Universal adversarial attack method for communication modulation identification using principal component analysis
Author:
Affiliation:

(1. College of Electronic Science and Technology, National University of Defense Technology, Changsha 410073, China;2. College of Electronic Engineering, National University of Defense Technology, Hefei 230037, China;3. The PLA Unit 31433, Shengyang 110000, China)

Clc Number:

TN97

Fund Project:

  • Article
  • |
  • Figures
  • |
  • Metrics
  • |
  • Reference
  • |
  • Related
  • |
  • Cited by
  • |
  • Materials
  • |
  • Comments
    Abstract:

    Deep learning is easily attacked by adversarial examples. Taking communication modulation recognition as an example, adding adversarial perturbations to the transmitted signal can effectively prevent non-cooperative users from utilizing the deep learning method to recognize the modulation of the signal. Thus, adversarial perturbations can help enhance communication security. To address the problem that the existing adversarial attack techniques are difficult to meet the adaptive and real-time requirements, the universal adversarial perturbation applicable to the whole dataset was obtained by the principal component analysis of the adversarial perturbation generated by a small part of the data extracted from the dataset. The computation of the universal adversarial perturbation can be carried out under offline conditions and then added to the signal to be transmitted in real time, which can satisfy the real-time requirements of communication and realize the purpose of reducing the accuracy of non-cooperative party modulation recognition. Experimental results show that the proposed method has better deception performance relative to the baseline method.

    Reference
    Related
    Cited by
Get Citation
Share
Article Metrics
  • Abstract:
  • PDF:
  • HTML:
  • Cited by:
History
  • Received:October 14,2022
  • Revised:
  • Adopted:
  • Online: September 26,2023
  • Published: October 28,2023
Article QR Code