paper-with-me

홈 › Papers

Fault Sneaking Attack: a Stealthy Framework for Misleading Deep Neural Networks

2019-05-28 · Pu Zhao, Siyue Wang, Cheng Gongye, Yanzhi Wang, Yunsi Fei, Xue Lin

Despite the great achievements of deep neural networks (DNNs), the vulnerability of state-of-the-art DNNs raises security concerns of DNNs in many application domains requiring high reliability.We propose the fault sneaking attack on DNNs, where the adversary aims to misclassify certain input images into any target labels by modifying the DNN parameters. We apply ADMM (alternating direction method of multipliers) for solving the optimization problem of the fault sneaking attack with two constraints: 1) the classification of the other images should be unchanged and 2) the parameter modifications should be minimized. Specifically, the first constraint requires us not only to inject designated faults (misclassifications), but also to hide the faults for stealthy or sneaking considerations by maintaining model accuracy. The second constraint requires us to minimize the parameter modifications (using L0 norm to measure the number of modifications and L2 norm to measure the magnitude of modifications). Comprehensive experimental evaluation demonstrates that the proposed framework can inject multiple sneaking faults without losing the overall test accuracy performance.

📄 PDF Abstract BibTeX arXiv:1905.12032

Code (0)

등록된 구현이 없습니다.

Tasks

Overall - Test

Methods 이 논문이 사용한 방법론

ADMM The alternating direction method of multipliers (ADMM) is an algorithm that solves convex optimization problems by breaking them into smaller pieces, each of which are…

Similar Papers 제목 키워드 기반

The system dynamics analysis, resilient and fault-tolerant control for cyber-physical systems

2024-09-20 · Linlin Li, Steven X. Ding, Liutao Zhou, Maiying Zhong 외

This paper is concerned with the detection, resilient and fault-tolerant control issues for cyber-physical systems. To this end, the impairment of system dynamics caused by the defined types of cyber-attacks and process …

Regret-Optimal Defense Against Stealthy Adversaries: A System Level Approach

2024-07-26 · Hiroyasu Tsukamoto, Joudi Hajar, Soon-Jo Chung, Fred Y. Hadaegh

Modern control designs in robotics, aerospace, and cyber-physical systems rely heavily on real-world data obtained through system outputs. However, these outputs can be compromised by system faults and malicious attacks,…

Safety monitoring under stealthy sensor injection attacks using reachable sets

2023-07-24 · Cédric Escudero, Michelle S. Chong, Paolo Massioni, Eric Zamaï

Stealthy sensor injection attacks are serious threats for industrial plants as they can compromise the plant's integrity without being detected by traditional fault detectors. In this manuscript, we study the possibility…

Improving Robustness Against Stealthy Weight Bit-Flip Attacks by Output Code Matching

2022-01-01 · CVPR 2022 1 · Ozan Özdenizci, Robert Legenstein

Deep neural networks (DNNs) have been shown to be vulnerable against adversarial weight bit-flip attacks through hardware-induced fault-injection methods on the memory systems where network parameters are stored. Rec…

Quantization

Detection of Hidden Attacks on Cyber-Physical Systems from Serial Magnitude and Sign Randomness Inconsistencies

2021-04-30 · Paul J Bonczek, Nicola Bezzo

Stealthy false data injection attacks on cyber-physical systems (CPSs) introduce erroneous measurement information to on-board sensors with the purpose to degrade system performance. An intelligent attacker is able to le…

Fault Detection