Unsupervised Learning-Based Spectrum Sensing Algorithm with Defending Adversarial Attacks

被引:0
|
作者
Li, Xinyu [1 ]
Dai, Shaogang [1 ]
Zhao, Zhijin [1 ,2 ]
机构
[1] Hangzhou Dianzi Univ, Sch Commun Engn, Hangzhou 310020, Peoples R China
[2] State Key Lab Informat Control Technol Commun Syst, Jiaxing 314000, Peoples R China
来源
APPLIED SCIENCES-BASEL | 2023年 / 13卷 / 16期
基金
中国国家自然科学基金;
关键词
spectrum sensing; security; adversarial attacks and defense; unsupervised learning; contrast loss; reconstruction loss; COGNITIVE RADIO NETWORKS;
D O I
10.3390/app13169101
中图分类号
O6 [化学];
学科分类号
0703 ;
摘要
Although the spectrum sensing algorithms based on deep learning have achieved remarkable detection performance, the sensing performance is easily affected by adversarial attacks due to the fragility of neural networks. Even slight adversarial perturbations lead to a sharp deterioration of the model detection performance. To enhance the defense capability of the spectrum sensing model against such attacks, an unsupervised learning-based spectrum sensing algorithm with defending adversarial attacks (USDAA) is proposed, which is divided into two stages: adversarial pre-training and fine-tuning. In the adversarial pre-training stage, encoders are used to extract the features of adversarial samples and clean samples, respectively, and then decoders are used to reconstruct the samples, and comparison loss and reconstruction loss are designed to optimize the network parameters. It can reduce the dependence of model training on labeled samples and improve the robustness of the model to attack perturbations. In the fine-tuning stage, a small number of adversarial samples are used to fine-tune the pre-trained encoder and classification layer to obtain the spectrum sensing defense model. The experimental results show that the USDAA algorithm is better than the denoising autoencoder and distillation defense algorithm (DAED) against FGSM and PGD adversarial attacks. The number of labeled samples used in USDAA is only 11% of the DAED. When the false alarm probability is 0.1 and the SNR is -10 dB, the detection probability of the USDAA algorithm for the fast gradient sign method (FGSM) and the projected gradient descent (PGD) attack samples with random perturbations is above 88%, while the detection probability of the DAED algorithm for both attack samples is lower than 69%. Additionally, the USDAA algorithm has better robustness to attack with unknown perturbations.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Primary User Adversarial Attacks on Deep Learning-Based Spectrum Sensing and the Defense Method
    Zheng, Shilian
    Ye, Linhui
    Wang, Xuanye
    Chen, Jinyin
    Zhou, Huaji
    Lou, Caiyi
    Zhao, Zhijin
    Yang, Xiaoniu
    CHINA COMMUNICATIONS, 2021, 18 (12) : 94 - 107
  • [2] Primary User Adversarial Attacks on Deep Learning-Based Spectrum Sensing and the Defense Method
    Shilian Zheng
    Linhui Ye
    Xuanye Wang
    Jinyin Chen
    Huaji Zhou
    Caiyi Lou
    Zhijin Zhao
    Xiaoniu Yang
    ChinaCommunications, 2021, 18 (12) : 94 - 107
  • [3] Defending Against Deep Learning-Based Traffic Fingerprinting Attacks With Adversarial Examples
    Hayden, Blake
    Walsh, Timothy
    Barton, Armon
    ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2025, 28 (01)
  • [4] Adversarial Learning-Based Spectrum Sensing in Cognitive Radio
    Wang, Chen
    Xu, Yizhen
    Chen, Zhuo
    Tian, Jinfeng
    Cheng, Peng
    Li, Mingqi
    IEEE WIRELESS COMMUNICATIONS LETTERS, 2022, 11 (03) : 498 - 502
  • [5] A Cooperative Spectrum Sensing Algorithm Based on Unsupervised Learning
    Sobabe, Gounou Charles
    Song, Yuhui
    Bai, Xuemei
    Guo, Bin
    2017 10TH INTERNATIONAL CONGRESS ON IMAGE AND SIGNAL PROCESSING, BIOMEDICAL ENGINEERING AND INFORMATICS (CISP-BMEI), 2017,
  • [6] Defending Adversarial Attacks on Deep Learning-Based Power Allocation in Massive MIMO Using Denoising Autoencoders
    Sahay, Rajeev
    Zhang, Minjun
    Love, David J. J.
    Brinton, Christopher G. G.
    IEEE TRANSACTIONS ON COGNITIVE COMMUNICATIONS AND NETWORKING, 2023, 9 (04) : 913 - 926
  • [7] Unsupervised feature learning-based encoder and adversarial networks
    Suryawati, Endang
    Pardede, Hilman F.
    Zilvan, Vicky
    Ramdan, Ade
    Krisnandi, Dikdik
    Heryana, Ana
    Yuwana, R. Sandra
    Kusumo, R. Budiarianto Suryo
    Arisal, Andria
    Supianto, Ahmad Afif
    JOURNAL OF BIG DATA, 2021, 8 (01)
  • [8] Unsupervised feature learning-based encoder and adversarial networks
    Endang Suryawati
    Hilman F. Pardede
    Vicky Zilvan
    Ade Ramdan
    Dikdik Krisnandi
    Ana Heryana
    R. Sandra Yuwana
    R. Budiarianto Suryo Kusumo
    Andria Arisal
    Ahmad Afif Supianto
    Journal of Big Data, 8
  • [9] Defending Cooperative Spectrum Sensing From Byzantine Attacks: An Effective Entropy-Based Weighted Algorithm
    Chouhan, Ankit
    Captain, Kamal
    Parmar, Ashok
    Patel, Jignesh
    IEEE WIRELESS COMMUNICATIONS LETTERS, 2023, 12 (12) : 2063 - 2067
  • [10] Defending Deep Learning Models Against Adversarial Attacks
    Mani, Nag
    Moh, Melody
    Moh, Teng-Sheng
    INTERNATIONAL JOURNAL OF SOFTWARE SCIENCE AND COMPUTATIONAL INTELLIGENCE-IJSSCI, 2021, 13 (01): : 72 - 89