paper-with-me

홈 › Papers

A look at adversarial attacks on radio waveforms from discrete latent space

2025-06-11 · Attanasia Garuso, Silvija Kokalj-Filipovic, Yagna Kaasaragadda

Having designed a VQVAE that maps digital radio waveforms into discrete latent space, and yields a perfectly classifiable reconstruction of the original data, we here analyze the attack suppressing properties of VQVAE when an adversarial attack is performed on high-SNR radio-frequency (RF) data-points. To target amplitude modulations from a subset of digitally modulated waveform classes, we first create adversarial attacks that preserve the phase between the in-phase and quadrature component whose values are adversarially changed. We compare them with adversarial attacks of the same intensity where phase is not preserved. We test the classification accuracy of such adversarial examples on a classifier trained to deliver 100% accuracy on the original data. To assess the ability of VQVAE to suppress the strength of the attack, we evaluate the classifier accuracy on the reconstructions by VQVAE of the adversarial datapoints and show that VQVAE substantially decreases the effectiveness of the attack. We also compare the I/Q plane diagram of the attacked data, their reconstructions and the original data. Finally, using multiple methods and metrics, we compare the probability distribution of the VQVAE latent space with and without attack. Varying the attack strength, we observe interesting properties of the discrete space, which may help detect the attacks.

📄 PDF Abstract BibTeX arXiv:2506.09896

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial Attack

Similar Papers 제목 키워드 기반

Cross-Representation Transferability of Adversarial Attacks: From Spectrograms to Audio Waveforms

2019-10-22 · Karl Michel Koerich, Mohammad Esmaeilpour, Sajjad Abdoli, Alceu de Souza Britto Jr. 외

This paper shows the susceptibility of spectrogram-based audio classifiers to adversarial attacks and the transferability of such attacks to audio waveforms. Some commonly used adversarial attacks to images have been app…

Real-World Adversarial Attacks on RF-Based Drone Detectors

2025-12-23 · Omer Gazit, Yael Itzhakev, Yuval Elovici, Asaf Shabtai arxiv

Radio frequency (RF) based systems are increasingly used to detect drones by analyzing their RF signal patterns, converting them into spectrogram images which are processed by object detection models. Existing RF attacks…

Object Detection

Adversarial Attacks on ASR Systems: An Overview

2022-08-03 · Xiao Zhang, Hao Tan, Xuan Huang, Denghui Zhang 외

With the development of hardware and algorithms, ASR(Automatic Speech Recognition) systems evolve a lot. As The models get simpler, the difficulty of development and deployment become easier, ASR systems are getting clos…

Automatic Speech RecognitionAutomatic Speech Recognition (ASR)speech-recognitionSpeech Recognition

LambdaMark: Semantic Audio Watermarking for Robustness and Radioactivity

2026-06-19 · Kexin Li, Xiao Hu, Ilya Grishchenko, David Lie arxiv

Recent advances in generative audio have made voice cloning increasingly effortless, enabling voice fraud, impersonation, and other forms of unauthorized use. A common attack finetunes a speech generation model on record…

Adaptive LPD Radar Waveform Design with Generative Deep Learning

2024-03-18 · Matthew R. Ziemann, Christopher A. Metzler

We propose a learning-based method for adaptively generating low probability of detection (LPD) radar waveforms that blend into their operating environment. Our waveforms are designed to follow a distribution that is ind…

Deep LearningRadar waveform design