Evasion Attack and Defense on Machine Learning Models in Cyber-Physical Systems: A Survey

被引:8
作者
Wang, Shunyao [1 ]
Ko, Ryan K. L. [1 ]
Bai, Guangdong [1 ]
Dong, Naipeng [1 ]
Choi, Taejun [1 ]
Zhang, Yanjun [2 ]
机构
[1] Univ Queensland, Sch Elect Engn & Comp Sci, Brisbane, Qld 4072, Australia
[2] Univ Technol Sydney, Sch Comp Sci, Sydney, NSW 2007, Australia
来源
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS | 2024年 / 26卷 / 02期
关键词
Surveys; Taxonomy; Data models; Tutorials; Training; Adaptation models; Systematics; Evasion attack; adversarial machine learning; Internet of Things; cyber physical systems; cybersecurity; deep learning; GENERATIVE ADVERSARIAL NETWORKS; IDENTIFICATION METHOD; NEURAL-NETWORK; TIME-SERIES; INTRUSION; CLASSIFICATION; PREDICTION; INDUSTRIAL; ROBUSTNESS; ALGORITHMS;
D O I
10.1109/COMST.2023.3344808
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber-physical systems (CPS) are increasingly relying on machine learning (ML) techniques to reduce labor costs and improve efficiency. However, the adoption of ML also exposes CPS to potential adversarial ML attacks witnessed in the literature. Specifically, the increased Internet connectivity in CPS has resulted in a surge in the volume of data generation and communication frequency among devices, thereby expanding the attack surface and attack opportunities for ML adversaries. Among various adversarial ML attacks, evasion attacks are one of the most well-known ones. Therefore, this survey focuses on summarizing the latest research on evasion attack and defense techniques, to understand state-of-the-art ML model security in CPS. To assess the attack effectiveness, this survey proposes an attack taxonomy by introducing quantitative measures such as perturbation level and the number of modified features. Similarly, a defense taxonomy is introduced based on four perspectives demonstrating the defensive techniques from models' inputs to their outputs. Furthermore, the survey identifies gaps and promising directions that researchers and practitioners can explore to address potential challenges and threats caused by evasion attacks and lays the groundwork for understanding and mitigating the attacks in CPS.
引用
收藏
页码:930 / 966
页数:37
相关论文
共 50 条
  • [21] A Moving Target Defense for Securing Cyber-Physical Systems
    Griffioen, Paul
    Weerakkody, Sean
    Sinopoli, Bruno
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2021, 66 (05) : 2016 - 2031
  • [22] TFDPM: Attack detection for cyber-physical systems with diffusion probabilistic models
    Yan, Tijin
    Zhou, Tong
    Zhan, Yufeng
    Xia, Yuanqing
    KNOWLEDGE-BASED SYSTEMS, 2022, 255
  • [23] A Survey of Blockchain Enabled Cyber-Physical Systems
    Rathore, Heena
    Mohamed, Amr
    Guizani, Mohsen
    SENSORS, 2020, 20 (01)
  • [24] Secure Control for Cyber-physical Systems Based on Machine Learning
    Liu K.
    Ma S.-H.
    Ma A.-Y.
    Zhang Q.-R.
    Xia Y.-Q.
    Zidonghua Xuebao/Acta Automatica Sinica, 2021, 47 (06): : 1273 - 1283
  • [25] ConAML: Constrained Adversarial Machine Learning for Cyber-Physical Systems
    Li, Jiangnan
    Yang, Yingyuan
    Sun, Jinyuan Stella
    Tomsovic, Kevin
    Qi, Hairong
    ASIA CCS'21: PROCEEDINGS OF THE 2021 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 52 - 66
  • [26] Compositional Falsification of Cyber-Physical Systems with Machine Learning Components
    Dreossi, Tommaso
    Donze, Alexandre
    Seshia, Sanjit A.
    NASA FORMAL METHODS (NFM 2017), 2017, 10227 : 357 - 372
  • [27] Setpoint Attack Detection in Cyber-Physical Systems
    Lucia, Walter
    Gheitasi, Kian
    Ghaderi, Mohsen
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2021, 66 (05) : 2332 - 2338
  • [28] Machine Learning-Based Security Solutions for Critical Cyber-Physical Systems
    Raza, Asad
    Memon, Shahzad
    Nizamani, Muhammad Ali
    Shah, Mahmood Hussain
    2022 10TH INTERNATIONAL SYMPOSIUM ON DIGITAL FORENSICS AND SECURITY (ISDFS), 2022,
  • [29] Attack Detection and Identification in Cyber-Physical Systems
    Pasqualetti, Fabio
    Doerfler, Florian
    Bullo, Francesco
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2013, 58 (11) : 2715 - 2729
  • [30] Cyber Attacks in Cyber-Physical Microgrid Systems: A Comprehensive Review
    Suprabhath Koduru, Sriranga
    Machina, Venkata Siva Prasad
    Madichetty, Sreedhar
    ENERGIES, 2023, 16 (12)