AIセキュリティポータル K Program
Black-box Adversarial Transferability: An Empirical Study in Cybersecurity Perspective
Share
Abstract
The rapid advancement of artificial intelligence within the realm of cybersecurity raises significant security concerns. The vulnerability of deep learning models in adversarial attacks is one of the major issues. In adversarial machine learning, malicious users try to fool the deep learning model by inserting adversarial perturbation inputs into the model during its training or testing phase. Subsequently, it reduces the model confidence score and results in incorrect classifications. The novel key contribution of the research is to empirically test the black-box adversarial transferability phenomena in cyber attack detection systems. It indicates that the adversarial perturbation input generated through the surrogate model has a similar impact on the target model in producing the incorrect classification. To empirically validate this phenomenon, surrogate and target models are used. The adversarial perturbation inputs are generated based on the surrogate-model for which the hacker has complete information. Based on these adversarial perturbation inputs, both surrogate and target models are evaluated during the inference phase. We have done extensive experimentation over the CICDDoS-2019 dataset, and the results are classified in terms of various performance metrics like accuracy, precision, recall, and f1-score. The findings indicate that any deep learning model is highly susceptible to adversarial attacks, even if the attacker does not have access to the internal details of the target model. The results also indicate that white-box adversarial attacks have a severe impact compared to black-box adversarial attacks. There is a need to investigate and explore adversarial defence techniques to increase the robustness of the deep learning models against adversarial attacks.
A survey on machine learning techniques for cyber security in the last decade
K. Shaukat, S. Luo, V. Varadharajan, I. A. Hameed, M. Xu
Published: 2020
A Systematic Review of Deep Learning Approaches for Computer Network and Information Security
K. Roshan, A. Zafar
Published: 2022
Deep Learning Approaches for Anomaly and Intrusion Detection in Computer Network: A Review
K. Roshan, A. Zafar
Published: 2022
Review of Convolutional Neural Network
F. Y. Zhou, L. P. Jin, J. Dong
Published: 2017
Beyond accuracy and precision: a robust deep learning framework to enhance the resilience of face mask detection models against adversarial attacks
B. U. H. Sheikh, A. Zafar
Published: 2024
A survey on deep learning in medical image analysis
G. Litjens, et al.
Published: 2017
White-box inference attack: compromising the security of deep learning-based COVID-19 diagnosis systems
B. U. H. Sheikh, A. Zafar
Published: 2024
Untargeted white-box adversarial attack to break into deep leaning based COVID-19 monitoring face mask detection system
B. U. haque Sheikh, A. Zafar
Published: 2023
Using Kernel SHAP XAI Method to Optimize the Network Anomaly Detection Model
K. Roshan, A. Zafar
Published: 2022
Utilizing Xai Technique to Improve Autoencoder Based Model for Computer Network Anomaly Detection with Shapley Additive Explanation(SHAP)
K. Roshan, A. Zafar
Published: 2021
Untargeted white-box adversarial attack with heuristic defence methods in real-time deep learning based network intrusion detection system
K. Roshan, A. Zafar, S. B. Ul Haque
Published: 2024
A Novel Deep Learning based Model to Defend Network Intrusion Detection System against Adversarial Attacks
Khushnaseeb Roshan, Aasim Zafar, Shiekh Burhan Ul Haque
Published: 8.1.2023
Intriguing properties of neural networks
C. Szegedy, W. Zaremba, I. Sutskever, J. Bruna, D. Erhan, I. Goodfellow, R. Fergus
Published: 2014
Explaining and harnessing adversarial examples
Goodfellow, I. J., Shlens, J., Szegedy, C.
Published: 2015
Adversarial examples against the deep learning based network intrusion detection systems
K. Yang, J. Liu, C. Zhang, Y. Fang
Published: 2018
Adversarial Attacks and Defenses in Deep Learning
K. Ren, T. Zheng, Z. Qin, X. Liu
Published: 2020
Adversarial Machine Learning Attacks and Defense Methods in the Cyber Security Domain
Ihai Rosenberg, Asaf Shabtai, Yuval Elovici, Lior Rokach
Published: 7.6.2020
Adversarial Attacks on Machine Learning Cybersecurity Defences in Industrial Control Systems
Eirini Anthi, Lowri Williams, Matilda Rhode, Pete Burnap, Adam Wedgbury
Published: 4.10.2020
Deep learning-based intrusion detection with adversaries
Z. Wang
Published: 2018
An Optimized Auto-Encoder based Approach for Detecting Zero-Day Cyber-Attacks in Computer Network
K. Roshan, A. Zafar
Published: 2021
Privacy and Security Issues in Deep Learning: A Survey
X. Liu, et al.
Published: 2021
Adversarial Machine Learning In Network Intrusion Detection Domain: A Systematic Review
Huda Ali Alatwi, Charles Morisset
Published: 12.7.2021
Adversarial attacks against intrusion detection systems: Taxonomy, solutions and open issues
I. Corona, G. Giacinto, F. Roli
Published: 2013
Adversarial classification
N. Dalvi, P. Domingos, Mausam, S. Sanghai, D. Verma
Published: 2004
The security of machine learning
M. Barreno, B. Nelson, A. D. Joseph, J. D. Tygar
Published: 2010
Adversarial attacks and defenses in deep learning for image recognition: A survey
J. Wang, C. Wang, Q. Lin, C. Luo, C. Wu, J. Li
Published: 2022
Threat of adversarial attacks on deep learning in computer vision: A survey
N. Akhtar, A. Mian
Published: 2018
A survey on security threats and defensive techniques of machine learning: A data driven view
Q. Liu, P. Li, W. Zhao, W. Cai, S. Yu, V. C. M. Leung
Published: 2018
Generative Adversarial Networks For Launching and Thwarting Adversarial Attacks on Network Intrusion Detection Systems
M. Usama, M. Asim, S. Latif, J. Qadir, Ala-Al-Fuqaha
Published: 2019
Defending network intrusion detection systems against adversarial evasion attacks
M. Pawlicki, M. Choraś, R. Kozik
Published: 2020
A Black-Box Attack Method against Machine-Learning-Based Anomaly Network Flow Detection Models
S. Guo, J. Zhao, X. Li, J. Duan, D. Mu, X. Jing
Published: 2021
Adversarial machine learning in network intrusion detection systems
E. Alhajjar, P. Maxwell, N. Bastian
Published: 2021
A context-aware robust intrusion detection system: a reinforcement learning-based approach
K. Sethi, E Sai Rupesh, R. Kumar, P. Bera, Y Venu Madhav
Published: 2020
Adversarial Attacks Against Deep Learning-Based Network Intrusion Detection Systems and Defense Mechanisms
C. Zhang, X. Costa-Perez, P. Patras
Published: 2022
Evaluating and improving adversarial robustness of machine learning-based network intrusion detectors
D. Han, G. Wang, X. Zhong, J. Chen, H. Yang, Y. Lu, Y. Shi, H. Yin
Published: 2021
RAIDS: Robust autoencoder-based intrusion detection system model against adversarial attacks
A. Sarıkaya, B. G. Kılıç, M. Demirci
Published: 2023
Adv-Bot: Realistic adversarial botnet attacks against network intrusion detection systems
I. Debicha, B. Cochez, T. Kenaza, T. Debatty, J. M. Dricot, W. Mees
Published: 2023
TAD: Transfer Learning-based Multi-Adversarial Detection of Evasion Attacks against Network Intrusion Detection Systems
I. Debicha, R. Bauwens, T. Debatty, J.-M. Dricot, T. Kenaza, W. Mees
Published: 2022
Developing realistic distributed denial of service (DDoS) attack dataset and taxonomy
I. Sharafaldin, A. H. Lashkari, S. Hakak, A. A. Ghorbani
Published: 2019
The Limitations of Deep Learning in Adversarial Settings
Nicolas Papernot, Patrick McDaniel, Somesh Jha, Matt Fredrikson, Z. Berkay Celik, Ananthram Swami
Published: 11.24.2015
Towards Deep Learning Models Resistant to Adversarial Attacks
Aleksander Madry, Aleksandar Makelov, Ludwig Schmidt, Dimitris Tsipras, Adrian Vladu
Published: 6.20.2017
Towards Evaluating the Robustness of Neural Networks
Nicholas Carlini, David Wagner
Published: 8.17.2016
Transferability in Machine Learning: from Phenomena to Black-Box Attacks using Adversarial Samples
Nicolas Papernot, Patrick McDaniel, Ian Goodfellow
Published: 5.24.2016
Share