Evasion Attack and Defense on Machine Learning Models in Cyber-Physical Systems: A Survey

被引:8
|
作者
Wang, Shunyao [1 ]
Ko, Ryan K. L. [1 ]
Bai, Guangdong [1 ]
Dong, Naipeng [1 ]
Choi, Taejun [1 ]
Zhang, Yanjun [2 ]
机构
[1] Univ Queensland, Sch Elect Engn & Comp Sci, Brisbane, Qld 4072, Australia
[2] Univ Technol Sydney, Sch Comp Sci, Sydney, NSW 2007, Australia
来源
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS | 2024年 / 26卷 / 02期
关键词
Surveys; Taxonomy; Data models; Tutorials; Training; Adaptation models; Systematics; Evasion attack; adversarial machine learning; Internet of Things; cyber physical systems; cybersecurity; deep learning; GENERATIVE ADVERSARIAL NETWORKS; IDENTIFICATION METHOD; NEURAL-NETWORK; TIME-SERIES; INTRUSION; CLASSIFICATION; PREDICTION; INDUSTRIAL; ROBUSTNESS; ALGORITHMS;
D O I
10.1109/COMST.2023.3344808
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems (CPS) are increasingly relying on machine learning (ML) techniques to reduce labor costs and improve efficiency. However, the adoption of ML also exposes CPS to potential adversarial ML attacks witnessed in the literature. Specifically, the increased Internet connectivity in CPS has resulted in a surge in the volume of data generation and communication frequency among devices, thereby expanding the attack surface and attack opportunities for ML adversaries. Among various adversarial ML attacks, evasion attacks are one of the most well-known ones. Therefore, this survey focuses on summarizing the latest research on evasion attack and defense techniques, to understand state-of-the-art ML model security in CPS. To assess the attack effectiveness, this survey proposes an attack taxonomy by introducing quantitative measures such as perturbation level and the number of modified features. Similarly, a defense taxonomy is introduced based on four perspectives demonstrating the defensive techniques from models' inputs to their outputs. Furthermore, the survey identifies gaps and promising directions that researchers and practitioners can explore to address potential challenges and threats caused by evasion attacks and lays the groundwork for understanding and mitigating the attacks in CPS.
引用
收藏
页码:930 / 966
页数:37
相关论文
共 50 条
  • [1] A Survey on Cyber-Attacks for Cyber-Physical Systems: Modeling, Defense, and Design
    Lian, Zhi
    Shi, Peng
    Chen, Mou
    IEEE INTERNET OF THINGS JOURNAL, 2025, 12 (02): : 1471 - 1483
  • [2] A Comprehensive Survey on Game Theory Applications in Cyber-Physical System Security: Attack Models, Security Analyses, and Machine Learning Classifications
    Mejdi, Hana
    Elmadssia, Sami
    Koubaa, Mohamed
    Ezzedine, Tahar
    IEEE ACCESS, 2024, 12 : 163638 - 163653
  • [3] Deep Learning Based Attack Detection for Cyber-Physical System Cybersecurity: A Survey
    Zhang, Jun
    Pan, Lei
    Han, Qing-Long
    Chen, Chao
    Wen, Sheng
    Xiang, Yang
    IEEE-CAA JOURNAL OF AUTOMATICA SINICA, 2022, 9 (03) : 377 - 391
  • [4] Trending machine learning models in cyber-physical building environment: A survey
    Hasan, Zahid
    Roy, Nirmalya
    WILEY INTERDISCIPLINARY REVIEWS-DATA MINING AND KNOWLEDGE DISCOVERY, 2021, 11 (05)
  • [5] Cyber-physical attack graphs (CPAGs): Composable and scalable attack graphs for cyber-physical systems
    Barrere, Martin
    Hankin, Chris
    O'Reilly, Dean
    COMPUTERS & SECURITY, 2023, 132
  • [6] A survey on coordinated attacks against cyber-physical power systems: Attack, detection, and defense methods
    Feng, Yuxin
    Huang, Rong
    Zhao, Weijia
    Yin, Peidong
    Li, Yuancheng
    ELECTRIC POWER SYSTEMS RESEARCH, 2025, 241
  • [7] Compositional Falsification of Cyber-Physical Systems with Machine Learning Components
    Dreossi, Tommaso
    Donze, Alexandre
    Seshia, Sanjit A.
    JOURNAL OF AUTOMATED REASONING, 2019, 63 (04) : 1031 - 1053
  • [8] Brief Survey on Attack Detection Methods for Cyber-Physical Systems
    Tan, Sen
    Guerrero, Josep M.
    Xie, Peilin
    Han, Renke
    Vasquez, Juan C.
    IEEE SYSTEMS JOURNAL, 2020, 14 (04): : 5329 - 5339
  • [9] Machine Learning for Threat Recognition in Critical Cyber-Physical Systems
    Perrone, Paola
    Flammini, Francesco
    Setola, Roberto
    PROCEEDINGS OF THE 2021 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2021, : 298 - 303
  • [10] A Survey on Machine-Learning Based Security Design for Cyber-Physical Systems
    Kim, Sangjun
    Park, Kyung-Joon
    APPLIED SCIENCES-BASEL, 2021, 11 (12):