4.6 Article

Physical Adversarial Attacks Against End-to-End Autoencoder Communication Systems

期刊

IEEE COMMUNICATIONS LETTERS
卷 23, 期 5, 页码 847-850

出版社

IEEE-INST ELECTRICAL ELECTRONICS ENGINEERS INC
DOI: 10.1109/LCOMM.2019.2901469

关键词

Adversarial attacks; autoencoder systems; deep learning; wireless security; end-to-end learning

资金

  1. Swedish Foundation for Strategic Research (SSF)
  2. Security-Link

向作者/读者索取更多资源

We show that end-to-end learning of communication systems through deep neural network autoencoders can be extremely vulnerable to physical adversarial attacks. Specifically, we elaborate how an attacker can craft effective physical black-box adversarial attacks. Due to the openness (broadcast nature) of the wireless channel, an adversary transmitter can increase the block-error-rate of a communication system by orders of magnitude by transmitting a well-designed perturbation signal over the channel. We reveal that the adversarial attacks are more destructive than the jamming attacks. We also show that classical coding schemes are more robust than the autoencoders against both adversarial and jamming attacks.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.6
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据