Adversarial Attacks on Deep-Learning RF Classification in Spectrum Monitoring with Imperfect Bandwidth Estimation

被引:1
|
作者
Chew, Daniel [1 ]
Barcklow, Daniel [1 ]
Baumgart, Chris [1 ]
Cooper, A. Brinton [2 ]
机构
[1] Johns Hopkins Univ, Appl Phys Lab, Baltimore, MD 21218 USA
[2] Johns Hopkins Univ, Elect & Comp Engn, Baltimore, MD 21218 USA
关键词
Spectrum Monitoring; Modulation Classification; Adversarial Attacks; Deep Learning;
D O I
10.1109/WCNC51071.2022.9771571
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In a spectrum-monitoring scenario, a monitor will attempt to intercept and classify a signal. If the monitor uses a Convolutional Neural Network (CNN) for classification, the intercepted signal can frustrate classification attempts by employing an adversarial waveform. An adversarial waveform is a small additive perturbation at the transmitter, and is generated similarly to adversarial attacks against image classifiers. We demonstrate that without foreknowledge of the CNN employed at the monitor the communication system can develop such an adversarial waveform and deploy it thus transferring the attack. The adversarial waveform is created by constraining the signal-to-interference ratio at the transmitter, which has the dual benefits of making the adversarial waveform easy to deploy and mitigates impairment to the communications link. We also demonstrate the vulnerability of a spectrum monitoring system to this type of attack as a function of symbol rate uncertainty, where the monitor does not have an exact estimate of the symbol rate employed by the communications link. The spectrum monitor becomes more susceptible to the attack as bandwidth is increased.
引用
收藏
页码:1152 / 1157
页数:6
相关论文
共 50 条
  • [41] Challenges and Countermeasures for Adversarial Attacks on Deep Reinforcement Learning
    Ilahi, Inaam
    Usama, Muhammad
    Qadir, Junaid
    Janjua, Muhammad Umar
    Al-Fuqaha, Ala
    Hoang, Dinh Thai
    Niyato, Dusit
    [J]. IEEE Transactions on Artificial Intelligence, 2022, 3 (02): : 90 - 109
  • [42] Understanding adversarial attacks on observations in deep reinforcement learning
    You QIAOBEN
    Chengyang YING
    Xinning ZHOU
    Hang SU
    Jun ZHU
    Bo ZHANG
    [J]. Science China(Information Sciences), 2024, 67 (05) : 69 - 83
  • [43] Understanding adversarial attacks on observations in deep reinforcement learning
    You, Qiaoben
    Ying, Chengyang
    Zhou, Xinning
    Su, Hang
    Zhu, Jun
    Zhang, Bo
    [J]. SCIENCE CHINA-INFORMATION SCIENCES, 2024, 67 (05)
  • [44] Adversarial Robustness in Deep Learning: Attacks on Fragile Neurons
    Pravin, Chandresh
    Martino, Ivan
    Nicosia, Giuseppe
    Ojha, Varun
    [J]. ARTIFICIAL NEURAL NETWORKS AND MACHINE LEARNING - ICANN 2021, PT I, 2021, 12891 : 16 - 28
  • [45] Defending Deep Learning Models Against Adversarial Attacks
    Mani, Nag
    Moh, Melody
    Moh, Teng-Sheng
    [J]. INTERNATIONAL JOURNAL OF SOFTWARE SCIENCE AND COMPUTATIONAL INTELLIGENCE-IJSSCI, 2021, 13 (01): : 72 - 89
  • [46] Deep Learning Defense Method Against Adversarial Attacks
    Wang, Ling
    Zhang, Cheng
    Liu, Jie
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2020, : 3667 - 3671
  • [47] Adversarial attacks on deep learning models in smart grids
    Hao, Jingbo
    Tao, Yang
    [J]. ENERGY REPORTS, 2022, 8 : 123 - 129
  • [48] MASSIF: Interactive Interpretation of Adversarial Attacks on Deep Learning
    Das, Nilaksh
    Park, Haekyu
    Wang, Zijie J.
    Hohman, Fred
    Firstman, Robert
    Rogers, Emily
    Chau, Duen Horng
    [J]. CHI'20: EXTENDED ABSTRACTS OF THE 2020 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS, 2020,
  • [49] Robustness and Security in Deep Learning: Adversarial Attacks and Countermeasures
    Kaur, Navjot
    Singh, Someet
    Deore, Shailesh Shivaji
    Vidhate, Deepak A.
    Haridas, Divya
    Kosuri, Gopala Varma
    Kolhe, Mohini Ravindra
    [J]. JOURNAL OF ELECTRICAL SYSTEMS, 2024, 20 (03) : 1250 - 1257
  • [50] Cervical cell classification with deep-learning algorithms
    Laixiang Xu
    Fuhong Cai
    Yanhu Fu
    Qian Liu
    [J]. Medical & Biological Engineering & Computing, 2023, 61 : 821 - 833