Hidden Backdoor Attack against Deep Learning-Based Wireless Signal Modulation Classifiers

Yunsong Huang,Weicheng Liu,Hui-Ming Wang
DOI: https://doi.org/10.1109/TVT.2023.3267455
2023-06-19
Abstract:Recently, DL has been exploited in wireless communications such as modulation classification. However, due to the openness of wireless channel and unexplainability of DL, it is also vulnerable to adversarial attacks. In this correspondence, we investigate a so called hidden backdoor attack to modulation classification, where the adversary puts elaborately designed poisoned samples on the basis of IQ sequences into training dataset. These poisoned samples are hidden because it could not be found by traditional classification methods. And poisoned samples are same to samples with triggers which are patched samples in feature space. We show that the hidden backdoor attack can reduce the accuracy of modulation classification significantly with patched samples. At last, we propose activation cluster to detect abnormal samples in training dataset.
Signal Processing
What problem does this paper attempt to address?