep reinforcement learning
    Chen, Li
    Tang, Cong
    He, Junjiang
    Zhao, Hui
    Lan, Xiaolong
    Li, Tao
    [J]. COMPUTERS & SECURITY, 2022, 120
  • [6] Multi-Agent Adversarial Inverse Reinforcement Learning
    Yu, Lantao
    Song, Jiaming
    Ermon, Stefano
    [J]. INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 97, 2019, 97
  • [7] Learning Cooperative Behaviours in Adversarial Multi-agent Systems
    Wang, Ni
    Das, Gautham P.
    Millard, Alan G.
    [J]. TOWARDS AUTONOMOUS ROBOTIC SYSTEMS, TAROS 2022, 2022, 13546 : 179 - 189
  • [8] Coordination in Adversarial Multi-Agent with Deep Reinforcement Learning under Partial Observability
    Diallo, Elhadji Amadou Oury
    Sugawara, Toshiharu
    [J]. 2019 IEEE 31ST INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2019), 2019, : 198 - 205
  • [9] Adversarial Attacks On Multi-Agent Communication
    Tu, James
    Wang, Tsunhsuan
    Wang, Jingkang
    Manivasagam, Sivabalan
    Ren, Mengye
    Urtasun, Raquel
    [J]. 2021 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION (ICCV 2021), 2021, : 7748 - 7757
  • [10] Adversarial Attacks on Heterogeneous Multi-Agent Deep Reinforcement Learning System with Time-Delayed Data Transmission
    Fard, Neshat Elhami
    Selmic, Rastko R.
    [J]. JOURNAL OF SENSOR AND ACTUATOR NETWORKS, 2022, 11 (03)