English

Deceptive Reinforcement Learning Under Adversarial Manipulations on Cost Signals

Machine Learning 2019-08-20 v3 Artificial Intelligence Optimization and Control

Abstract

This paper studies reinforcement learning (RL) under malicious falsification on cost signals and introduces a quantitative framework of attack models to understand the vulnerabilities of RL. Focusing on QQ-learning, we show that QQ-learning algorithms converge under stealthy attacks and bounded falsifications on cost signals. We characterize the relation between the falsified cost and the QQ-factors as well as the policy learned by the learning agent which provides fundamental limits for feasible offensive and defensive moves. We propose a robust region in terms of the cost within which the adversary can never achieve the targeted policy. We provide conditions on the falsified cost which can mislead the agent to learn an adversary's favored policy. A numerical case study of water reservoir control is provided to show the potential hazards of RL in learning-based control systems and corroborate the results.

Keywords

Cite

@article{arxiv.1906.10571,
  title  = {Deceptive Reinforcement Learning Under Adversarial Manipulations on Cost Signals},
  author = {Yunhan Huang and Quanyan Zhu},
  journal= {arXiv preprint arXiv:1906.10571},
  year   = {2019}
}