CMA: A Cross-Modal Attack on Radar Signal Recognition Model Based on Time-Frequency Analysis

Mengchao Wang,Sicheng Zhang,Qi Xuan,Yun Lin
DOI: https://doi.org/10.1109/icc51166.2024.10622973
2024-01-01
Abstract:In recent years, with the rise of deep learning, it has become a hot research topic to combine time-frequency analysis technology with deep learning to recognize radar signals. For the application of deep learning in radar signal recognition, however, the discovery of adversarial examples poses a tremendous security risk. Based on experiments, it appears that the radar signal recognition model based on the time-frequency image have been shown to be less vulnerable to adversarial attack methods based on time domain. Therefore, we propose a cross-modal attack (CMA). Firstly, we establish a surrogate model architecture locally, including three parts: time-frequency analysis, data quantization, and classifier. Secondly, we train this architecture as a whole and generate adversarial examples utilizing the trained surrogate model architecture parameters and adversarial attack methods. Finally, we carry out the CMA on the radar signal recognition model based on the time-frequency image by adding adversarial perturbations to the original signal. According to experimental results, the CMA can reduce the model recognition accuracy by more than 30%, demonstrating good attack performance, when the perturbation strength is 0.1 and the signal-to-noise ratio is 0 dB.
What problem does this paper attempt to address?