Spatialspectral-Backdoor: Realizing backdoor attack for deep neural networks in brain-computer interface via EEG characteristics

被引:0
|
作者
Li, Fumin [1 ,3 ]
Huang, Mengjie [2 ]
You, Wenlong [1 ,3 ]
Zhu, Longsheng [1 ,3 ]
Cheng, Hanjing [4 ]
Yang, Rui [1 ]
机构
[1] Xian Jiaotong Liverpool Univ, Sch Adv Technol, Suzhou 215123, Peoples R China
[2] Xian Jiaotong Liverpool Univ, Design Sch, Suzhou 215123, Peoples R China
[3] Univ Liverpool, Sch Elect Engn Elect & Comp Sci, Liverpool L69 3BX, England
[4] Suzhou Univ Sci & Technol, Sch Elect & Informat Engn, Suzhou 215009, Peoples R China
基金
中国国家自然科学基金;
关键词
Backdoor attack; Deep neural networks; Brain-computer interfaces; Electroencephalogram;
D O I
10.1016/j.neucom.2024.128902
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In recent years, electroencephalogram (EEG) based on the brain-computer interface (BCI) systems have become increasingly advanced, with researcher using deep neural networks as tools to enhance performance. BCI systems heavily rely on EEG signals for effective human-computer interactions, and deep neural networks show excellent performance in processing and classifying these signals. Nevertheless, the vulnerability to backdoor attack is still a major problem. Backdoor attack is the injection of specially designed triggers into the model training process, which can lead to significant security issues. Therefore, in order to simulate the negative impact of backdoor attack and bridge the research gap in the field of BCI, this paper proposes anew backdoor attack method to call researcher attention to the security issues of BCI. In this paper, Spatialspectral-Backdoor is proposed to effectively attack the BCI system. The method is carefully designed to target the spectral active backdoor attack of the BCI system and includes a multi-channel preference method to select the electrode channels sensitive to the target task. Ultimately, the effectiveness of the comparison and ablation experiments is validated on the publicly available BCI competition datasets. The results show that the average attack success rate and clean sample accuracy of Spatialspectral-Backdoor in the BCI scenario are 97.12% and 85.16%, respectively, compared with other backdoor attack methods. Furthermore, by observing the infection ratio of backdoor triggers and visualization of the feature space, the proposed Spatialspectral-Backdoor outperforms other backdoor attack methods.
引用
收藏
页数:11
相关论文
共 50 条
  • [31] Invisible and Multi-triggers Backdoor Attack Approach on Deep Neural Networks through Frequency Domain
    Sun, Fengxue
    Pei, Bei
    Chen, Guangyong
    2024 9TH INTERNATIONAL CONFERENCE ON SIGNAL AND IMAGE PROCESSING, ICSIP, 2024, : 707 - 711
  • [32] Robot Motion Control via an EEG-Based Brain-Computer Interface by Using Neural Networks and Alpha Brainwaves
    Korovesis, Nikolaos
    Kandris, Dionisis
    Koulouras, Grigorios
    Alexandridis, Alex
    ELECTRONICS, 2019, 8 (12)
  • [33] EEG denoising with a Recurrent Quantum Neural Network for a Brain-Computer Interface
    Gandhi, Vaibhav
    Arora, Vipul
    Behera, Laxmidhar
    Prasad, Girijesh
    Coyle, Damien
    McGinnity, T. M.
    2011 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2011, : 1583 - 1590
  • [34] Appling of Neural Networks to Classification of Brain-Computer Interface Data
    Plechawska-Wojcik, Malgorzata
    Wolszczak, Piotr
    BEYOND DATABASES, ARCHITECTURES AND STRUCTURES, BDAS 2016, 2016, 613 : 485 - 496
  • [35] Deep Residual Convolutional Neural Networks for Brain-Computer Interface to Visualize Neural Processing of Hand Movements in the Human Brain
    Fujiwara, Yosuke
    Ushiba, Junichi
    FRONTIERS IN COMPUTATIONAL NEUROSCIENCE, 2022, 16
  • [36] Siamese Neural Networks for EEG-based Brain-computer Interfaces
    Shahtalebi, Soroosh
    Asif, Amir
    Mohammadi, Arash
    42ND ANNUAL INTERNATIONAL CONFERENCES OF THE IEEE ENGINEERING IN MEDICINE AND BIOLOGY SOCIETY: ENABLING INNOVATIVE TECHNOLOGIES FOR GLOBAL HEALTHCARE EMBC'20, 2020, : 442 - 446
  • [37] Status of deep learning for EEG-based brain-computer interface applications
    Hossain, Khondoker Murad
    Islam, Md. Ariful
    Hossain, Shahera
    Nijholt, Anton
    Ahad, Md Atiqur Rahman
    FRONTIERS IN COMPUTATIONAL NEUROSCIENCE, 2023, 16
  • [38] Bayesian Inferences on Neural Activity in EEG-Based Brain-Computer Interface
    Ma, Tianwen
    Li, Yang
    Huggins, Jane E.
    Zhu, Ji
    Kang, Jian
    JOURNAL OF THE AMERICAN STATISTICAL ASSOCIATION, 2022, 117 (539) : 1122 - 1133
  • [39] Quantum Neural Network-Based EEG Filtering for a Brain-Computer Interface
    Gandhi, Vaibhav
    Prasad, Girijesh
    Coyle, Damien
    Behera, Laxmidhar
    McGinnity, Thomas Martin
    IEEE TRANSACTIONS ON NEURAL NETWORKS AND LEARNING SYSTEMS, 2014, 25 (02) : 278 - 288
  • [40] Brain-Computer Interface for Control of Wheelchair Using Fuzzy Neural Networks
    Abiyev, Rahib H.
    Akkaya, Nurullah
    Aytac, Ersin
    Gunsel, Irfan
    Cagman, Ahmet
    BIOMED RESEARCH INTERNATIONAL, 2016, 2016