paper-with-me

홈 › Papers

Application of Adversarial Examples to Physical ECG Signals

2021-08-20 · Taiga Ono, Takeshi Sugawara, Jun Sakuma, Tatsuya Mori

This work aims to assess the reality and feasibility of the adversarial attack against cardiac diagnosis system powered by machine learning algorithms. To this end, we introduce adversarial beats, which are adversarial perturbations tailored specifically against electrocardiograms (ECGs) beat-by-beat classification system. We first formulate an algorithm to generate adversarial examples for the ECG classification neural network model, and study its attack success rate. Next, to evaluate its feasibility in a physical environment, we mount a hardware attack by designing a malicious signal generator which injects adversarial beats into ECG sensor readings. To the best of our knowledge, our work is the first in evaluating the proficiency of adversarial examples for ECGs in a physical setup. Our real-world experiments demonstrate that adversarial beats successfully manipulated the diagnosis results 3-5 times out of 40 attempts throughout the course of 2 minutes. Finally, we discuss the overall feasibility and impact of the attack, by clearly defining motives and constraints of expected attackers along with our experimental results.

📄 PDF Abstract BibTeX arXiv:2108.08972

Code (0)

등록된 구현이 없습니다.

Tasks

Adversarial AttackECG Classification

Similar Papers 제목 키워드 기반

Adversarial examples in the physical world

2016-07-08 · Alexey Kurakin, Ian Goodfellow, Samy Bengio

Most existing machine learning classifiers are highly vulnerable to adversarial examples. An adversarial example is a sample of input data which has been modified very slightly in a way that is intended to cause a machin…

BIG-bench Machine Learning

Adversarial Examples in RF Deep Learning: Detection of the Attack and its Physical Robustness

2019-02-16 · Silvija Kokalj-Filipovic, Rob Miller

While research on adversarial examples in machine learning for images has been prolific, similar attacks on deep learning (DL) for radio frequency (RF) signals and their mitigation strategies are scarcely addressed in th…

ConAML: Constrained Adversarial Machine Learning for Cyber-Physical Systems

2020-03-12 · Jiangnan Li, Yingyuan Yang, Jinyuan Stella Sun, Kevin Tomsovic 외

Recent research demonstrated that the superficially well-trained machine learning (ML) models are highly vulnerable to adversarial examples. As ML techniques are becoming a popular solution for cyber-physical systems (CP…

BIG-bench Machine Learning

Adversarial Examples in the Physical World: A Survey

2023-11-01 · Jiakai Wang, Xianglong Liu, Jin Hu, Donghua Wang 외

Deep neural networks (DNNs) have demonstrated high vulnerability to adversarial examples, raising broad security concerns about their applications. Besides the attacks in the digital world, the practical implications of …

Survey

Real-World Adversarial Examples involving Makeup Application

2021-09-04 · Chang-Sheng Lin, Chia-Yi Hsu, Pin-Yu Chen, Chia-Mu Yu

Deep neural networks have developed rapidly and have achieved outstanding performance in several tasks, such as image classification and natural language processing. However, recent studies have indicated that both digit…

Adversarial AttackFace Recognitionimage-classificationImage Classification