Physical Adversarial Attacks Against End-to-End Autoencoder Communication Systems

被引:90
|
作者
Sadeghi, Meysam [1 ]
Larsson, Erik G. [1 ]
机构
[1] Linkoping Univ, Dept Elect Engn ISY, S-58183 Linkoping, Sweden
关键词
Adversarial attacks; autoencoder systems; deep learning; wireless security; end-to-end learning;
D O I
10.1109/LCOMM.2019.2901469
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
We show that end-to-end learning of communication systems through deep neural network autoencoders can be extremely vulnerable to physical adversarial attacks. Specifically, we elaborate how an attacker can craft effective physical black-box adversarial attacks. Due to the openness (broadcast nature) of the wireless channel, an adversary transmitter can increase the block-error-rate of a communication system by orders of magnitude by transmitting a well-designed perturbation signal over the channel. We reveal that the adversarial attacks are more destructive than the jamming attacks. We also show that classical coding schemes are more robust than the autoencoders against both adversarial and jamming attacks.
引用
收藏
页码:847 / 850
页数:4
相关论文
共 50 条
  • [1] Multidiscriminator Sobolev Defense-GAN Against Adversarial Attacks for End-to-End Speech Systems
    Esmaeilpour, Mohammad
    Cardinal, Patrick
    Koerich, Alessandro Lameiras
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2022, 17 : 2044 - 2058
  • [2] Attention-Empowered Residual Autoencoder for End-to-End Communication Systems
    Lu, Min
    Zhou, Bin
    Bu, Zhiyong
    IEEE COMMUNICATIONS LETTERS, 2023, 27 (04) : 1140 - 1144
  • [3] A Kalman-based Autoencoder Framework for End-to-End Communication Systems
    Hu, Bin
    Wang, Jian
    Xu, Chen
    Zhang, Gongzheng
    Li, Rong
    2021 IEEE 32ND ANNUAL INTERNATIONAL SYMPOSIUM ON PERSONAL, INDOOR AND MOBILE RADIO COMMUNICATIONS (PIMRC), 2021,
  • [4] A Hybrid Quantum-Classical Autoencoder Framework for End-to-End Communication Systems
    Zhang, Bolun
    Zheng, Gan
    Van Huynh, Nguyen
    IEEE WIRELESS COMMUNICATIONS LETTERS, 2025, 14 (03) : 806 - 810
  • [5] Innovative Variational AutoEncoder for an End-to-End Communication System
    Alawad, Mohamad A.
    Hamdan, Mutasem Q.
    Hamdi, Khairi A.
    IEEE ACCESS, 2023, 11 : 86834 - 86847
  • [6] Simple Physical Adversarial Examples against End-to-End Autonomous Driving Models
    Boloor, Adith
    He, Xin
    Gill, Christopher
    Vorobeychik, Yevgeniy
    Zhang, Xuan
    2019 IEEE INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS (ICESS), 2019,
  • [7] BitFool: An Optimization-based Adversarial Attack for End-to-End Communication Systems
    Yang, Runzhuo
    Cheng, Jiaying
    Liu, Donghang
    Li, Dou
    2024 9TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS, ICCCS 2024, 2024, : 1014 - 1020
  • [8] Robust and transferable end-to-end navigation against disturbances and external attacks: an adversarial training approach
    Zhang, Zhiwei
    Nair, Saasha
    Liu, Zhe
    Miao, Yanzi
    Ma, Xiaoping
    ROBOTIC INTELLIGENCE AND AUTOMATION, 2024, 44 (03): : 351 - 365
  • [9] A Robust Adversarial Network-Based End-to-End Communications System with Strong Generalization Ability Against Adversarial Attacks
    Dong, Yudi
    Wang, Huaxia
    Yao, Yu-Dong
    IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC 2022), 2022, : 4086 - 4091
  • [10] Conditional Variational Autoencoder with Adversarial Learning for End-to-End Text-to-Speech
    Kim, Jaehyeon
    Kong, Jungil
    Son, Juhee
    INTERNATIONAL CONFERENCE ON MACHINE LEARNING, VOL 139, 2021, 139